Cyber Security & Cloud Podcast cover image

Cyber Security & Cloud Podcast

CSCP S4EP18 - James Berthoty - What The heck is ASPM and the evolution of Product security

Jul 28, 2024
James Berthoty, a seasoned cybersecurity expert with a rich background in sysadmin, DevOps, and security engineering, discusses the evolving landscape of application security. He delves into the complexities of vulnerability management and the challenges posed by the fast-paced tech environment, including FedRAMP compliance. James highlights the disparity in innovation among security solutions and critiques the inefficiencies of the CVE system. The conversation also sheds light on the need for better communication between security teams and the significance of integrating threat modeling in modern practices.
46:09

Episode guests

Podcast summary created with Snipd AI

Quick takeaways

  • The evolution of the AppSec landscape necessitates that security professionals learn coding and modern technologies to integrate effectively with development.
  • Effective vulnerability management relies on prioritizing actionable intelligence and contextualized data to distinguish significant threats from false positives.

Deep dives

The Evolution of Application Security

The application security (AppSec) landscape has dramatically changed in recent years, primarily due to the influx of professionals from varying backgrounds entering the field. As many security experts adapt to new environments, they are increasingly learning coding and development practices, fostering a culture of security that integrates seamlessly with app development. This shift has made it essential for security personnel to familiarize themselves with modern technologies, such as cloud services and Kubernetes, which in turn has accelerated the pace of innovation in AppSec tools and methodologies. Consequently, as more professionals engage in this space, the emphasis on integrating security into the development lifecycle continues to grow, leading to better practices and tools for mitigating vulnerabilities.

Remember Everything You Learn from Podcasts

Save insights instantly, chat with episodes, and build lasting knowledge - all powered by AI.
App store bannerPlay store banner