Cyber Security & Cloud Podcast cover image

Cyber Security & Cloud Podcast

CSCP S4EP18 - James Berthoty - What The heck is ASPM and the evolution of Product security

Jul 28, 2024
James Berthoty, a seasoned cybersecurity expert with a rich background in sysadmin, DevOps, and security engineering, discusses the evolving landscape of application security. He delves into the complexities of vulnerability management and the challenges posed by the fast-paced tech environment, including FedRAMP compliance. James highlights the disparity in innovation among security solutions and critiques the inefficiencies of the CVE system. The conversation also sheds light on the need for better communication between security teams and the significance of integrating threat modeling in modern practices.
46:09

Episode guests

Podcast summary created with Snipd AI

Quick takeaways

  • The evolution of the AppSec landscape necessitates that security professionals learn coding and modern technologies to integrate effectively with development.
  • Effective vulnerability management relies on prioritizing actionable intelligence and contextualized data to distinguish significant threats from false positives.

Deep dives

The Evolution of Application Security

The application security (AppSec) landscape has dramatically changed in recent years, primarily due to the influx of professionals from varying backgrounds entering the field. As many security experts adapt to new environments, they are increasingly learning coding and development practices, fostering a culture of security that integrates seamlessly with app development. This shift has made it essential for security personnel to familiarize themselves with modern technologies, such as cloud services and Kubernetes, which in turn has accelerated the pace of innovation in AppSec tools and methodologies. Consequently, as more professionals engage in this space, the emphasis on integrating security into the development lifecycle continues to grow, leading to better practices and tools for mitigating vulnerabilities.

Get the Snipd
podcast app

Unlock the knowledge in podcasts with the podcast player of the future.
App store bannerPlay store banner

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode

Save any
moment

Hear something you like? Tap your headphones to save it with AI-generated key takeaways

Share
& Export

Send highlights to Twitter, WhatsApp or export them to Notion, Readwise & more

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode