The Application Security Podcast

Milan Williams -- AppSec Metrics

5 snips
Jan 14, 2025
Milan Williams, a Senior Product Manager at Semgrep with a background in computer science and physics from Harvard, dives into the world of application security metrics. She emphasizes the need for metrics to not only track progress but to be actionable and relatable through storytelling. Milan discusses how a collaborative approach between security and development teams can enhance teamwork and address vulnerabilities effectively. By making security metrics meaningful, she highlights their impact on career growth and resource allocation.
Ask episode
AI Snips
Chapters
Books
Transcript
Episode notes
INSIGHT

Importance of AppSec Metrics

  • Metrics in AppSec provide a sense of progress amidst an overwhelming vulnerability landscape.
  • They're also valuable for career advancement and securing necessary resources.
ADVICE

Making Metrics Interesting

  • Make metrics engaging by providing context and telling a story.
  • Instead of just presenting numbers, explain the change over time and its significance.
ANECDOTE

Origin of the Metrics Framework

  • Milan Williams developed the AppSec metrics framework based on interviews with AppSec leaders and IT professionals.
  • She discovered a common struggle to justify security investments and gain organizational support.
Get the Snipd Podcast app to discover more snips from this episode
Get the app