Ep. 93: Code Review

Ep. 93: Code Review

Author: Jardine Software Inc. March 9, 2018 Duration: 25:53
In this episode we talk about secure code review with a mention of static analysis. Do you know the difference? What is the issue of doing one over the other, or just outright replacing actual code review with static analysis? Tune in to hear some of our thoughts on the topic. For more info go to https://www.developsec.com or follow us on twitter (@developsec). Join the conversations.. join our slack channel. Email james@developsec.com for an invitation. ...

Ever find yourself wondering how the digital tools you build every day can be made more resilient? DevelopSec: Developing Security Awareness, from Jardine Software Inc., digs into the practical realities of application security. This isn't about abstract theory; it's a grounded conversation for developers, engineers, and tech leaders who know that security is now a core part of the development lifecycle. Each episode focuses on a specific topic, breaking down how vulnerabilities emerge in code and, more importantly, how to identify and mitigate them before they become a problem. You'll hear straightforward discussions on everything from common coding flaws to emerging threats, providing actionable insights you can apply directly to your projects. The goal is to build a more intuitive security mindset, transforming it from a compliance checkpoint into a natural part of the development process. Tune into this podcast for a clear-eyed look at securing applications, where complex concepts are made accessible without sacrificing depth. It's a resource for anyone ready to move beyond curiosity and actively strengthen their work.
Author: Language: English Episodes: 100

DevelopSec: Developing Security Awareness
Podcast Episodes
Ep. 109: 2018 Reflection [not-audio_url] [/not-audio_url]

Duration: 27:26
I talk about some of what happened in 2018 and what I am looking to do in 2019. I also ask you to think about your previous year and goals. I also talk about some new training I am providing. For more info go to https://…
Ep. 108: Dunkin Donuts Breach, Maybe?? [not-audio_url] [/not-audio_url]

Duration: 18:25
In this episode James talk about the Dunkin Donuts Perks breach. This is an interesting situation as the accounts were access using the victim's username and password found from another data breach. The issue: Password R…
Ep. 107: Credential Stuffing [not-audio_url] [/not-audio_url]

Duration: 18:36
In this episode James talks about what credential stuffing is, how if affects your apps, and how you can look to defend against it. For more info go to https://www.developsec.com or follow us on twitter (@developsec). Jo…
Ep. 106: Facebook Breach Take-aways and Insights [not-audio_url] [/not-audio_url]

Duration: 31:18
James talks about the Facebook breach and shares some insights into how you can take steps to prevent this type of incident in your applications. For more info go to https://www.developsec.com or follow us on twitter (@d…
Ep. 105: Interview with Eric Johnson [not-audio_url] [/not-audio_url]

Duration: 57:11
I sit down with Eric Johnson to talk about security in the IDE and other fun topics. A bit longer than usual, but full of great information. You can reach out to Eric on twitter @emjohn20 or check out his site at https:/…
Ep. 104: Securing Devops with Julien Vehent [not-audio_url] [/not-audio_url]

Duration: 45:07
James sits down with Julien Vehent to discuss his new book "Securing DevOps" and talk about security in a devOps world. Julien (@jvehent) is a security architect and engineering manager with over 15 years of experience i…
Ep. 103: Is 3rd Party Authentication Right For Your Application? [not-audio_url] [/not-audio_url]

Duration: 18:16
The headlines are filled with credential breaches. One way to avoid being those headlines is to not store credentials. Instead, use a 3rd party to authenticate your users. While this cuts a lot of work out of your develo…
Ep. 102: Intro to Web Security Policies [not-audio_url] [/not-audio_url]

Duration: 16:41
In this episode James introduces us to the idea of web security policies stored in a security.txt file. We have talked about vulnerability disclosure before and this ties directly into that conversation. Link to Draft: h…
Ep. 101: You're not always right and that is ok [not-audio_url] [/not-audio_url]

Duration: 20:58
In this episode, James shares a story of learning from a mistake and how we can't be right every time. Hear what he learned and how you can learn too. For more info go to https://www.developsec.com or follow us on twitte…
Ep. 100: Choosing Security Tools [not-audio_url] [/not-audio_url]

Duration: 26:36
In this episode we talk about choosing the right security tools for your environment. There are lots of vendors offering solutions to help identify security issues within our applications. The trick is to learn to identi…