Log in

Security Weekly Podcast Network (Video) - Drupal Flaws, DevSecOps Implementation, & Cloud Native Security White Paper - ASW #131
share icon

Drupal Flaws, DevSecOps Implementation, & Cloud Native Security White Paper - ASW #131

Security Weekly Podcast Network (Video)

11/24/20

•

31m

About

Comments

Featured In

In the Application Security News, a manifesto highlights principles and values for threat modeling, the CNCF releases a Cloud Native Security Whitepaper, Microsoft put security in the CPU with Pluton, mass scanning for secrets, ancient flaws resurface in Drupal, and steps for implementing source composition analysis!

 

Visit https://www.securityweekly.com/asw for all the latest episodes!

Show Notes: https://wiki.securityweekly.com/asw131

Previous Episode

We threat model every day without realizing it. And, of course, we often threat model with systems and products within our organizations. So how formal does our approach need to be? How do we best guide the "what could go wrong" discussion with DevOps teams? And what's a sign that we're generating useful threat models?

 

Visit https://www.securityweekly.com/asw for all the latest episodes!

Show Notes: https://wiki.securityweekly.com/asw131

Next Episode

Key Points:

  • Being Strategic is vital and relevant to a successful Cybersecurity Program
  • Understanding Organization Status of controls in real-time is a competitive advantage
  • Cybersecurity tools are tactical – Risk Management is strategic
  • Connecting Cybersecurity to Risk Management ensures to business goals and objectives are maximized to achieve corporate success

 

Visit https://www.securityweekly.com/bsw for all the latest episodes!

Show Notes: https://securityweekly.com/bsw197

Promoted