Home
Categories
EXPLORE
True Crime
Comedy
Business
Society & Culture
History
Sports
Health & Fitness
About Us
Contact Us
Copyright
© 2024 PodJoint
00:00 / 00:00
Sign in

or

Don't have an account?
Sign up
Forgot password
https://is1-ssl.mzstatic.com/image/thumb/Podcasts211/v4/99/24/c7/9924c76c-bb18-0ab3-8c0e-db161e25e778/mza_13577858525132859387.jpg/600x600bb.jpg
AppSec Unlocked
Edwin Kwan
25 episodes
3 days ago
AppSec Unlocked is your key to understanding the complex world of application security. Whether you're a seasoned security professional, a curious developer, or somewhere in between, join us as we demystifies application security one episode at a time.
Show more...
Technology
RSS
All content for AppSec Unlocked is the property of Edwin Kwan and is served directly from their servers with no modification, redirects, or rehosting. The podcast is not affiliated with or endorsed by Podjoint in any way.
AppSec Unlocked is your key to understanding the complex world of application security. Whether you're a seasoned security professional, a curious developer, or somewhere in between, join us as we demystifies application security one episode at a time.
Show more...
Technology
Episodes (20/25)
AppSec Unlocked
S2E12 -The Future of Security Training

Season 2: Training & Awareness

Episode 12: The Future of Security Training

We're at the season finale on the theme of Training & Awareness. We're going to finish off the season by looking ahead to the future of security training and awareness. Over the past eleven episodes, we've covered everything from Security Champions to cloud security. Now it's time to explore what's next.


Show more...
4 months ago
11 minutes

AppSec Unlocked
S2E11 - Security Training for Remote Teams

Season 2: Training & Awareness

Episode 11: Security Training for Remote Teams

In this episode, we're looking at a challenge that's become increasingly critical: security training for remote teams. We'll explore how to build and maintain a strong security culture when your team is distributed across different locations, time zones, and even continents.

Show more...
5 months ago
9 minutes 44 seconds

AppSec Unlocked
S2E10 - Cloud Security Awareness

Season 2: Training & Awareness

Episode 10: Cloud Security Awareness

In this episode, we'll be talking about cloud security awareness and exploring why traditional security thinking falls apart in the cloud, and how to build a new security mindset for the cloud era.

Show more...
5 months ago
7 minutes 32 seconds

AppSec Unlocked
S2E9 - Secure Development Lifecycle Training

Season 2: Training & Awareness

Episode 9: Secure Development Lifecycle Training

In this episode, we’ll look into Secure Development Lifecycle training, or SDL. We're going to explore how to build security into every phase of your development process—from initial planning through deployment and beyond.

Show more...
6 months ago
17 minutes 55 seconds

AppSec Unlocked
S2E8 - The Human Factor - Social Engineering Defense

Season 2: Training & Awareness

Episode 8: The Human Factor - Social Engineering Defense

In this episode, we'll be diving deep into what many consider the most persistent security threat: social engineering. We'll explore why humans are often called the weakest link in security – and more importantly, what we can do about it.

Show more...
6 months ago
14 minutes 34 seconds

AppSec Unlocked
S2E7 - Crisis Response Training: Preparing for the Inevitable

Season 2: Training & Awareness

Episode 7: Crisis Response Training: Preparing for the Inevitable

In this episode we're diving deep into crisis response training. Because in security, it's not if a crisis will happen, but when. Every organization will face security incidents—that's simply the reality of our digital landscape today.

Show more...
6 months ago
26 minutes 45 seconds

AppSec Unlocked
S2E6 - Executive Security Awareness - Speaking the Board's Language

Season 2: Training & Awareness

Episode 6: Executive Security Awareness - Speaking the Board's Language

In this episode, we learn from special guest and seasoned CISO Mangaraja Saut Martua on how to communicate security risks to executives, board-level security awareness program and how to translate technical risks into business impact.

Show more...
7 months ago
22 minutes 52 seconds

AppSec Unlocked
S2E5 - Secure Coding Bootcamps - From Theory to Practice

Season 2: Training & Awareness

Episode 5: Secure Coding Bootcamps - From Theory to Practice


Last episode, we discussed building a security culture. Today, we're getting hands-on with one of the most effective ways to improve security: secure coding bootcamps

Show more...
7 months ago
9 minutes 11 seconds

AppSec Unlocked
S2E4 - Security Culture by Design

Season 2: Training & Awareness

Episode 4: Security Culture by Design

In our previous episode, we dove into measuring security awareness. Today, we're tackling something more fundamental: how to build security into your organization's DNA. We're talking about creating a security culture by design.

Show more...
8 months ago
11 minutes 1 second

AppSec Unlocked
S2E3 - Measuring Security Awareness - Metrics That Matter

Season 2: Training & Awareness

Episode 3: Measuring Security Awareness - Metrics That Matter


In our previous episodes, we explored building Security Champions programs and effective developer training. Today, we're tackling a challenge that keeps many CISOs up at night: How do you actually measure if your security awareness programs are working?

Show more...
8 months ago
6 minutes 32 seconds

AppSec Unlocked
S2E2: Developer Security Training - Beyond Annual Compliance

Season 2: Training & Awareness

Episode 2: Developer Security Training - Beyond Annual Compliance


In our last episode, we talked about building an effective Security Champions program. Today, we're tackling something even bigger: How to make security training actually work for developers.

Show more...
9 months ago
6 minutes 40 seconds

AppSec Unlocked
S2E1: Building a Security Champions Program That Actually Works

Season 2: Training & Awareness

Episode 1: Building a Security Champions Program That Actually Works


In this episode we'll talk about the most important security program you're not running correctly: The Security Champions program.

Show more...
9 months ago
6 minutes 49 seconds

AppSec Unlocked
Season 2 Intro: Training and Awareness

Intro to Season 2 of AppSec Unlocked


Welcome to Season 2 where we're diving into something critical that often gets overlooked in the world of cybersecurity: Training and Awareness.

Show more...
9 months ago
4 minutes 5 seconds

AppSec Unlocked
Help! There’s too many Vulnerabilities! A Practical Guide to Tackling Open-Source Security

Season 1: Open Source Security

Episode 11: Help! There’s too many Vulnerabilities! A Practical Guide to Tackling Open-Source Security

Show more...
11 months ago
7 minutes 21 seconds

AppSec Unlocked
S1E10 - A FAIR Approach to Vulnerability Patch Prioritization

Season 1: Open Source Security

Episode 10: A FAIR Approach to Vulnerability Patch Prioritization

In this episode of AppSec Unlocked, we dive into the fascinating topic of using a FAIR approach to Vulnerability Patch prioritization, where we explore how organizations can better prioritize vulnerabilities in their open-source software using the FAIR model and EPSS. And we have Denny Wan, an expert on FAIR analysis sharing his insights on this innovative approach.

Show more...
11 months ago
23 minutes 59 seconds

AppSec Unlocked
S1E9 - Open-Source Vulnerability Management Policy: A Balanced Approach

Season 1: Open Source Security Episode 9: Open-Source Vulnerability Management Policy: A Balanced Approach

In today's rapidly evolving cybersecurity landscape, managing vulnerabilities in open-source components has become increasingly complex. While traditional approaches relying solely on CVSS scores have their merits, they may not be sufficient to address the exponential growth in discovered vulnerabilities. A more nuanced and scalable approach is needed, one that considers not only severity but also exploitability and potential impact.

Show more...
12 months ago
9 minutes 35 seconds

AppSec Unlocked
S1S8 - A Cautionary Tale on Supply Chain Attacks: My Recent Encounter with a Compromised NPM Library

Season 1: Open Source Security Episode 8: A Cautionary Tale on Supply Chain Attacks: My Recent Encounter with a Compromised NPM Library

This is a rebroadcast from the CyberBites podcast as it is related to application security and open source supply chain.

Show more...
1 year ago
5 minutes 32 seconds

AppSec Unlocked
S1E7 - Introduction to SSVC

Season 1: Open Source Security Episode 7: Introduction to StakeholderSpecific Vulnerability Categorization (SSVC)


Introduction to a transformative risk-based approach to vulnerability management

  • Why SSVC, especially when we already have CVSS
  • How SSVC works and how to use it
  • Challenges and considerations
  • Real-world example
Show more...
1 year ago
9 minutes 23 seconds

AppSec Unlocked
S1E6 - Software Composition Analysis Selection Criteria

Season 1: Open Source Security

Episode 6: Software Composition Analysis Selection Criteria

  • The Language of Love (and Code)
  • Accuracy: The Goldilocks Zone
  • Speed: Because Time is Money (and Sanity)
  • Remediation: The Path of Least Resistance
  • User-Friendly: No Computer Science Degree Required
  • Timing is Everything
  • The Never-Ending Story
Show more...
1 year ago
7 minutes 4 seconds

AppSec Unlocked
S1E5 - Embarking on the Open Source Security Journey

Season 1: Open Source Security

Episode 5: Embarking on the Open Source Security Journey.

  • When Organisations Take the Leap
  • The Crucial Role of Awareness and Buy-in
  • The First Steps: Gaining Visibility
  • Key Takeaways for a Successful Program
  • Practical Steps and Resources
Show more...
1 year ago
7 minutes 2 seconds

AppSec Unlocked
AppSec Unlocked is your key to understanding the complex world of application security. Whether you're a seasoned security professional, a curious developer, or somewhere in between, join us as we demystifies application security one episode at a time.