I had the pleasure of being on Ashish Rajan’s Cloud Security Podcast to talk about Building an Engineering Security Culture.

We discussed about the following topics:

  • What is Application Security?
  • What is the difference between Application Security and Software Security?
  • Is being a developer an advantage going into Application Security?
  • Enabling an engineering security culture – What does this mean for those who don’t know?
  • Engineering Security Culture – How has it evolved to now most of the code developed is using open source components?
  • Enabling an engineering security culture – Where can one start and what should be avoided?
  • What is DevSecOps for you?

It was my first time doing a podcast episode and was a lot of fun! Thanks Ashish for the opportunity.