Rapid Risk Assessments

Rapid Risk Assessments

That was the main take away for me from today’s talks by SANS instructor Eric Johnson. He was in the country running a workshop and talk at AISA conference in Melbourne and SANS contacted me if I was interested in having him doing a private talk to the team. I was...
Gamified Learning – Application Security

Gamified Learning – Application Security

Today we had a combined application security event with another tech company.It was the first time we ran the combined event and it involved security champions from both companies. We had planned on spending the morning reviewing 4 security concepts; XSS, CSRF, RCE...
Speaking at Quality Engineering Meetup

Speaking at Quality Engineering Meetup

Great evening talking about DevSecOps at the Quality Engineering #meetup. The audience was fantastic! Everyone was so engaged and had many great question. I had to rush through towards the end as we went overtime! I had a couple of people who spoke to me after and...
My RSA Singapore 2018 Experience

My RSA Singapore 2018 Experience

Now Matters. That is the theme for this year’s RSA conference. Now matters, because it drives what’s next. Technology, the pace of development and the sophistication of attackers are better than ever. The average time from disclosure of known vulnerability to publicly...
Trust your CDN but verify with SRI

Trust your CDN but verify with SRI

I attended a Sydney SecTalks meetup last night which talked about the dangers of Content Delivery Networks being compromised (CDNs). Lots of websites source their javascript and css resources from CDNs to improve their website’s performance. Examples of CDNs are...
Featured on UOW Computer Science Page

Featured on UOW Computer Science Page

I sometimes do a search for my name on the University of Wollongong’s website as you never know what the search results might you. Today I discovered that I’ve been featured on the UOW Computer Science Page. 🙂...
SANS Community Night – Cyber Security Playbook

SANS Community Night – Cyber Security Playbook

This week, I attended a SANS community night talk and we had presenters Dr. Eric Cole and Jake Williams talk about the different types of attacks and their prevention and mitigation strategies. It was my first SANS community night event and I was also at the venue...
Rapid Software Testing Visualisation

Rapid Software Testing Visualisation

I recently completed a 3 day Rapid Software Testing course by James Bach. While I am not a tester, I found it useful attending such a course as it gives me perspective as to what testers think about and what methodology they use in their testing process. What I found...

A Retrospective on Fishbowl Retrospectives

Last Monday I attended a Meetup event by the Sydney Scrum User group which was titled Retrospective Experiences and Techniques Fishbowl What was interesting about the meetup was that it was presented in the fishbowl conversation format. I’ve never heard of it prior to...