Security – Software Engineering Daily

Security – Software Engineering Daily

Software Engineering Daily

  • 41 minutes 25 seconds
    Biometric Authentication with Vincent Delitz

    Corbado is an authentication platform that provides APIs for developers to replace passwords with passkeys such as Face ID or Touch ID.

    Vincent Delitz is a Co-Founder at Corbado and he joins the show to talk about the platform, the changing authentication landscape, the challenge of session management with passkeys, and more.

    Gregor Vand is a security-focused technologist, and is the founder and CTO of Mailpass. Previously, Gregor was a CTO across cybersecurity, cyber insurance and general software engineering companies. He has been based in Asia Pacific for almost a decade and can be found via his profile at vand.hk.

     

    Please click here to see the transcript of this episode.

    Sponsorship inquiries: [email protected]

    The post Biometric Authentication with Vincent Delitz appeared first on Software Engineering Daily.

    13 March 2024, 9:00 am
  • 1 hour 4 minutes
    SimpleWebAuthn with Matthew Miller

    SimpleWebAuthn is an open source TypeScript-centric pair of libraries – frontend and backend – that make it easier for devs to implement WebAuthn on the web.

    Matthew Miller started the project in 2019 and it has grown in tandem with the popularization of WebAuthn. He joins the podcast today to talk about the history of the project starting from the first commit, the problems it solves, its design, and more.

    Gregor Vand is a security-focused technologist, and is the founder and CTO of Mailpass. Previously, Gregor was a CTO across cybersecurity, cyber insurance and general software engineering companies. He has been based in Asia Pacific for almost a decade and can be found via his profile at vand.hk.

     

    Please click here to see the transcript of this episode.

    Sponsorship inquiries: [email protected]

    The post SimpleWebAuthn with Matthew Miller appeared first on Software Engineering Daily.

    14 February 2024, 10:00 am
  • 35 minutes 22 seconds
    OpsHelm with Kyle McCullough

    Security issues can often be traced back to small misconfigurations in a database or cloud service, or an innocent code commit. OpsHelm is a security platform that’s oriented around identifying and fixing these issues.

    Kyle McCullough is the Co-Founder and CTO of OpsHelm and he has deep experience in backend and data engineering. He joins the show to talk about the challenges of security incident monitoring, prioritization, and response.

    This episode is hosted by Tyson Kunovsky. Tyson is the co-founder and CEO of AutoCloud, an infrastructure as code platform. He is originally from South Africa, and has a background in software engineering and cloud development. When he’s not busy designing new GitOps workflows, he enjoys skiing, riding motorcycles, and reading sci-fi books. Check the show notes for more information on Tyson’s work, and where to find him.

    Please click here to see the transcript of this episode.

    Sponsorship inquiries: [email protected]

    The post OpsHelm with Kyle McCullough appeared first on Software Engineering Daily.

    17 January 2024, 10:00 am
  • 42 minutes 54 seconds
    Apiiro Security Posture Management with Yonatan Eldar

    Software supply chain security is a major challenge in the modern engineering environment. Many teams are working to establish best practices to proactively identify, fix, and prevent risks in their applications. Apiiro is a platform designed to solve this problem and gives risk visibility, prioritization, and remediation.

    Yonatan Eldar is the Co-Founder and CTO at Apiiro and he joins the podcast to talk about the platform, application security posture management, and more.

    Gregor Vand is a security-focused technologist, and is the founder and CTO of Mailpass. Previously, Gregor was a CTO across cybersecurity, cyber insurance and general software engineering companies. He has been based in Asia Pacific for almost a decade and can be found via his profile at vand.hk.

    Please click here to see the transcript of this episode.

    Full Disclosure: 10KMedia is a sponsor of Software Engineering Daily.

    The post Apiiro Security Posture Management with Yonatan Eldar appeared first on Software Engineering Daily.

    3 January 2024, 10:00 am
  • 47 minutes 22 seconds
    Blocking Ransomware Attacks with Anthony Cusimano

    Ransomware attacks involve the deployment of malware that blocks access to a user’s or organization’s computer files by encrypting them. The attackers then demand a ransom payment in exchange for the decryption key that will restore access to the files. These attacks are often directed at governments and corporations, and can be costly.

    Veeam is a data storage system that was designed specifically to provide protection against ransomware attacks. Object First is a system that works with Veeam to increase its safety and security.

    Anthony Cusimano is the Director of Technical Marketing at Object First and he joins the podcast to talk about the growing sophistication of ransomware attacks and the emerging technologies to block them.

    This episode is hosted by Lee Atchison. Lee Atchison is a software architect, author, and thought leader on cloud computing and application modernization. His best-selling book, Architecting for Scale (O’Reilly Media), is an essential resource for technical teams looking to maintain high availability and manage risk in their cloud environments.

    Lee is the host of his podcast, Modern Digital Business, an engaging and informative podcast produced for people looking to build and grow their digital business with the help of modern applications and processes developed for today’s fast-moving business environment. Listen at mdb.fm. Follow Lee at softwarearchitectureinsights.com, and see all his content at leeatchison.com.

    Please click here to see the transcript of this episode.

    Sponsorship inquiries:[email protected]

    The post Blocking Ransomware Attacks with Anthony Cusimano appeared first on Software Engineering Daily.

    21 December 2023, 10:00 am
  • 43 minutes 6 seconds
    Software Supply Chain Security with Michael Lieberman

    One of the most famous software exploits in recent years was the SolarWinds attack in 2020. In this attack, Russian hackers inserted malicious code into the SolarWinds Orion system, allowing them to infiltrate the systems of numerous corporations and government agencies, including the U.S. executive branch, military, and intelligence services.

    This was an example of a software supply chain attack, which exploits interdependencies within software ecosystems. Software supply chain security is a growing issue, and is particularly important for companies that rely on large numbers of open source dependencies.

    Michael Lieberman is the Co-Founder and CTO of Kusari and has an extensive background in software security from his time at Citi Bank, MUFG and Bridgewater. He’s also active in the open source and security communities, including the Open Source Security Foundation and Cloud Native Computing Foundation. Michael joins the show today to talk about challenges and strategies in software supply chain security.

    Gregor Vand is a security-focused technologist, and is the founder and CTO of Mailpass. Previously, Gregor was a CTO across cybersecurity, cyber insurance and general software engineering companies. He has been based in Asia Pacific for almost a decade and can be found via his profile at vand.hk.

     

    Please click here for the transcript of this episode.

    Sponsorship inquiries: [email protected]

    The post Software Supply Chain Security with Michael Lieberman appeared first on Software Engineering Daily.

    6 December 2023, 10:00 am
  • 42 minutes 15 seconds
    KubeCon Special: Sigstore with Santiago Torres-Arias

    This episode of Software Engineering Daily is part of our on-site coverage of KubeCon 2023, which took place from November 6th through 9th in Chicago.

    In today’s interview, host Jordi Mon Companys speaks with Santiago Torres-Arias who is a contributor to Sigstore, which is a system to register software supply chain actors using federated identity management.

    Jordi Mon Companys is a product manager and marketer that specializes in software delivery, developer experience, cloud native and open source. He has developed his career at companies like GitLab, Weaveworks, Harness and other platform and devtool providers. His interests range from software supply chain security to open source innovation. You can reach out to him on Twitter at @jordimonpmm

    Please click here to see the transcript for this episode. Sponsorship inquiries: [email protected]

    The post KubeCon Special: Sigstore with Santiago Torres-Arias appeared first on Software Engineering Daily.

    3 December 2023, 10:00 am
  • 40 minutes 43 seconds
    The Future of HTTP with Nick Shadrin and Roman Arutyunyan


    The Hypertext Transfer Protocol, or HTTP, is used to load webpages using hypertext links, and it’s the foundation of the web. Tim Berners-Lee famously created HTTP version 0.9 in 1989, and defined the essential behavior of a client and a server. Version 1.0 was eventually finalized in 1996, and its secure variant called HTTPS is now used on more than 80% of websites. HTTP continues to undergo intense development and version 3 in now being actively adopted across the tech industry.

    Nick Shadrin is a Software Architect at NGINX, and Roman Arutyunyan is a Principal Software Engineer at NGINX. Nick and Roman are experts in HTTP and they join the show today to tell the history of its evolution since 1989, and how NGINX is implementing support for HTTP/3.

    Full disclosure: NGINX is a sponsor of Software Engineering Daily.

    Mike Bifulco is CTO and co-founder of Craftwork. He’s also a developer advocate, writer, podcaster and serial startup founder. In past lives, Mike worked for Google, Stripe, Microsoft, and Gymnasium. Mike is also co-founder of APIs You Won’t Hate, a community for API Developers on the web. Mike’s publishes a weekly newsletter for product builders called Tiny Improvements at mikebifulco.com. Mike is on Mastodon at https://hachyderm.io/@irreverentmike

    Please click here to view this show’s transcript.

    Sponsorship inquiries: [email protected]

    The post The Future of HTTP with Nick Shadrin and Roman Arutyunyan appeared first on Software Engineering Daily.

    11 October 2023, 6:50 pm
  • 44 minutes 40 seconds
    Minimum Viable Security for Cloud Apps with David Melamed
    Cloud applications continue to grow in popularity, but ensuring the security of these applications often presents a formidable engineering challenge. This challenge motivated the creation of Jit. Jit is a continuous security platform for developers, and seeks to enable every cloud app to start with minimum viable security, or MVS, without slowing development velocity. David Melamed is the Co-founder and CTO of Jit and he joins us in the episode to talk about his platform. Jeff is a DevSecOps engineer with  experience in security, the software development life cycle, and cloud technologies. His advanced expertise in HashiCorp technologies places him as one of the most sought after trainers in the Europe, Middle East, and Africa regions and beyond. Jeff has worked for a range of different companies – from small startups to some of the biggest financial institutions. He now successfully runs his own consultancy that provides services in DevSecOps, Cloud and Security. You can find Jeff at hemmen.lu. Sponsorship inquiries: [email protected] Please click here to view this show’s transcript.

    The post Minimum Viable Security for Cloud Apps with David Melamed appeared first on Software Engineering Daily.

    12 September 2023, 8:30 am
  • 44 minutes 45 seconds
    Trusted Software Supply Chain with Vincent Danen

    Available as a cloud service, Red Hat Trusted Software Supply Chain provides a DevSecOps framework to create applications more securely. Vincent Danen is the VP of Product Security at Red Hat and joins us in this episode.

    Red Hat has been a Secure Open Source software provider for very long. We discuss how the Red Hat Trusted Software Supply Chain product allows enterprises to adopt DevSecOps practices successfully, safely consume open-source code and third-party dependencies, and build security into the software development life cycle.

    Jordi Mon Companys is a product manager and marketer that specializes in software delivery, developer experience, cloud native and open source. He has developed his career at companies like GitLab, Weaveworks, Harness and other platform and devtool providers. His interests range from software supply chain security to open source innovation. You can reach out to him on Twitter at @jordimonpmm

    This Interview was recorded at Open Source Summit North America and wouldn’t have been possible without the generous support from The Linux Foundation.

    Sponsorship inquiries: [email protected]

    Please click here to view this show’s transcript.

     

    The post Trusted Software Supply Chain with Vincent Danen appeared first on Software Engineering Daily.

    5 July 2023, 9:00 am
  • 38 minutes 32 seconds
    Software Supply Chain with Feross Aboukhadijeh

    The software supply chain refers to the process of creating and distributing software products. This includes all of the steps involved in creating, testing, packaging, and delivering software to end-users or customers.

    Socket is a new security company that can protect your most critical apps from supply chain attacks. They are taking an entirely new approach to one of the hardest problems in security in a stagnant part of the industry that has historically been obsessed with just reporting on known vulnerabilities.

    Feross is the Founder and CEO of Socket Security, and he joins us today.

    This Interview was recorded at Open Source Summit North America and wouldn’t have been possible without the generous support from The Linux Foundation.

     

    Jordi Mon Companys is a product manager and marketer that specializes in software delivery, developer experience, cloud native and open source. He has developed his career at companies like GitLab, Weaveworks, Harness and other platform and devtool providers. His interests range from software supply chain security to open source innovation. You can reach out to him on Twitter at @jordimonpmm

    Sponsorship inquiries: [email protected]

    The post Software Supply Chain with Feross Aboukhadijeh appeared first on Software Engineering Daily.

    16 May 2023, 9:00 am
  • More Episodes? Get the App
© MoonFM 2024. All rights reserved.