Breakpoint Security Podcast
Breakpoint-'Exploring the depths of Defensive Security'. The defensive side of Security is a world in itself with teams achieving amazing feats that involve excellent engineering practices and smart optimisation for scale. This is not talked about enough in the industry. Join me in the br3akp0int podcast as we reflect on the methods and approaches these smart teams use to solve practical challenges in information security and innovate their way into the future. Who is this meant for? : This podcast is for anyone in InfoSec willing to know more about advances in security techniques. This includes security researchers or professionals, product owners, compliance or cloud, AI/ML, threat intel, SecOps automation, Security Leaders, development teams, pentesters and security practitioners. A bit about me: I am a technical security enthusiast and have been dabbling my hands at both offensive and defensive security. I am passionate about growing security communities and have spoken and trained at various security conferences.
Breakpoint Security Podcast
#S03EP05 Mastering Application Threat Modeling at Scale | Tony UV
TOPIC: Mastering Application Threat Modeling at Scale
Guest: Tony UV, CEO & Founder of VerSprite Security, and the Author of Risk Centric Threat Modeling & PASTA Methodology
We dive deep into everything from effective threat modeling techniques for Agile and waterfall applications to scaling threat modeling across large application ecosystems. Tony shares his insights on automating this critical process, handling technical and cultural dependencies, and ensuring security practices keep up with rapid development velocity.
If you're looking to understand what a robust threat modeling program looks like and how to measure its success, you're at the right place!
Recommended reading/viewing for practitioners:
- https://www.linkedin.com/posts/tonyuv_technology-cybersecurity-threatmodeling-activity-7136353298416107520-DOxu?utm_source=share&utm_medium=member_ios- https://versprite.com/blog/organizational-threat-model-enterprise-risk-assessment/
- https://versprite.com/blog/threat-modeling-against-supply-chains/
- https://www.amazon.com/Risk-Centric-Threat-Modeling-Simulation/dp/0470500964?dplnkId=35a18e4f-f9bb-48cc-b747-46fae78757f4&nodl=1
I would love to hear your suggestions and feedbacks, please DM me. If you liked this episode, please share with others in the community. It always means a lot!
If you’re interested in a security challenge that you’re facing or would like to hear from a specific speaker/team, let me know. Buzz me on Twitter or LinkedIn; checkout my handles below:
- Twitter: @NeeluTripathy
- LinkedIn: neelutripathy