In this episode of the “DevSec for Scale” podcast, Jeremy Hess interviews Josh Grossman, CTO at Bounce Security and an OWASP Israel board member, about integrating security into development processes. They discuss the limitations of traditional methods like penetration testing and the necessity of embedding security within normal development workflows. Josh emphasizes that continuously breaking […]
Resources
-
DevSec For Scale Podcast – Proactively Building Secure Software w/ Josh Grossman, Bounce Security -
DevSec For Scale Podcast – Securing Access To Sensitive Data w/ Yoav Turgeman Levi, Harmonya In this episode of the “DevSec for Scale” podcast, Jeremy Hess interviews Yoav Turgeman Levi, a Senior DevOps Engineer at Harmonya. Yoav shares his insights on the challenges of securing developer access in modern tech environments, emphasizing the balance needed between granting necessary permissions and maintaining security. Developers often seek high-level access to avoid workflow […]
-
DevSec For Scale Podcast – Software Supply Chain Security w/ Anton Weiss, Otomato Software In this episode of the “DevSec for Scale” podcast, Jeremy Hess interviews Anton Weiss, a software delivery futurist and founder of Otomato Software. Anton shares insights on the importance of securing developer access and documenting build procedures to enhance security. He emphasizes that collaboration and proper documentation are essential in identifying and mitigating security risks […]
-
DevSec For Scale Podcast – Better Security Awareness for DevOps w/ Hila Fish, Wix In this episode of the “DevSec for Scale” podcast, Jeremy Hess interviews Hila Fish, a senior DevOps engineer at Wix. Hila emphasizes the importance of cultivating a security mindset in DevOps from the start. She believes that consistently practicing security measures as part of daily routines can embed this mindset into regular workflows, making security […]
-
DevSec For Scale Podcast – OSINT and Security w/ Nick DiPasquale, Security Researcher In this episode of the “DevSec for Scale” podcast, Jeremy Hess interviews Nick DiPasquale, a security professional with a background in system administration, systems engineering, and DevOps. Nick emphasizes that people remain the most common attack vector in security breaches, a challenge that persists despite technological advancements. He highlights the need for both technical and […]
-
DevSec For Scale Podcast – Microservices Authentication & Authorization w/ Yuval Yogev, Sygnia In this episode of the “DevSec for Scale” podcast, Jeremy Hess interviews Yuval Yogev, Chief Architect at Sygnia, a cybersecurity company specializing in incident response and threat hunting. Yuval highlights the different types of authentication and authorization use cases that growing startups often encounter, including user logins, machine-to-machine communication, and external API interactions. He emphasizes […]
-
DevSec For Scale Podcast – Open Source Security w/ Liran Tal, Snyk In this episode of the “DevSec for Scale” podcast, host Jeremy Hess welcomes Liran Tal, the Director of Developer Advocacy at Snyk. Liran and Jeremy dive into the topic of open source security, emphasizing the increasing threat from attackers who exploit open source ecosystems like PyPI, RubyGems, and npm. Liran explains how easy it is […]
-
DevSec For Scale Podcast – Cybersecurity Advocacy w/ Ashish Rajan, cloudsecuritypodcast.tv In this episode of the “DevSec for Scale” podcast, host Jeremy Hess welcomes Ashish Rajan, the CISO at PageUp People and host of the Cloud Security Podcast. Ashish discusses his journey in cyber advocacy and highlights the parallels between the rise of DevOps and the current evolution of cyber advocacy. He emphasizes the need for […]
-
DevSec For Scale Podcast – Auth Security w/ Dan Moore, FusionAuth In this episode of the “DevSec for Scale” podcast, host Jeremy Hess welcomes Dan Moore, Head of Developer Relations at FusionAuth, to discuss the intricacies of authentication (auth) and its evolution in modern computing. Dan breaks down the three main components of auth: authentication (identifying who you are), authorization (determining what you can do), and […]
-
DevSec For Scale Podcast – Securing Secrets w/ Conor Mancone, Cimpress In this episode of the “DevSec for Scale” podcast, host Jeremy Hess is joined by Conor Mancone, Principal Application Security Engineer at Cimpress. Conor discusses the crucial topic of credential rotation and the challenges associated with managing access credentials within application environments. He highlights a common dilemma teams face: how to change passwords without disrupting […]
-
DevSec For Scale Podcast – Securing Your CI/CD Pipeline w/ Zan Markan, CircleCI In this episode of the “DevSec for Scale” podcast, host Jeremy Hess welcomes Zan Markan, Senior Developer Advocate at CircleCI. Zan provides a deep dive into best practices for CI/CD pipeline security, particularly for early-stage companies. He underscores the importance of automating pipelines from the outset, enabling smaller teams to compete effectively with larger organizations […]
-
DevSec For Scale Podcast – Common Startup Security Mistakes w/ Dan Yelovitch, develeap In this episode of the “DevSec for Scale” podcast, host Jeremy Hess welcomes Dan Yelovitch, Chief DevOps Architect at develeap, a consulting company specializing in DevOps transformation. Dan discusses the critical importance of integrating security measures from the very beginning of a company’s growth. He emphasizes that as companies expand, their systems become more complex, […]
Ready to get started?
Discover how Akeyless simplifies secrets management, reduces sprawl, minimizes risk, and saves time.
Take a self-guided tour of our top features.
See the platformLearn what Akeyless can do for your team.
Talk to an expert