Artwork

Contenu fourni par Tromzo. Tout le contenu du podcast, y compris les épisodes, les graphiques et les descriptions de podcast, est téléchargé et fourni directement par Tromzo ou son partenaire de plateforme de podcast. Si vous pensez que quelqu'un utilise votre œuvre protégée sans votre autorisation, vous pouvez suivre le processus décrit ici https://fr.player.fm/legal.
Player FM - Application Podcast
Mettez-vous hors ligne avec l'application Player FM !

EP 38 — Avalara’s Anthony Ungerman on the Imperative for Security-Minded Organizations

29:34
 
Partager
 

Manage episode 368172398 series 3330694
Contenu fourni par Tromzo. Tout le contenu du podcast, y compris les épisodes, les graphiques et les descriptions de podcast, est téléchargé et fourni directement par Tromzo ou son partenaire de plateforme de podcast. Si vous pensez que quelqu'un utilise votre œuvre protégée sans votre autorisation, vous pouvez suivre le processus décrit ici https://fr.player.fm/legal.

In this episode of the Future of Application Security, Harshil speaks with Anthony Ungerman, VP Product Security at Avalara, a tax software company. They discuss what product security encompasses beyond application security, how the security team at Avalara works with engineers, and how they articulate business value to increase security implementation. They also discuss security automation, approaches for security training, and what's in store for the future of product security.

Topics discussed:

  • The evolution of Anthony's career as a "lifelong computer junkie," including how he was introduced to security, and how he learned security by practicing on his kids' web traffic.
  • How Anthony defines product security, why it's broader than application security, and what it encompasses.
  • How Avalara's security team works with the engineering team, and how they leverage security champions to implement security initiatives.
  • How security-mindedness is expanding, from the boardroom to customers, prompted by data privacy regulation like EU GDPR and the edicts from the White House.
  • How to get more security buy-in by being able to explain how initiatives tie back to business objectives.
  • A summary of articles Anthony wrote about how to automate application security programs.
  • What types of training they're offering to ramp engineers up on security best practices — and what consequences are in place if they don't complete training.
  • How the future of product security will be shaped by privacy regulations, generative learning, and all-encompassing dashboards.
  continue reading

60 episodes

Artwork
iconPartager
 
Manage episode 368172398 series 3330694
Contenu fourni par Tromzo. Tout le contenu du podcast, y compris les épisodes, les graphiques et les descriptions de podcast, est téléchargé et fourni directement par Tromzo ou son partenaire de plateforme de podcast. Si vous pensez que quelqu'un utilise votre œuvre protégée sans votre autorisation, vous pouvez suivre le processus décrit ici https://fr.player.fm/legal.

In this episode of the Future of Application Security, Harshil speaks with Anthony Ungerman, VP Product Security at Avalara, a tax software company. They discuss what product security encompasses beyond application security, how the security team at Avalara works with engineers, and how they articulate business value to increase security implementation. They also discuss security automation, approaches for security training, and what's in store for the future of product security.

Topics discussed:

  • The evolution of Anthony's career as a "lifelong computer junkie," including how he was introduced to security, and how he learned security by practicing on his kids' web traffic.
  • How Anthony defines product security, why it's broader than application security, and what it encompasses.
  • How Avalara's security team works with the engineering team, and how they leverage security champions to implement security initiatives.
  • How security-mindedness is expanding, from the boardroom to customers, prompted by data privacy regulation like EU GDPR and the edicts from the White House.
  • How to get more security buy-in by being able to explain how initiatives tie back to business objectives.
  • A summary of articles Anthony wrote about how to automate application security programs.
  • What types of training they're offering to ramp engineers up on security best practices — and what consequences are in place if they don't complete training.
  • How the future of product security will be shaped by privacy regulations, generative learning, and all-encompassing dashboards.
  continue reading

60 episodes

모든 에피소드

×
 
Loading …

Bienvenue sur Lecteur FM!

Lecteur FM recherche sur Internet des podcasts de haute qualité que vous pourrez apprécier dès maintenant. C'est la meilleure application de podcast et fonctionne sur Android, iPhone et le Web. Inscrivez-vous pour synchroniser les abonnements sur tous les appareils.

 

Guide de référence rapide