Gary McGraw

The Silver Bullet Security Podcast

with Gary McGraw

Sponsored by Cigital and IEEE Security & Privacy

Show 021 - A Panel Discussion with Cigital’s Principals

Cigital Logo

For the 21st episode of The Silver Bullet Security Podcast, Gary hosts a panel discussion with Cigital’s principals. Participants include Sammy Migues (Director of Training and Knowledge Management), John Steven (Principal Consultant) and Pravir Chandra (Principal Consultant). The group discusses the best ways for large companies to get started with software security and the similarities between CLASP, Microsoft’s SDL, and the Security Touchpoints. They also ponder how much the security testing burden should fall on QA and whether developing expertise in architectural risk analysis or threat modeling is more helpful. John Steven also discusses the hole in his dining room, which threat modeling would not have helped to prevent.

 
icon for podpress  Show 021 - A Panel Discussion with Cigital's Principals [23:35m]: Play Now | Play in Popup | Download

Leave a Reply



Resources
> Overview
> Your Account
> Podcast
> Blog
> Case Studies
> White Papers
> Publications
> Books
> Security Articles
> Presentations

Silver Bullet Security Podcast

RSS

iTunes

PodcastAlley.com Feeds

Recent Entries
  • Show 025 - An Interview with Jon Swartz
  • Show 024 - An Interview with Mary Ann Davidson
  • Show 023 - An Interview with Chris Wysopal
  • Promo

    Podcasters: download the Silver Bullet Podcast promo for your show (30 sec, 128k MP3).

    Credits

    Theme song "Zagreb" provided by The Cheebacabra

    Bullet photo provided by Pedro Saenz