DiscoverThe Boring AppSec PodcastS1E04 - Running a lean AppSec team
S1E04 - Running a lean AppSec team

S1E04 - Running a lean AppSec team

Update: 2024-03-25
Share

Description

Welcome to the Boring AppSec Podcast! In Episode 4, we discuss how lean AppSec teams run and operate. We share our experiences of having worked in engineering heavy organizations where the "engineer : appsec-engineer" ratio is far from ideal and scaling the AppSec team becomes very important to be able to reasonably manage risk.




References:


We will try and add information about all the references we make here. Please enter rabbit holes at will :) 



  1. Soft skills are important - ⁠⁠⁠https://www.softsideofcyber.com/

  2. Bhadra, the vulnerability management platform built and open sourced by Razor Pay - https://github.com/razorpay/bhadra

  3. Devin - https://www.cognition-labs.com/introd...

  4. Seezo (Automating design reviews) - https://seezo.io/


Contacting Anshuman



  1. LinkedIn: ⁠⁠⁠⁠https://www.linkedin.com/in/anshumanbhartiya/⁠⁠⁠⁠ 

  2. Twitter: ⁠⁠⁠⁠https://twitter.com/anshuman_bh⁠⁠⁠⁠ 

  3. Website: ⁠⁠⁠⁠https://anshumanbhartiya.com/⁠⁠⁠⁠

  4. Instagram: ⁠⁠⁠https://www.instagram.com/anshuman.bhartiya/⁠⁠⁠ 

  5. YouTube: ⁠⁠⁠https://www.youtube.com/@AnshumanBhartiya⁠⁠⁠   


Contacting Sandesh



  1. LinkedIn: ⁠⁠⁠⁠https://www.linkedin.com/in/anandsandesh/⁠⁠⁠⁠ 

  2. Twitter: ⁠⁠⁠⁠https://twitter.com/JubbaOnJeans/⁠⁠⁠⁠ 

  3. Website: ⁠⁠⁠⁠https://boringappsec.substack.com/⁠⁠⁠⁠ 

Comments 
In Channel
S2E9 - Ali Mesdaq

S2E9 - Ali Mesdaq

2025-03-0344:27

S2E8 - Ankita Gupta

S2E8 - Ankita Gupta

2025-02-2443:10

S2E7 - Jonathan Cran

S2E7 - Jonathan Cran

2025-02-1745:40

S2E5 - Drew Dennison

S2E5 - Drew Dennison

2025-02-0142:15

S2E4 - Varun Badhwar

S2E4 - Varun Badhwar

2025-01-2747:05

S2E3 - Robert Wood

S2E3 - Robert Wood

2025-01-2044:05

S2E2 - Dustin Lehr

S2E2 - Dustin Lehr

2025-01-1348:52

S2E1 - Jimmy Mesta

S2E1 - Jimmy Mesta

2025-01-0654:00

S1E09 - Incidents

S1E09 - Incidents

2024-05-1337:48

S1E05 - Threat Modeling

S1E05 - Threat Modeling

2024-04-0101:01:47

S1E03 - Bug Bounties

S1E03 - Bug Bounties

2024-03-1801:11:17

S1E02 - First Security Hire

S1E02 - First Security Hire

2024-03-1101:07:31

loading
00:00
00:00
x

0.5x

0.8x

1.0x

1.25x

1.5x

2.0x

3.0x

Sleep Timer

Off

End of Episode

5 Minutes

10 Minutes

15 Minutes

30 Minutes

45 Minutes

60 Minutes

120 Minutes

S1E04 - Running a lean AppSec team

S1E04 - Running a lean AppSec team

The Boring AppSec Podcast