The Purple Book Community
The Purple Book Community
  • 130
  • 5 004
Journey to AppSec Maturity with Renan Dias
Security engineering expert Renan Dias shares insights into application security challenges, and a maturity roadmap that fellow program builders can follow.
𝗔𝗯𝗼𝘂𝘁 𝗥𝗲𝗻𝗮𝗻
Renan has been in the Tech industry for over 10 years and has worn many hats throughout his career going from Computer Vision researcher to Software Developer, Cloud Infrastructure Engineer, Solutions Architect, Site Reliability Engineer to now Engineering Manager focusing on all things security.
Security Engineering has long been one of his biggest passions and he always made sure to explore and learn the security side of whatever he was doing. He also has a passion for teaching and building Tech communities and has published many articles in a Security magazine and different online blogs, organized many tech events in Toronto where he's based in, as well as online events such as workshops, CTFs and livestreams on UA-cam and Twitch.
_______________________________________________________________________________
𝗧𝗵𝗲 𝗣𝘂𝗿𝗽𝗹𝗲 𝗕𝗼𝗼𝗸 𝗖𝗼𝗺𝗺𝘂𝗻𝗶𝘁𝘆
A purpose-driven and trusted network of security leaders and practitioners equipping people with the expertise to embrace secure development practices, solve ever-evolving security challenges, and ultimately democratize software security.
Looking to network with the world's top security leaders and share your knowledge in software, application, or product security?
🤝 Explore 𝗖𝗼𝗺𝗺𝘂𝗻𝗶𝘁𝘆 𝗠𝗲𝗺𝗯𝗲𝗿𝘀𝗵𝗶𝗽: thepurplebook.club/explore-membership
_______________________________________________________________________________
𝗙𝗼𝗹𝗹𝗼𝘄 𝘂𝘀:
Website: www.thepurplebook.club
LinkedIn: www.linkedin.com/company/purple-book-community
Twitter/X: www.x.com/CommunityPurple
_______________________________________________________________________________
Переглядів: 80

Відео

Panel Discussion: Women in Security - Shaping the Future of AppSec
Переглядів 81Місяць тому
A special panel discussion for Cybersecurity Awareness Month conducted by distinguished women leaders of PBC. This session illuminates the personal journeys of these cyber professionals in overcoming challenges, breaking barriers in a male-dominated field, and navigating bias. The panel offers unique insights into the importance of mentorship in shaping careers, how to effectively handle uncomf...
Paolo del Mundo: OWASP Top 10 for LLMs and Generative AI Apps
Переглядів 43Місяць тому
The Motley Fool Director of Application Security Paolo del Mundo leads an insightful Community session connecting the foundational OWASP Top 10 framework for traditional web applications to the emerging world of AI, exploring the unique security challenges posed by large language models (LLMs). Paolo discusses the profile and impact of vulnerabilities such as prompt injection, insecure plugin d...
Maria Schwenger: AI Implementations and Putting Guardrails Around Them
Переглядів 242 місяці тому
Decorated cyber leader, AI & security guru and celebrated PBC member Maria Schwenger leads a presentation and discussion on the secure implementation of AI. In view of generative AI's rapid advance, Maria explores how businesses are navigating the shift from experimentation to real-world deployment, highlighting the importance of robust security frameworks. She discusses the expanded threat lan...
Journey to AppSec Maturity with Pierre Mouallem
Переглядів 383 місяці тому
Experienced security leader Pierre Mouallem shares his perspective and experiences addressing challenges in application security and measuring the maturity of an AppSec program. 𝗔𝗯𝗼𝘂𝘁 𝗣𝗶𝗲𝗿𝗿𝗲 Pierre serves as the Deputy CISO and has been with SailPoint since 2021. Pierre has over two decades of experience in the areas of cybersecurity and software development. Throughout his career, he has worn ...
Francis Odum: The Rise of Application Security Posture Management
Переглядів 524 місяці тому
A special guest-led Community meeting welcoming cybersecurity researcher, instructor, and analyst Francis Odum who shared his findings and insights on the growth of the ASPM solutions category and current offerings in the market. 𝗔𝗯𝗼𝘂𝘁 𝗙𝗿𝗮𝗻𝗰𝗶𝘀 Francis is a renowned cybersecurity researcher, industry analyst, and author of the Software Analyst Newsletter, one of the largest cybersecurity newslet...
CISO Panel: Managing Risk as the World Embraces AI‍ | PBC Connect - RSAC 2024
Переглядів 856 місяців тому
A special panel discussion on managing a new generation of risks (and solutions to combat them) as we move into an AI-powered world, hosted during our PBC Connect event on May 6th at RSA Conference 2024. 𝗠𝗼𝗱𝗲𝗿𝗮𝘁𝗼𝗿: Karthik Swarnam - /in/kswarnam/ 𝗦𝗽𝗲𝗮𝗸𝗲𝗿𝘀: Upendra Mardikar - /in/upendra-mardikar-11523a/ Vijay Jajoo - /in/vijay-jajoo-73b346/ 𝗧𝗵𝗲 𝗣𝘂𝗿𝗽𝗹𝗲 𝗕𝗼𝗼𝗸 𝗖𝗼𝗺𝗺𝘂𝗻𝗶𝘁𝘆 A purpose-driven and trusted...
Basic Threat Modeling | AppSecCon 2023
Переглядів 31Рік тому
Day 2, Session 7 from the AppSecCon 2023 virtual conference. 𝗦𝗽𝗲𝗮𝗸𝗲𝗿(𝘀): Brook Schoenfield - /in/brookschoenfield/ 𝗧𝗵𝗲 𝗣𝘂𝗿𝗽𝗹𝗲 𝗕𝗼𝗼𝗸 𝗖𝗼𝗺𝗺𝘂𝗻𝗶𝘁𝘆 A purpose-driven and trusted network of security leaders and practitioners equipping people with the expertise to embrace secure development practices, solve ever-evolving security challenges, and ultimately democratize software security. Looking to networ...
Closing Keynote: Disrupting the Status Quo with the Power of Communities | AppSecCon 2023
Переглядів 8Рік тому
Day 2, Session 8 from the AppSecCon 2023 virtual conference. 𝗠𝗼𝗱𝗲𝗿𝗮𝘁𝗼𝗿: LingRaj Patil - /in/nikhilgupta/ 𝗣𝗮𝗻𝗲𝗹𝗶𝘀𝘁𝘀: Manoj Apte - /in/johndonovanatt/ Jim Reavis - /in/johnmjack/ 𝗧𝗵𝗲 𝗣𝘂𝗿𝗽𝗹𝗲 𝗕𝗼𝗼𝗸 𝗖𝗼𝗺𝗺𝘂𝗻𝗶𝘁𝘆 A purpose-driven and trusted network of security leaders and practitioners equipping people with the expertise to embrace secure development practices, solve ever-evolving security challenges, a...
S3M2: Advancing Technology in an AppSec Program | AppSecCon 2023
Переглядів 26Рік тому
Day 1, Session 6 from the AppSecCon 2023 virtual conference. 𝗦𝗽𝗲𝗮𝗸𝗲𝗿(𝘀): Mohit Kalra - /in/mohitkalra/ Charan Akiri - /in/charan-akiri-86385473/ 𝗧𝗵𝗲 𝗣𝘂𝗿𝗽𝗹𝗲 𝗕𝗼𝗼𝗸 𝗖𝗼𝗺𝗺𝘂𝗻𝗶𝘁𝘆 A purpose-driven and trusted network of security leaders and practitioners equipping people with the expertise to embrace secure development practices, solve ever-evolving security challenges, and ultimately democratize softwa...
S3M2: Evolving Processes in an AppSec Program | AppSecCon 2023
Переглядів 11Рік тому
Day 2, Session 5 from the AppSecCon 2023 virtual conference. 𝗦𝗽𝗲𝗮𝗸𝗲𝗿(𝘀): Aruneesh Salhotra - /in/aruneeshsalhotra/ Maria Schwenger - /in/mariaschwenger/ 𝗧𝗵𝗲 𝗣𝘂𝗿𝗽𝗹𝗲 𝗕𝗼𝗼𝗸 𝗖𝗼𝗺𝗺𝘂𝗻𝗶𝘁𝘆 A purpose-driven and trusted network of security leaders and practitioners equipping people with the expertise to embrace secure development practices, solve ever-evolving security challenges, and ultimately democratiz...
S3M2: Strengthening People in an AppSec Program | AppSecCon 2023
Переглядів 20Рік тому
Day 1, Session 4 from the AppSecCon 2023 virtual conference. 𝗦𝗽𝗲𝗮𝗸𝗲𝗿(𝘀): Pratik Savla - /in/pratiksavla/ Mark Merkow - /in/markmerkow/ 𝗧𝗵𝗲 𝗣𝘂𝗿𝗽𝗹𝗲 𝗕𝗼𝗼𝗸 𝗖𝗼𝗺𝗺𝘂𝗻𝗶𝘁𝘆 A purpose-driven and trusted network of security leaders and practitioners equipping people with the expertise to embrace secure development practices, solve ever-evolving security challenges, and ultimately democratize software securit...
Attributes of a Modern AppSec Maturity Model | AppSecCon 2023
Переглядів 19Рік тому
Day 2, Session 3 from the AppSecCon 2023 virtual conference. 𝗦𝗽𝗲𝗮𝗸𝗲𝗿(𝘀): Helen Umberger - /in/helenumberger/ Brook Schoenfield - /in/brookschoenfield/ 𝗧𝗵𝗲 𝗣𝘂𝗿𝗽𝗹𝗲 𝗕𝗼𝗼𝗸 𝗖𝗼𝗺𝗺𝘂𝗻𝗶𝘁𝘆 A purpose-driven and trusted network of security leaders and practitioners equipping people with the expertise to embrace secure development practices, solve ever-evolving security challenges, and ultimately democratize ...
The State of Application Security 2023 Report | AppSecCon 2023
Переглядів 69Рік тому
Day 2, Session 2 from the AppSecCon 2023 virtual conference. 𝗦𝗽𝗲𝗮𝗸𝗲𝗿(𝘀): LingRaj Patil - /in/lingarajspatil/ 𝗧𝗵𝗲 𝗣𝘂𝗿𝗽𝗹𝗲 𝗕𝗼𝗼𝗸 𝗖𝗼𝗺𝗺𝘂𝗻𝗶𝘁𝘆 A purpose-driven and trusted network of security leaders and practitioners equipping people with the expertise to embrace secure development practices, solve ever-evolving security challenges, and ultimately democratize software security. Looking to network with...
Opening Keynote: CISO Priorities in Software Security | AppSecCon 2023
Переглядів 55Рік тому
Day 2, Session 1 from the AppSecCon 2023 virtual conference. 𝗠𝗼𝗱𝗲𝗿𝗮𝘁𝗼𝗿: Sandeep Johri - /in/sandeepjohri/ 𝗣𝗮𝗻𝗲𝗹𝗶𝘀𝘁𝘀: Upendra Mardikar - /in/upendra-mardikar-11523a/ Ann Barron-DiCamillo - /in/ann-barron-dicamillo-46286b50/ 𝗧𝗵𝗲 𝗣𝘂𝗿𝗽𝗹𝗲 𝗕𝗼𝗼𝗸 𝗖𝗼𝗺𝗺𝘂𝗻𝗶𝘁𝘆 A purpose-driven and trusted network of security leaders and practitioners equipping people with the expertise to embrace secure development practic...
Closing Keynote: A Fireside Chat about DevSecOps | AppSecCon 2023
Переглядів 16Рік тому
Closing Keynote: A Fireside Chat about DevSecOps | AppSecCon 2023
Bridging the Talent Gap - How Automation Can Help | AppSecCon 2023
Переглядів 12Рік тому
Bridging the Talent Gap - How Automation Can Help | AppSecCon 2023
Making a Business Case for AppSec | AppSecCon 2023
Переглядів 25Рік тому
Making a Business Case for AppSec | AppSecCon 2023
Using OODA Framework for AppSec Governance | AppSecCon 2023
Переглядів 84Рік тому
Using OODA Framework for AppSec Governance | AppSecCon 2023
Building Blocks of a High Impact AppSec Program | AppSecCon 2023
Переглядів 52Рік тому
Building Blocks of a High Impact AppSec Program | AppSecCon 2023
Building a Future-ready AppSec Program | AppSecCon 2023
Переглядів 74Рік тому
Building a Future-ready AppSec Program | AppSecCon 2023
Best Practices in DevSecOps | AppSecCon 2023
Переглядів 65Рік тому
Best Practices in DevSecOps | AppSecCon 2023
SBOMs & Supply Chains - A Practitioner's Perspective | AppSecCon 2023
Переглядів 23Рік тому
SBOMs & Supply Chains - A Practitioner's Perspective | AppSecCon 2023
AI in AppSec | AppSecCon 2023
Переглядів 55Рік тому
AI in AppSec | AppSecCon 2023
Alphabet Soup: What do ASOC, ASPM, RBVM, UVM mean? | AppSecCon 2023
Переглядів 90Рік тому
Alphabet Soup: What do ASOC, ASPM, RBVM, UVM mean? | AppSecCon 2023
AppSec 101 | AppSecCon 2023
Переглядів 39Рік тому
AppSec 101 | AppSecCon 2023
Opening Keynote: Why Should Boards Care about Software Security? | AppSecCon 2023
Переглядів 70Рік тому
Opening Keynote: Why Should Boards Care about Software Security? | AppSecCon 2023
A New Software Security Maturity Model? What? Why? How? | The Purple Book Podcast Ep 16
Переглядів 131Рік тому
A New Software Security Maturity Model? What? Why? How? | The Purple Book Podcast Ep 16
Prabhath Karanth & Viraj Gandhi | Journey to AppSec Maturity: Dialogue at RSA
Переглядів 217Рік тому
Prabhath Karanth & Viraj Gandhi | Journey to AppSec Maturity: Dialogue at RSA
Chitra Dharmarajan & Valmiki Mukherjee | Journey to AppSec Maturity: Dialogue at RSA
Переглядів 45Рік тому
Chitra Dharmarajan & Valmiki Mukherjee | Journey to AppSec Maturity: Dialogue at RSA

КОМЕНТАРІ

  • @pwduce
    @pwduce 10 місяців тому

    Hi Varun, could you please share that list of top 10 open source risks please?

  • @louisadams4540
    @louisadams4540 Рік тому

    Promo'SM

  • @matildadrake3592
    @matildadrake3592 Рік тому

    ❗ "Promosm"

  • @Asalhotra
    @Asalhotra Рік тому

    This is an amazing chat. Covered so many fronts. So rich inputs from Chitra and Mohit, moderated by great Tanya

  • @cyrillekeith5721
    @cyrillekeith5721 Рік тому

    p̾r̾o̾m̾o̾s̾m̾ 🍀