Podcasts about devsecops

  • 625PODCASTS
  • 4,157EPISODES
  • 47mAVG DURATION
  • 5WEEKLY NEW EPISODES
  • Dec 25, 2025LATEST

POPULARITY

20192020202120222023202420252026

Categories



Best podcasts about devsecops

Show all podcasts related to devsecops

Latest podcast episodes about devsecops

The Bid Picture - Cybersecurity & Intelligence Analysis

Send Bidemi a Text Message!In this episode, host Bidemi Ologunde spoke with Ivan Gekht, CEO of Gehtsoft, a family-run software company with over 20 years of Agile R&D experience. They explored Ivan's journey from Siberia to building a team that tackles “impossible” business challenges with science, adaptability, and integrity. How can Agile methods truly reduce project risk instead of becoming just another buzzword? What does it take to build healthier, more productive relationships with technology—both for teams and end users? And how can tech companies meaningfully support minority-, women-, and veteran-owned businesses while still innovating and scaling?Support for The Bid Picture Podcast comes from Skylight Calendar—the family-friendly digital calendar that helps everyone stay on the same page. With a quick setup and an easy-to-read display in a shared space, Skylight makes it simple to keep track of school events, practices, appointments, and family plans—so mornings run smoother and everyone knows what's next. Make your home the place where schedules finally make sense. Skylight Calendar—because family life works better when it's shared. Learn more at myskylight.com.Support for The Bid Picture Podcast comes from Black Rifle Coffee Company, a veteran-founded coffee brand roasting premium beans for people who love a strong start to the day. From bold blends to convenient ready-to-drink cans, Black Rifle Coffee keeps you fueled for whatever's ahead. Check them out at blackriflecoffee.com.Support the show

Cloud Realities
CR118: Christmas special! Return to the simulation with Anders Indset, Author & Philosopher

Cloud Realities

Play Episode Listen Later Dec 25, 2025 90:13


From all of us at Cloud Realities, MERRY CHRISTMAS!!!! Back in our December 2022 Christmas special, we explored the far reaches of reality, asking whether we live in a simulation and if that even matters. Now, we return to that question with fresh perspectives and new challenges…In this last Cloud Realities podcast of 2025, Dave, Esmee and Rob return to the simulation with Anders Indset, philosopher, author, and long-time friend of the show, revisiting a question that's been quietly running underneath everything we've discussed since 2022: If reality itself is information and what does that mean for being human? TLDR:00:58 – It's Christmas!08:32 – Major announcement and reflections on the Cloud Realities podcast journey15:32 – Celebrating three big wins: B2B Marketing Awards (Best Content, Best Customer Retention) and The Drum (Best Creative Audio)22:55 – Is there a next thing?23:30 – Welcoming Anders Indset, who shares his vision for practical philosophy and the future of human/AI co-evolution32:02 – Exploring the Quantum Economy and the Singularity Paradox58:10 – Deep dive into the Simulation Hypothesis, revisiting the 2022 discussion and Rob is again confused...01:27:45 – Anders enjoying Christmas in the Norwegian wilderness01:29:40 – Edit pointGuestAnders Indset: https://www.linkedin.com/in/andersindset/ or andersindset.comAdditional information: thequantumeconomy.com and tomorrowmensch.comHostsDave Chapmanger: https://www.linkedin.com/in/chapmandr/Esmee van de Gluhwein: https://www.linkedin.com/in/esmeevandegiessen/Rob Snowmananahan: https://www.linkedin.com/in/rob-kernahan/ProductionDr Mike van Der Buabbles: https://www.linkedin.com/in/marcel-vd-burg/Dave Chapmanger: https://www.linkedin.com/in/chapmandr/ SoundBen Jingle: https://www.linkedin.com/in/ben-corbett-3b6a11135/Louis Snow:  https://www.linkedin.com/in/louis-corbett-087250264/ 'Cloud Realities' is an original podcast from Capgemini

InfosecTrain
AI Agents vs. Bots The Future of Autonomous DevSecOps

InfosecTrain

Play Episode Listen Later Dec 24, 2025 3:32


The "scripted bot" era is over. As we head into 2026, the industry is moving toward Agentic AI autonomous systems that don't just alert you to problems, but reason through solutions. This episode breaks down why AI Agents are the new essential teammates in DevSecOps. We explore how these intelligent entities manage the "Shift Left" and "Shift Right" movements, making context-aware decisions that human developers and security analysts simply don't have the bandwidth for.

InfosecTrain
DevSecOps & Compliance 2026: Automating Your Security Guardrails

InfosecTrain

Play Episode Listen Later Dec 23, 2025 5:03


In 2026, security is no longer a final checkpoint; it is the very foundation of the code you write. With global cybercrime costs crossing the $10.5 trillion mark, the industry has moved toward a "Secure-by-Design" mandate. This episode dives into the DevSecOps revolution: the art of bridging the gap between rapid innovation and stringent regulatory compliance (GDPR, HIPAA, SOC-2). We explore the specialized tools that transform compliance from a manual bottleneck into an automated, self-running process within your CI/CD pipeline.

Cloud Realities
CRSP08: State of AI 2025 pt.3: AI Unplugged - from data to sovereign intelligence with Johanna Hutchinson, BAE Systems

Cloud Realities

Play Episode Listen Later Dec 18, 2025 42:58


In this last episode of the special AI mini-series, we now explore the human side of transformation, where technology meets purpose and people remain at the center. From future jobs and critical thinking to working with C-level leaders, how human intervention and high-quality data drive success in an AI-powered world.This week Dave, Esmee , Rob sit down with Johanna Hutchinson, CDO at BAE systems about why data matters, the rise of Sovereign AI, and the skills shaping the intelligence age. TLDR00:55 Introduction of Johanna Hutchinson02:09 Explaining the State of AI mini-series with Craig06:01 Conversation with Johanna34:20 Weaving today's data tapestries with AI40:20 Going to a rave GuestJohanna Hutchinson: https://www.linkedin.com/in/johanna-hutchinson-95b95568/ HostsDave Chapman: https://www.linkedin.com/in/chapmandr/Esmee van de Giessen: https://www.linkedin.com/in/esmeevandegiessen/Rob Kernahan: https://www.linkedin.com/in/rob-kernahan/with co-host Craig Suckling: https://www.linkedin.com/in/craigsuckling/ProductionMarcel van der Burg: https://www.linkedin.com/in/marcel-vd-burg/Dave Chapman: https://www.linkedin.com/in/chapmandr/ SoundBen Corbett: https://www.linkedin.com/in/ben-corbett-3b6a11135/Louis Corbett:  https://www.linkedin.com/in/louis-corbett-087250264/ 'Cloud Realities' is an original podcast from Capgemini

DevSecOps Podcast
#07 - 06 - AppSec Homem de Ferro - DevSecOps

DevSecOps Podcast

Play Episode Listen Later Dec 17, 2025 30:05


Neste episódio, vestimos a armadura do Homem de Ferro para falar de DevSecOps do jeito certo: sem buzzword, sem romantização e sem ferramenta milagrosa. DevSecOps aqui é engenharia, estratégia e responsabilidade compartilhada não um badge bonito no pipeline. Exploramos como AppSec se conecta ao DevSecOps quando o time para de “jogar segurança no final” e começa a projetar sistemas pensando em falha, ataque e resiliência desde o início. É o Jarvis rodando no CI/CD: dando contexto, alertando riscos e ajudando a tomar decisões melhores, não só gritando erro. Se você acha que DevSecOps é só SAST, DAST e um monte de check verde, esse episódio é um choque de realidade. Se você quer construir software como o Tony Stark constrói armaduras evoluindo a cada versão você está no lugar certo.Become a supporter of this podcast: https://www.spreaker.com/podcast/devsecops-podcast--4179006/support.Apoio: Nova8, Snyk, Conviso, Gold Security, Digitalwolk e PurpleBird Security.

Cloud Realities
CR117 Redesigning industries with AI with Scott Hanselman, Microsoft

Cloud Realities

Play Episode Listen Later Dec 11, 2025 48:57


AI is transforming software development—redefining roles, creativity, and community, while challenging developers to embrace ambiguity, orchestrate specialized agents, and stay human through empathy and curiosity. Will AI make developers more creative, or will we forget how the machine really works under the hood?This week Dave, Esmee , Rob sit down with Scott Hanselman, VP Developer Community at Microsoft for a wildly energetic, deeply human, and brilliantly practical conversation about how AI is reshaping software development and what that means for creativity, careers, and all industries. TLDR00:30 – Scott Hanselman introduced as a special guest from Microsoft Ignite 2025.02:16 – Scott discusses how AI is fundamentally redesigning all industries.09:50 – Don't anthropomorphize AI, I want the computer from Star Trek!15:30 – Delegation: contrasting the roles of humans and agents.18:30 – The importance of supporting early career growth and learning.26:30 – Why specificity matters in AI and coding.35:30 – Making AI delightful and fun.45:30 – Always put humans first in AI development.46:00 – Each morning I think about lunch. GuestScott Hanselman: https://www.hanselman.com/The Hanselminutes Podcast: https://www.hanselman.com/podcasts with over 1025 podcasts! HostsDave Chapman: https://www.linkedin.com/in/chapmandr/Esmee van de Giessen: https://www.linkedin.com/in/esmeevandegiessen/Rob Kernahan: https://www.linkedin.com/in/rob-kernahan/ ProductionMarcel van der Burg: https://www.linkedin.com/in/marcel-vd-burg/Dave Chapman: https://www.linkedin.com/in/chapmandr/ SoundBen Corbett: https://www.linkedin.com/in/ben-corbett-3b6a11135/Louis Corbett:  https://www.linkedin.com/in/louis-corbett-087250264/ 'Cloud Realities' is an original podcast from Capgemini

CISSP Cyber Training Podcast - CISSP Training Program
CCT 304: Software Development Security (CISSP Domain 8)

CISSP Cyber Training Podcast - CISSP Training Program

Play Episode Listen Later Dec 8, 2025 45:29 Transcription Available


Send us a textCheck us out at:  https://www.cisspcybertraining.com/Get access to 360 FREE CISSP Questions:  https://www.cisspcybertraining.com/offers/dzHKVcDB/checkoutGet access to my FREE CISSP Self-Study Essentials Videos:  https://www.cisspcybertraining.com/offers/KzBKKouvA single malicious insider flipped Disney menus to Wingdings and tampered with allergy labels—proof that weak offboarding and sloppy access can turn small privileges into big threats. We take that lesson and translate it into a practical roadmap for secure software: clear requirements, security controls in design, disciplined code reviews, honest UAT, and change management that prevents chaos and rollback roulette.From there, we compare the major development models through a security lens. Waterfall shines when predictability and compliance evidence are non‑negotiable, with strong documentation and defined testing phases. Spiral brings a risk-first mindset, iterating through planning, analysis, engineering, and evaluation so teams can learn early and pivot with purpose. Agile and DevSecOps embed security into user stories, definition of done, and sprint reviews, using short cycles, prioritized backlogs, and continuous testing to catch vulnerabilities before they calcify into technical debt.We also put structure around improvement. The Capability Maturity Model shows how to move from ad hoc heroics to standardized, measurable, and optimized practices that satisfy auditors and reduce incidents. The IDEAL model guides change itself—initiate with sponsorship, diagnose gaps, establish plans and metrics, act through implementation and training, and learn via feedback and retrospectives—so security improvements stick. Throughout, we share practical tips: how to weigh security controls against usability, why executive support unlocks real progress, and how to choose the right lifecycle for your risk, regulation, and release cadence.If you're preparing for the CISSP or leading teams that ship software, this is your playbook for building security into every step without slowing down what matters. Enjoyed the conversation? Subscribe, share with a teammate, and leave a review with your biggest SDLC win—or your most painful lesson.Gain exclusive access to 360 FREE CISSP Practice Questions at FreeCISSPQuestions.com and have them delivered directly to your inbox! Don't miss this valuable opportunity to strengthen your CISSP exam preparation and boost your chances of certification success. Join now and start your journey toward CISSP mastery today!

InfosecTrain
DevSecOps 2026: AI, Zero Trust, and Security Trends Explained

InfosecTrain

Play Episode Listen Later Dec 8, 2025 5:06


Cybercrime is predicted to cost the global economy over $10.5 trillion annually by 2025, making a Secure-by-Design approach non-negotiable. DevSecOps is no longer just a methodology—it's a critical cultural shift transforming developers into frontline defenders. In this episode, we dive into the 8 Emerging Trends of DevSecOps in 2025 that security and development professionals need to master to stay ahead. We discuss how to move beyond basic DevOps and embed proactive security into your software supply chain.

InfosecTrain
Amazon ECR Explained: Securing Your Container Supply Chain with AWS

InfosecTrain

Play Episode Listen Later Dec 7, 2025 3:42


Containers are the foundation of modern application development, with over half of organizations expected to deploy containerized apps by 2025. This makes the container registry a high-value target for attackers. In this episode, we break down Amazon Elastic Container Registry (ECR), AWS's fully managed, secure vault for Docker and OCI images. Learn how ECR defends your software supply chain using built-in vulnerability scanning, fine-grained IAM access control, and end-to-end encryption. We cover its role in a DevSecOps pipeline and why it's a critical security checkpoint for cloud-native development.

Cloud Realities
CRLIVE57 AWS re:Invent 2025: Financial Renovation with Scott Mullins, AWS

Cloud Realities

Play Episode Listen Later Dec 5, 2025 30:38


Live from the iconic Venetian in Las Vegas, we're rolling out an exclusive mini-series dedicated to AWS re:Invent 2025!Tune in as we sit down with AWS visionaries and take the pulse of the industry on everything shaping the future, Cloud innovation, GenAI, Agents, and the hottest trends making waves.And because what happens in Vegas doesn't always stay in Vegas, we'll spill the latest news, insider buzz, and a little Strip-side gossip to keep things spicy. Dave, Esmee, and Rob continue their discussion with Scott Mullins, MD Financial Services at AWS, on how the sector is rapidly embracing cloud, AI, automation, and real-time data to drive agility and stay compliant. TLDR00:30 – Meet Scott Mullins and hear about his re:Invent experience05:00 – Deep dive conversation with Scott25:56 – Fiiction with The Jetsons GuestScott Mullins: https://www.linkedin.com/in/escottmullins/ HostsDave Chapman:  https://www.linkedin.com/in/chapmandr/Esmee van de Giessen:  https://www.linkedin.com/in/esmeevandegiessen/Rob Kernahan:  https://www.linkedin.com/in/rob-kernahan/ ProductionMarcel van der Burg:  https://www.linkedin.com/in/marcel-vd-burg/Dave Chapman:  https://www.linkedin.com/in/chapmandr/ SoundBen Corbett:  https://www.linkedin.com/in/ben-corbett-3b6a11135/Louis Corbett:   https://www.linkedin.com/in/louis-corbett-087250264/ 'Cloud Realities' is an original podcast from Capgemini

Cloud Realities
CRLIVE58 AWS re:Invent 2025: European Digital Sovereign Futures with Mustafa Isik, AWS + Team reflections on re:Invent 2025

Cloud Realities

Play Episode Listen Later Dec 5, 2025 73:02


Live from the iconic Venetian in Las Vegas, we're rolling out an exclusive mini-series dedicated to AWS re:Invent 2025!Tune in as we sit down with AWS visionaries and take the pulse of the industry on everything shaping the future, Cloud innovation, GenAI, Agents, and the hottest trends making waves.And because what happens in Vegas doesn't always stay in Vegas, we'll spill the latest news, insider buzz, and a little Strip-side gossip to keep things spicy. Dave, Esmee, and Rob wrap up their final AWS re:Invent 2025 conversation with Mustafa Isik, Chief Technologist for Sovereignty at AWS, discussing digital sovereignty and its growing regional importance. They close the event with reflections from Matthew Gillard, co-founder of Cuidado Connect and co-host of Cloud Dialogues, along with insights from the team. TLDR01:29 – Meet Mustafa Isik and hear his keynote highlights04:05 – In-depth discussion with Mustafa31:35 – Exploring the line between science fiction and science fact36:26 – Introduction to Matthew Gillard38:55 – Matt shares his re:Invent reflections from a developer's perspective52:12 – The team looks back on re:Invent 20251:00:02 – The team's take on science fiction versus science fact GuestsMustafa Isik: https://www.linkedin.com/in/codesurgeon/Matt Gillard: https://www.linkedin.com/in/mattgillard/ https://cloud-dialogues.com/HostsDave Chapman:  https://www.linkedin.com/in/chapmandr/Esmee van de Giessen:  https://www.linkedin.com/in/esmeevandegiessen/Rob Kernahan:  https://www.linkedin.com/in/rob-kernahan/ ProductionMarcel van der Burg:  https://www.linkedin.com/in/marcel-vd-burg/Dave Chapman:  https://www.linkedin.com/in/chapmandr/ SoundBen Corbett:  https://www.linkedin.com/in/ben-corbett-3b6a11135/Louis Corbett:   https://www.linkedin.com/in/louis-corbett-087250264/ 'Cloud Realities' is an original podcast from Capgemini

Cloud Realities
CRLIVE55 AWS re:Invent 2025: re:Accelerating Europe with Tanuja Randery, AWS

Cloud Realities

Play Episode Listen Later Dec 4, 2025 34:31


Live from the iconic Venetian in Las Vegas, we're rolling out an exclusive mini-series dedicated to AWS re:Invent 2025!Tune in as we sit down with AWS visionaries and take the pulse of the industry on everything shaping the future, Cloud innovation, GenAI, Agents, and the hottest trends making waves.And because what happens in Vegas doesn't always stay in Vegas, we'll spill the latest news, insider buzz, and a little Strip-side gossip to keep things spicy. Dave, Esmee, and Rob kick off their conversation with Tanuja Randery, Managing Director for Europe, the Middle East & Africa (EMEA), diving into cloud innovation and the call to re:Accelerate Europe. TLDR00:49 – Introduction to Tanuja Randery03:29 – Keynote highlights with Tanuja and a deep-dive conversation31:00 – Imaginary tech and Star Trek GuestTanuja Randery: https://www.linkedin.com/in/tanuja-randery/ HostsDave Chapman:  https://www.linkedin.com/in/chapmandr/Esmee van de Giessen:  https://www.linkedin.com/in/esmeevandegiessen/Rob Kernahan:  https://www.linkedin.com/in/rob-kernahan/ ProductionMarcel van der Burg:  https://www.linkedin.com/in/marcel-vd-burg/Dave Chapman:  https://www.linkedin.com/in/chapmandr/ SoundBen Corbett:  https://www.linkedin.com/in/ben-corbett-3b6a11135/Louis Corbett:   https://www.linkedin.com/in/louis-corbett-087250264/ 'Cloud Realities' is an original podcast from Capgemini

Cloud Realities
CRLIVE56 AWS re:Invent 2025: Driving Innovation in Automotive and Energy & Utilities with Rob Boetticher and Howard Gefen, AWS

Cloud Realities

Play Episode Listen Later Dec 4, 2025 55:04


Live from the iconic Venetian in Las Vegas, we're rolling out an exclusive mini-series dedicated to AWS re:Invent 2025!Tune in as we sit down with AWS visionaries and take the pulse of the industry on everything shaping the future, Cloud innovation, GenAI, Agents, and the hottest trends making waves.And because what happens in Vegas doesn't always stay in Vegas, we'll spill the latest news, insider buzz, and a little Strip-side gossip to keep things spicy.Dave, Esmee, and Rob bring a double-feature conversation on industry innovation—first with Rob Boetticher, Global Technology Leader for Automotive and Manufacturing, followed by Howard Gefen, GM of the Energy and Utilities Industry Business Unit at AWS. TLDR00:42 – Rob Boetticher & Howard Gefen introduced02:00 – Rob's keynote highlights07:52 –  The future of automotive innovation with Rob23:32 – Tech fiction examples25:59 – Howard Gefen introduced28:00 – Howard's keynote highlights31:04 – Howard on the future of Energy and Utilities50:14 – Tech fiction examples GuestRob Boetticher: https://www.linkedin.com/in/robert-boetticher/Howard Gefen: https://www.linkedin.com/in/hgefen/ HostsDave Chapman:  https://www.linkedin.com/in/chapmandr/Esmee van de Giessen:  https://www.linkedin.com/in/esmeevandegiessen/Rob Kernahan:  https://www.linkedin.com/in/rob-kernahan/ ProductionMarcel van der Burg:  https://www.linkedin.com/in/marcel-vd-burg/Dave Chapman:  https://www.linkedin.com/in/chapmandr/ SoundBen Corbett:  https://www.linkedin.com/in/ben-corbett-3b6a11135/Louis Corbett:   https://www.linkedin.com/in/louis-corbett-087250264/ 'Cloud Realities' is an original podcast from Capgemini

Getup Kubicast
#193 - Gateway API com Kong na prática!

Getup Kubicast

Play Episode Listen Later Dec 4, 2025 62:23


Neste episódio, destrinchamos como o Kong conversa com a Gateway API no Kubernetes, passamos por GatewayClass, Gateway e HTTPRoute, e mostramos onde os plugins entram para dar aquele boost de segurança e observabilidade.A gente também faz o raio‑X dos componentes, comenta escolhas de arquitetura (do balanceamento de tráfego ao mTLS com cert‑manager) e debate os trade‑offs entre Ingress Controller tradicional e o ecossistema moderno da Gateway API. Sem prometer milagres, mas prometendo menos YAML sofrido.E claro: não faltam comparações sinceras entre OSS e Enterprise, além de dicas de onde cavar documentação que presta.Links Importantes: - Marco Ollivier - https://www.linkedin.com/in/marcopollivier/ - Slides DOD - https://docs.google.com/presentation/d/1GxcpOBaomthc4gDnmNSakEMfMZIkiseB16KMRVdnNkw/edit?usp=sharing - João Brito - https://www.linkedin.com/in/juniorjbn/ - Kong - https://github.com/Kong/kongO Kubicast é uma produção da Getup, empresa especialista em Kubernetes e projetos open source para Kubernetes. Os episódios do podcast estão nas principais plataformas de áudio digital e no YouTube.com/@getupcloud.

DevSecOps Podcast
#07 - 04 - Dev pode ser Sec?

DevSecOps Podcast

Play Episode Listen Later Dec 4, 2025 58:20


Neste episódio, recebemos um desenvolvedor. Sim, um dev de verdade, código na veia . Para encarar a conversa que muita empresa ignora e muita carreira demora para descobrir: dominar AppSec não é “um plus”, é o diferencial competitivo. Falamos sobre o impacto real de segurança no dia a dia do desenvolvimento, como pensar como atacante muda a forma de construir software, e por que devs que entendem AppSec aceleram times, evitam retrabalho e se tornam profissionais praticamente à prova de recessão. Uma conversa franca, prática e sem romantização: o futuro do desenvolvimento pertence a quem escreve código que não vira manchete. Comportamentos, mindset e skills que transformam um dev comum em um profissional completo. Ao final, fica claro: aprender AppSec não é sobre a empresa, é sobre você apostar na própria carreira.Become a supporter of this podcast: https://www.spreaker.com/podcast/devsecops-podcast--4179006/support.Apoio: Nova8, Snyk, Conviso, Gold Security, Digitalwolk e PurpleBird Security.

Of Je Stopt De Stekker Er In
#089 | Terugblik op de IBM TechXchange Orlando

Of Je Stopt De Stekker Er In

Play Episode Listen Later Dec 4, 2025 28:38


Begin oktober vond in Orlando het grootste technische event van IBM plaats: IBM TechXchange. Met meer dan 8.000 deelnemers, 1.500 sessies en een Expo vol innovaties was het dé plek voor techneuten, developers en IBM Champions om kennis te delen en nieuwe technologieën te ontdekken.In deze podcastaflevering nemen we je mee achter de schermen van dit event. We bespreken:- Project B.O.B. – IBM's nieuwe AI-gedreven DevSecOps-assistent, ontwikkeld in samenwerking met Anthropic (Claude).- Hoe IBM klantfeedback centraal stelt in productontwikkeling.- De rol van hands-on labs, certificeringen en interactieve demo's.- En natuurlijk: de sfeer, van racen met Ferrari tot retro gaming!Benieuwd naar de toekomst van AI, cloud en automation? Luister nu naar de podcast en ontdek waarom TechXchange hét event is voor iedereen die technologie ademt.Volgend jaar: Atlanta, 26–30 oktober. Mis het niet!

Cloud Realities
CRLIVE53 AWS re:Invent 2025: Driving Cloud and AI success through collaboration with Chandra Pinapala, AWS

Cloud Realities

Play Episode Listen Later Dec 3, 2025 39:28


Live from the iconic Venetian in Las Vegas, we're rolling out an exclusive mini-series dedicated to AWS re:Invent 2025!Tune in as we sit down with AWS visionaries and take the pulse of the industry on everything shaping the future, Cloud innovation, GenAI, Agents, and the hottest trends making waves. And because what happens in Vegas doesn't always stay in Vegas, we'll spill the latest news, insider buzz, and a little Strip-side gossip to keep things spicy. Dave, Esmee, and Rob start their conversation with Chandra Pinapala, Director Global Strategic Partners, to explore why strong partnerships are essential for success in Cloud and AI. TLDR00:40 – Back in Las Vegas with highlights from the AWS re:Invent 2025 keynote12:07 – Meet Chandra Pinapala and dive deep into the conversation35:10 – A playful leap into the world of fiction GuestChandra Pinapala: https://www.linkedin.com/in/chandrapinapala/ HostsDave Chapman:  https://www.linkedin.com/in/chapmandr/Esmee van de Giessen:  https://www.linkedin.com/in/esmeevandegiessen/Rob Kernahan:  https://www.linkedin.com/in/rob-kernahan/ ProductionMarcel van der Burg:  https://www.linkedin.com/in/marcel-vd-burg/Dave Chapman:  https://www.linkedin.com/in/chapmandr/ SoundBen Corbett:  https://www.linkedin.com/in/ben-corbett-3b6a11135/Louis Corbett:   https://www.linkedin.com/in/louis-corbett-087250264/ 'Cloud Realities' is an original podcast from Capgemini

Cloud Realities
CRLIVE54 AWS re:Invent 2025: Making it real in Industries with Tim Murnin, AWS

Cloud Realities

Play Episode Listen Later Dec 3, 2025 31:15


Live from the iconic Venetian in Las Vegas, we're rolling out an exclusive mini-series dedicated to AWS re:Invent 2025!Tune in as we sit down with AWS visionaries and take the pulse of the industry on everything shaping the future, Cloud innovation, GenAI, Agents, and the hottest trends making waves.And because what happens in Vegas doesn't always stay in Vegas, we'll spill the latest news, insider buzz, and a little Strip-side gossip to keep things spicy. Dave, Esmee, and Rob continue their conversation with Tim Murnin, Head of Industry & Partner Strategy at AWS, exploring the evolving role of the CIO, adoption delays, and how trends vary across different sectors. TLDR00:36 – Welcome back with Tim Murnin and the team's highlights from the AWS re:Invent 2025 keynote08:04 – In-depth conversation with Tim, exploring key insights32:05 – Where fact meets fiction, including a look at the flying carGuestTim Murnin: https://www.linkedin.com/in/timmurnin/ HostsDave Chapman:  https://www.linkedin.com/in/chapmandr/Esmee van de Giessen:  https://www.linkedin.com/in/esmeevandegiessen/Rob Kernahan:  https://www.linkedin.com/in/rob-kernahan/ ProductionMarcel van der Burg:  https://www.linkedin.com/in/marcel-vd-burg/Dave Chapman:  https://www.linkedin.com/in/chapmandr/ SoundBen Corbett:  https://www.linkedin.com/in/ben-corbett-3b6a11135/Louis Corbett:   https://www.linkedin.com/in/louis-corbett-087250264/ 'Cloud Realities' is an original podcast from Capgemini

Entre Chaves
#249 Tendências tecnológicas: maturidade digital como prioridade

Entre Chaves

Play Episode Listen Later Dec 2, 2025 47:31


Você está preparado para as novas responsabilidades que vão muito além do código? Neste episódio especial de tendências, Samuel Paiva, d'Os Agilistas, se junta aos nossos hosts para refletir sobre as transformações no papel dos desenvolvedores. Eles abordam desde a 'bolha da IA' até como os times de desenvolvimento estão sendo redefinidos, além de práticas de segurança que todo dev precisa dominar. Dê o play e ouça agora! Assuntos abordados: Bolha da IA e tendências Gartner; Alteração nos times de desenvolvimento; Novo papel dos desenvolvedores júnior; Modelos de linguagem e multiagentes; DevSecOps e segurança em software; Geopatriação de dados; Impacto geopolítico em hospedagem; Uso responsável da IA; Evolução dos agentes de software. Links importantes: Vagas disponíveis Newsletter Dúvidas? Nos mande pelo Linkedin Contato:  entrechaves@dtidigital.com.br O Entre Chaves é uma iniciativa da dti digital, uma empresa WPP

Cloud Realities
CR116: Unlocking Cloud for critical missions with Danny Polaine, Thales

Cloud Realities

Play Episode Listen Later Nov 27, 2025 47:45


Accelerating cloud adoption to drive innovation across domains like space, identity, and naval systems presents unique challenges. Success depends on aligning organizational culture, governance, financial models, and regulatory frameworks to enable collaboration, scalability, and software-defined capabilities.  This week, Dave, Esmee, and Rob speak with Danny Polaine, Chief Information Officer at Thales, about the strategic shift to cloud technologies in a high-security sector like defense and the unique challenges that come with it. TLDR:00:52 – Introduction to Danny Polaine03:35 – Rob is confused about the AI privacy dilemma07:40 – Exploring tech in high-security sectors with Danny35:34 – The biggest challenge isn't tech, it's people adapting to new ways of working44:55 – Reflections on the CIO role and a fun story about singing waiters at a wedding Guest Danny Polaine: https://www.linkedin.com/in/danny-polaine-5713454/?originalSubdomain=uk  HostsDave Chapman: https://www.linkedin.com/in/chapmandr/Rob Kernahan: https://www.linkedin.com/in/rob-kernahan/Esmee van de Giessen: https://www.linkedin.com/in/esmeevandegiessen/ ProductionMarcel van der Burg: https://www.linkedin.com/in/marcel-vd-burg/Dave Chapman: https://www.linkedin.com/in/chapmandr/ SoundBen Corbett: https://www.linkedin.com/in/ben-corbett-3b6a11135/Louis Corbett:  https://www.linkedin.com/in/louis-corbett-087250264/ 'Cloud Realities' is an original podcast from Capgemini

Getup Kubicast
#192 - IA te ajuda no dia-a-dia de verdade?

Getup Kubicast

Play Episode Listen Later Nov 25, 2025 52:41


Convidamos o Alestan Alves para um papo direto sobre como a IA realmente ajuda no nosso dia a dia, sem hype vazia. Ao longo do episódio, exploramos casos práticos (como resumir contratos e documentos), discutimos quando faz sentido usar modelos generalistas vs. especializados e onde agentes de IA começam a brilhar. Tudo com aquela pegada técnica e bem-humorada que vocês já conhecem, falando de fluxo de trabalho real.Entramos a fundo em segurança e governança: onde os riscos aparecem, quais limites colocar e que tipo de dado não deve ir para um modelo. Também passamos por produtividade, do rascunho ao código, e por que “automatizar por automatizar” pode virar dívida técnica (ou pior, vazamento). Falamos de prompts e contexto, de como reduzir atritos no dia-a-dia e de como transformar tarefas repetitivas em algo previsível.Por fim, tocamos em ferramentas do ecossistema (como Copilot) e até em ambientes onde Kubernetes e plataforma entram na conversa. Fechamos com um guia de “por onde começar” para quem quer montar seus primeiros experimentos com agentes e provar valor, sem comprometer privacidade ou compliance.Links Importantes: - Alestan Alves - https://www.linkedin.com/in/alestan-alves - João Brito - https://www.linkedin.com/in/juniorjbn - Acker Academy - https://www.ackerdemy.com/O Kubicast é uma produção da Getup, empresa especialista em Kubernetes e projetos open source para Kubernetes. Os episódios do podcast estão nas principais plataformas de áudio digital e no YouTube.com/@getupcloud.

DailyCyber The Truth About Cyber Security with Brandon Krieger
The Explosion of Security Data & Modern Detection with Joshua Scott | DailyCyber 280 ~ Watch Now ~

DailyCyber The Truth About Cyber Security with Brandon Krieger

Play Episode Listen Later Nov 22, 2025 61:10


The Explosion of Security Data & Modern Detection with Joshua Scott | DailyCyber 280 ~ Watch Now ~In this episode of DailyCyber, I sit down with Joshua Scott, VP of Security at Hydrolix, a leader with nearly 30 years of hands-on experience across enterprise security, cloud architecture, GRC, risk, IR, compliance, detection engineering, and product security.Joshua has built and led security programs in every major function — from enterprise GRC and security engineering to cloud security, DevSecOps, threat detection, incident response, IAM, and data governance. Today, he leads security for Hydrolix, a platform built to help organizations query terabytes to petabytes of security data at speed.This episode is for CISOs, vCISOs, architects, analysts, SOC leads, and anyone trying to navigate today's overwhelming security landscape. 

Cloud Realities
CRLIVE51 Microsoft Ignite 2025: Undercover Cloud with Alistair Speirs, Microsoft

Cloud Realities

Play Episode Listen Later Nov 21, 2025 40:50


Hello San Francisco - we're arrived for Microsoft Ignite 2025! The #CloudRealities podcast team has landed this week in San Francisco, we're bringing you the best updates right from the heart of the event. Join us to connect AI at scale, cloud modernization, and secure innovation—empowering organizations to become AI-first. Plus, we'll keep you updated on all the latest news and juicy gossip. Dave, Esmee, and Rob continue their conversation with Alistair Speirs, GM of Global Infrastructure for Microsoft's Azure Business Group, exploring how to build and scale the AI and Cloud datacenters of the future worldwide—while also addressing sovereignty requirements.  TLDR00:40 – Introduction to Alistair Speirs04:42 – Keynote highlights and Expo floor insights06:50 – Deep dive conversation with Alistair36:36 – Favorite IT-themed movie, using your brain as compute storage, and why people still matter GuestAlistair Speirs: https://www.linkedin.com/in/alistair/ HostsDave Chapman: https://www.linkedin.com/in/chapmandr/Esmee van de Giessen: https://www.linkedin.com/in/esmeevandegiessen/Rob Kernahan: https://www.linkedin.com/in/rob-kernahan/ ProductionMarcel van der Burg: https://www.linkedin.com/in/marcel-vd-burg/Dave Chapman: https://www.linkedin.com/in/chapmandr/ SoundBen Corbett: https://www.linkedin.com/in/ben-corbett-3b6a11135/Louis Corbett:  https://www.linkedin.com/in/louis-corbett-087250264/ 'Cloud Realities' is an original podcast from Capgemini

Cloud Realities
CRLIVE52 Microsoft Ignite 2025: Scaling responsible AI agents with Yina Arenas from Microsoft – Plus Team Ignite 2025 Reflections

Cloud Realities

Play Episode Listen Later Nov 21, 2025 63:57


Hello San Francisco - we're arrived for Microsoft Ignite 2025! The #CloudRealities podcast team has landed this week in San Francisco, we're bringing you the best updates right from the heart of the event. Join us to connect AI at scale, cloud modernization, and secure innovation—empowering organizations to become AI-first. Plus, we'll keep you updated on all the latest news and juicy gossip. Dave, Esmee, and Rob wrap up their Ignite 2025 series with Yina Arenas, CVP of Microsoft Foundry, to discuss why Foundry is the go-to choice for enterprises and how it champions responsible development and innovation.  TLDR00:40 – Introduction to Yina Arenas01:14 – How the team is doing, keynote highlights, and insights from the Expo floor02:50 – Deep dive with Yina on the evolution of Cloud Foundry29:24 – Favourite IT-themed movie, human interaction, and our society31:56 – Personal (and slightly juicy) reflections on the week37:30 – Team reflections on Ignite 2025, including an executive summary per guest and appreciation for Dennis Hansen50:54 – The team's favorite IT-themed movies59:30 – Personal favorite restaurantGuestYina Arenas: https://www.linkedin.com/in/yinaa/ HostsDave Chapman: https://www.linkedin.com/in/chapmandr/Esmee van de Giessen: https://www.linkedin.com/in/esmeevandegiessen/Rob Kernahan: https://www.linkedin.com/in/rob-kernahan/ ProductionMarcel van der Burg: https://www.linkedin.com/in/marcel-vd-burg/Dave Chapman: https://www.linkedin.com/in/chapmandr/ SoundBen Corbett: https://www.linkedin.com/in/ben-corbett-3b6a11135/Louis Corbett:  https://www.linkedin.com/in/louis-corbett-087250264/ 'Cloud Realities' is an original podc

Cloud Realities
CRLIVE50 Microsoft Ignite 2025: Safe and responsible agentic implementation with Rob Lefferts, Microsoft

Cloud Realities

Play Episode Listen Later Nov 20, 2025 27:18


Hello San Francisco - we're arrived for Microsoft Ignite 2025! The #CloudRealities podcast team has landed this week in San Francisco, we're bringing you the best updates right from the heart of the event. Join us to connect AI at scale, cloud modernization, and secure innovation—empowering organizations to become AI-first. Plus, we'll keep you updated on all the latest news and juicy gossip. Dave and Esmee continue their conversation with Rob Lefferts, CVP Threat Protection about the key security announcements and explore how we leverage agents to protect, defend, and respond at AI speed.  TLDR00:50 – Introduction to Rob Lefferts01:40 – Keynote highlights and insights from the Expo floor03:19 – In-depth conversation with Rob on why security is critical in the era of AI22:53 – Favorite IT-themed movie linked to the Asimov's principles and the Louvre password  GuestRob Lefferts: https://www.linkedin.com/in/rob-lefferts/ HostsDave Chapman: https://www.linkedin.com/in/chapmandr/Esmee van de Giessen: https://www.linkedin.com/in/esmeevandegiessen/Rob Kernahan: https://www.linkedin.com/in/rob-kernahan/ ProductionMarcel van der Burg: https://www.linkedin.com/in/marcel-vd-burg/Dave Chapman: https://www.linkedin.com/in/chapmandr/ SoundBen Corbett: https://www.linkedin.com/in/ben-corbett-3b6a11135/Louis Corbett:  https://www.linkedin.com/in/louis-corbett-087250264/ 'Cloud Realities' is an original podcast from Capgemini

Cloud Realities
CRLIVE49 Microsoft Ignite 2025: Innovating at the frontier with John Link, Microsoft

Cloud Realities

Play Episode Listen Later Nov 20, 2025 29:55


Hello San Francisco - we're arrived for Microsoft Ignite 2025! The #CloudRealities podcast team has landed this week in San Francisco, we're bringing you the best updates right from the heart of the event. Join us to connect AI at scale, cloud modernization, and secure innovation—empowering organizations to become AI-first. Plus, we'll keep you updated on all the latest news and juicy gossip.  Dave, Esmee and Rob, continue their discussion with John Link, Partner Product Manager at Microsoft, exploring Frontier organizations and how AI and quantum are reshaping R&D, all within the context of Microsoft Discovery. TLDR00:58 – Introduction to John Link (and some fun food spellings)03:55 – Keynote highlights and Expo floor insights06:42 – Deep dive conversation with John25:00 – Favorite IT-themed movie, thoughts on brain implants, and the simulation theory GuestJohn Link: https://www.linkedin.com/in/johnmlink/ HostsDave Chapman:  https://www.linkedin.com/in/chapmandr/Esmee van de Giessen:  https://www.linkedin.com/in/esmeevandegiessen/Rob Kernahan:  https://www.linkedin.com/in/rob-kernahan/ ProductionMarcel van der Burg:  https://www.linkedin.com/in/marcel-vd-burg/Dave Chapman:  https://www.linkedin.com/in/chapmandr/ SoundBen Corbett:  https://www.linkedin.com/in/ben-corbett-3b6a11135/Louis Corbett:   https://www.linkedin.com/in/louis-corbett-087250264/ 'Cloud Realities' is an original podcast from Capgemini

Cloud Realities
CRLIVE47 Microsoft Ignite 2025: The evolution and future of Co-pilot(s) with Rob Cromwell, Microsoft

Cloud Realities

Play Episode Listen Later Nov 19, 2025 37:37


Hello San Francisco - we're arrived for Microsoft Ignite 2025!The #CloudRealities podcast team has landed this week in San Francisco, we're bringing you the best updates right from the heart of the event. Join us to connect AI at scale, cloud modernization, and secure innovation—empowering organizations to become AI-first. Plus, we'll keep you updated on all the latest news and juicy gossip. Dave, Esmee and Rob kick off with Rob Cromwell, CVP of Engineering and explore the exciting evolution of Copilot and share insights on what's coming next. TLDR 00:50 – Back in San Francisco 02:45 – Highlights from the first keynote 11:08 – Intro and chat with Rob Cromwell 30:40 – Tackling tech and authentication challenges 32:28 – Favorite IT-related film and a glimpse into the near future GuestRob Cromwell: https://www.linkedin.com/in/robcromwell/HostsDave Chapman: https://www.linkedin.com/in/chapmandr/Esmee van de Giessen: https://www.linkedin.com/in/esmeevandegiessen/Rob Kernahan: https://www.linkedin.com/in/rob-kernahan/ProductionMarcel van der Burg: https://www.linkedin.com/in/marcel-vd-burg/Dave Chapman: https://www.linkedin.com/in/chapmandr/SoundBen Corbett: https://www.linkedin.com/in/ben-corbett-3b6a11135/Louis Corbett:  https://www.linkedin.com/in/louis-corbett-087250264/'Cloud Realities' is an original podcast from Capgemini

Cloud Realities
CRLIVE48 Microsoft Ignite 2025: From business applications to AI business solutions with Jonathan Hunt, Microsoft

Cloud Realities

Play Episode Listen Later Nov 19, 2025 24:23


Hello San Francisco - we're arrived for Microsoft Ignite 2025! The #CloudRealities podcast team has landed this week in San Francisco, we're bringing you the best updates right from the heart of the event. Join us to connect AI at scale, cloud modernization, and secure innovation—empowering organizations to become AI-first. Plus, we'll keep you updated on all the latest news and juicy gossip. Dave, Esmee, and Rob continue their conversation with Jonathan Hunt, CVP of Business Solutions at Microsoft, diving into the differences between AI-driven business solutions and traditional business applications, and exploring how customers can learn where—and how—to get started with AI.  TLDR00:35 – Introduction and conversation with Jonathan Hunt, plus updates from the event floor22:15 – Favorite IT-themed movie starring Arnold SchwarzeneggerGuestJonathan Hunt: https://www.linkedin.com/in/jonathan-hunt1/HostsDave Chapman: https://www.linkedin.com/in/chapmandr/Esmee van de Giessen: https://www.linkedin.com/in/esmeevandegiessen/Rob Kernahan: https://www.linkedin.com/in/rob-kernahan/ ProductionMarcel van der Burg: https://www.linkedin.com/in/marcel-vd-burg/Dave Chapman: https://www.linkedin.com/in/chapmandr/ SoundBen Corbett: https://www.linkedin.com/in/ben-corbett-3b6a11135/Louis Corbett:  https://www.linkedin.com/in/louis-corbett-087250264/ 'Cloud Realities' is an original podcast from Capgemini

Getup Kubicast
#191 - Opentelemetry no PHP com a Qive

Getup Kubicast

Play Episode Listen Later Nov 19, 2025 51:39


Neste Kubicast, recebemos o Chico (Francisco Rodrigues) e o França, da Qive, para um papo técnico e divertido sobre como instrumentamos uma aplicação legada em PHP com OpenTelemetry e destravamos visibilidade de ponta a ponta. Contamos como foi a descoberta, o desenho da arquitetura e as primeiras vitórias: da auto‑instrumentação às correções cirúrgicas que derrubaram a latência no p95 e eliminaram instabilidades intermitentes.Falamos de decisões práticas: por que escolher OpenTelemetry em um monólito Zend antigo, como alinhar a coleta com o ecossistema Grafana (Tempo, Loki, dashboards, alertas) e qual o impacto real em consumo de CPU/memória versus os ganhos na operação. Também abrimos o jogo sobre trade‑offs de transporte (gRPC/Protobuf), overhead na request e como padronizamos spans para tornar o tracing “quase APM”, mas com stack aberta.De quebra, exploramos experiência do time (SRE e Eng. de Software) para acelerar adoção, self‑service e developer experience. Se você quer entender auto‑instrumentação em PHP, custos/benefícios, stack de observabilidade com Grafana e boas práticas de tracing distribuído, este episódio é para você.Links Importantes: - Marcelo França - https://www.linkedin.com/in/marceloluizfranca - Francisco Rodrigues - https://www.linkedin.com/in/fcoedno - Artigo inspirador - https://medium.com/engenharia-arquivei/instrumente-sua-aplica%C3%A7%C3%A3o-php-com-opentelemetry-cb3460a64d04 - Conheça a Qive - https://qive.com.br/institucional/ - Opentelemetry PHP - https://opentelemetry.io/docs/languages/php/ - João Brito - https://www.linkedin.com/in/juniorjbn/O Kubicast é uma produção da Getup, empresa especialista em Kubernetes e projetos open source para Kubernetes. Os episódios do podcast estão nas principais plataformas de áudio digital e no YouTube.com/@getupcloud.

TestTalks | Automation Awesomeness | Helping YOU Succeed with Test Automation
Testing AI Vibe Coding: Stop Vulnerabilities Early with Sarit Tager

TestTalks | Automation Awesomeness | Helping YOU Succeed with Test Automation

Play Episode Listen Later Nov 16, 2025 32:23


AI is accelerating software delivery, but it's also introducing new security risks that most developers and automation engineers never see coming. In this episode, we explore how AI-generated code can embed vulnerabilities by default, how "vibe coding" is reshaping developer workflows, and what teams must do to secure their pipelines before bad code reaches production. You'll learn how to prompt more securely, how guardrails can stop vulnerabilities at generation time, how to prioritize real risks instead of false positives, and how AI can be used to protect your applications just as effectively as attackers use it to exploit them. Whether you're using Cursor, Copilot, Playwright MCP, or any AI tool in your automation workflow, this conversation gives you a clear roadmap for staying ahead of AI-driven vulnerabilities — without slowing down delivery. Featuring Sarit Tager, VP of Product for Application Security at Palo Alto Networks, who reveals real-world insights on securing AI-generated code, understanding modern attack surfaces, and creating a future-proof DevSecOps strategy.

Cloud Realities
CR115: Power of data in complex industries with Chris Carter, BAE Systems

Cloud Realities

Play Episode Listen Later Nov 13, 2025 44:49


Digital intelligence is reshaping how organizations work, and success depends on integrating multiple domains, using real-time analytics, and ensuring strong cyber protections as data grows and risks increase  This week, Dave, Esmee, and Rob talk with Chris Carter, Director - Key Accounts and Australia at BAE Systems Digital Intelligence, to explore the fast-moving world of digital intelligence, data, and analytics and dive into the complexities of the work, how rapidly the landscape is evolving, and the major challenges organizations face today.  TLDR:00:41 Introduction of Chris Carter03:00 Rob is confused by the idea of renting out brain capacity for compute power07:13 Chris discusses the fusion of data, AI, and human judgment in complex environments34:30 Are we giving enough attention to human cognitive capacity?42:34 Rugby tickets with the family  GuestChris Carter: https://www.linkedin.com/in/chriscarter3/ HostsDave Chapman: https://www.linkedin.com/in/chapmandr/Rob Kernahan: https://www.linkedin.com/in/rob-kernahan/Esmee van de Giessen: https://www.linkedin.com/in/esmeevandegiessen/ ProductionMarcel van der Burg: https://www.linkedin.com/in/marcel-vd-burg/Dave Chapman: https://www.linkedin.com/in/chapmandr/ SoundBen Corbett: https://www.linkedin.com/in/ben-corbett-3b6a11135/Louis Corbett:  https://www.linkedin.com/in/louis-corbett-087250264/ 'Cloud Realities' is an original podcast from Capgemini 

DevOps Diaries
066 — Ana Moreno: Lessons from a Salesforce Release Engineer in DevSecOps!

DevOps Diaries

Play Episode Listen Later Nov 13, 2025 51:53


Do you actually need a Release Engineer to manage Salesforce DevOps? Ana Moreno joins Jack to share her incredible (and truly accidental) journey from the world of art history to the heart of tech. Before they dive into release management, Jack derails the conversation to hear all about the fascinating world of art fraud, including tales of Man Ray's lost negatives and fake Victorian photographs.Once back on track, Ana pulls back the curtain on what it really takes to manage a complex, high-stakes Salesforce release process at a company that lives and breathes DevOps.Tune in to learn:- What the day-to-day life of a dedicated Release Engineer actually looks like.- How GitLab manages weekly Salesforce releases with a 30+ person team across five pods.- Strategies for handling merge conflicts as a "necessary evil."- Ana's top advice for teams looking to overhaul their process (Hint: It's not just about buying a tool).- The practical role AI is playing in their DevOps cycle today.About DevOps Diaries: Salesforce DevOps Advocate Jack McCurdy chats to members of the Salesforce community about their experience in the Salesforce ecosystem. Expect to hear and learn from inspirational stories of personal growth and business success, whilst discovering all the trials, tribulations, and joy that comes with delivering Salesforce for companies of all shapes and sizes. New episodes bi-weekly on YouTube as well as on your preferred podcast platform.Podcast produced and sponsored by Gearset. Learn more about Gearset: https://grst.co/4iCnas2Subscribe to Gearset's YouTube channel: https://grst.co/4cTAAxmLinkedIn: https://www.linkedin.com/company/gearsetX/Twitter: https://x.com/GearsetHQFacebook: https://www.facebook.com/gearsethqAbout Gearset: Gearset is the leading Salesforce DevOps platform, with powerful solutions for metadata and CPQ deployments, CI/CD, automated testing, sandbox seeding and backups. It helps Salesforce teams apply DevOps best practices to their development and release process, so they can rapidly and securely deliver higher-quality projects. Get full access to all of Gearset's features for free with a 30-day trial: https://grst.co/4iKysKWChapters:00:00 Welcome Ana Moreno, Salesforce Release Engineer at GitLab02:36 Ana's journey: The "Accidental Admin"03:30 From art history to tech09:33 Let's talk about art fraud!15:14 From Admin to Release Engineer22:35 What does a Release Engineer actually do all day?25:48 Inside GitLab's weekly Salesforce release cycle28:09 The challenge of managing 1,000+ Apex tests33:07 Taming the "necessary evil" of merge conflicts38:41 Key advice for teams overhauling their DevOps process46:12 The real-world future of AI in the DevOps pipeline50:57 Ana's Final Mantra

Getup Kubicast
KUBICAST #190 - Engenharia de plataforma com o Fury do MercadoLivre

Getup Kubicast

Play Episode Listen Later Nov 13, 2025 81:14


A gente sentou com um trio do Mercado Livre para abrir a caixa-preta do Fury, a plataforma que sustenta milhares de serviços e times. Falamos sobre como transformar Kubernetes em um produto de plataforma consumível, com autonomia para os times e guardrails que não viram algemas. Sim, é sobre Platform Engineering de verdade, com aprendizados que doem no bolso e no pager.Entramos em detalhes de experiência do desenvolvedor (DX), SDKs, templates e Golden Path no Backstage, além das escolhas que tornaram o Fury utilizável por centenas de times sem precisar “fazer kubectl em produção”. Também discutimos arquitetura multi-cloud, clusters por criticidade, autoscaling (Karpenter/KEDA) e como democratizar observabilidade sem expor todo mundo ao PromQL às 3 da manhã.Para fechar com chave de ouro, falamos de governança e segurança no dia a dia (DevSecOps na prática), SLIs/SLOs e o dilema entre padronização e liberdade. Tem história de guerra, roadmap, trade-offs e até as dicas de carreira dos convidados. Todos os links citados (Backstage, ArgoCD/GitOps, Karpenter, KEDA e materiais sobre Platform Engineering) estão na seção de DESTAQUES abaixo para você explorar.Links:Saiba mais sobre o Fury - https://medium.com/mercadolibre-tech/subpage/79a519305008Julia Pedroza - https://www.linkedin.com/in/julianunesp/Juliano Martins - https://www.linkedin.com/in/julianommartins/Marcelo Quadros - https://www.linkedin.com/in/quadros-marcelo/João Brito - https://www.linkedin.com/in/juniorjbn/O Kubicast é uma produção da Getup, empresa especialista em Kubernetes e projetos open source para Kubernetes. Os episódios do podcast estão nas principais plataformas de áudio digital e no YouTube.com/@getupcloud.

ITSPmagazine | Technology. Cybersecurity. Society
Building a Real Security Culture: Why Most AppSec Champion Programs Fall Short | AppSec Contradictions: 7 Truths We Keep Ignoring — Episode 5 | A Musing On the Future of Cybersecurity with Sean Martin and TAPE9 | Read by TAPE9

ITSPmagazine | Technology. Cybersecurity. Society

Play Episode Listen Later Nov 6, 2025 2:24


Most organizations have security champions. Few have a real security culture.In this episode of AppSec Contradictions, Sean Martin explores why AppSec awareness efforts stall, why champion programs struggle to gain traction, and what leaders can do to turn intent into impact.

Cloud Realities
CRSP07: State of AI 2025 pt.2 - For the love of data with Indhira Mani, Intact Insurance

Cloud Realities

Play Episode Listen Later Nov 6, 2025 47:33


 In this second episode of the special AI mini-series, we now explore the human side of transformation, where technology meets purpose and people remain at the center. From future jobs and critical thinking to working with C-level leaders, how human intervention and high-quality data drive success in an AI-powered world.This week, Dave, Esmee, and Rob talk to Indhira Mani, CDO at Intact Insurance UK, about the Love for data, insights on leadership, resilience, and preparing the next generation for what's next.    TLDR:01:30 Introduction of Indhira Mani and Scotch whisky05:45 Explaining the State of AI mini-series with Craig07:12 Conversation with Indi about her boyfriend called Data 38:33 Umbrella Sharing in Japan and the trust on AI45:15 The British Insurance Award and Women in Tech finalist GuestIndhira Mani: https://www.linkedin.com/in/indhira-mani-data/HostsDave Chapman: https://www.linkedin.com/in/chapmandr/Rob Kernahan: https://www.linkedin.com/in/rob-kernahan/Esmee van de Giessen: https://www.linkedin.com/in/esmeevandegiessen/with co-host Craig Suckling: https://www.linkedin.com/in/craigsuckling/ProductionMarcel van der Burg: https://www.linkedin.com/in/marcel-vd-burg/Dave Chapman: https://www.linkedin.com/in/chapmandr/ SoundBen Corbett: https://www.linkedin.com/in/ben-corbett-3b6a11135/Louis Corbett:  https://www.linkedin.com/in/louis-corbett-087250264/ 'Cloud Realities' is an original podcast from Capgemini

Redefining CyberSecurity
Building a Real Security Culture: Why Most AppSec Champion Programs Fall Short | AppSec Contradictions: 7 Truths We Keep Ignoring — Episode 5 | A Musing On the Future of Cybersecurity with Sean Martin and TAPE9 | Read by TAPE9

Redefining CyberSecurity

Play Episode Listen Later Nov 6, 2025 2:24


Most organizations have security champions. Few have a real security culture.In this episode of AppSec Contradictions, Sean Martin explores why AppSec awareness efforts stall, why champion programs struggle to gain traction, and what leaders can do to turn intent into impact.

linkmeup. Подкаст про IT и про людей
Шоты №43. Безопасность по умолчанию: эволюция DevOps в DevSecOps. Дмитрий Горохов, Антон Конопак

linkmeup. Подкаст про IT и про людей

Play Episode Listen Later Nov 5, 2025


Шоты №43. Безопасность по умолчанию: эволюция DevOps в DevSecOps. Дмитрий Горохов, Антон Конопак Оставайтесь на связи Пишите нам: info@linkmeup.ru Канал в телеграме: t.me/linkmeup_podcast Канал на youtube: youtube.com/c/linkmeup-podcast Подкаст доступен в iTunes, Google Подкастах, Яндекс Музыке, Castbox Сообщество в вк: vk.com/linkmeup Группа в фб: www.facebook.com/linkmeup.sdsm Добавить RSS в подкаст-плеер. Пообщаться в общем чате в тг: https://t.me/linkmeup_chat Поддержите проект:

Azure DevOps Podcast
Josh Arzt: 23 Years of .NET - Episode 374

Azure DevOps Podcast

Play Episode Listen Later Nov 3, 2025 43:33


Josh Arzt is a Senior Solutions Architect with 25+ years of experience modernizing systems, solving complex problems, and delivering scalable cloud solutions. He is an expert in software engineering, DevSecOps, serverless architectures, and cloud migrations. He is a certified professional with a strong publication record in IT and applied mathematics.   His professional career began in the early 2000s, when he discovered .NET and all it had to offer in its early days. Using that framework, paired with his maturation in software architecture, helped shape how he approaches challenges — with curiosity, precision, and a focus on making technology practical and reliable. Along the way, he's led teams, modernized systems, written his own software in performance metrics, and helped organizations adapt to change, but what he values most is working with people: mentoring engineers, collaborating across disciplines, and finding ways to connect technical work to real human impact. He brings both experience and perspective — the ability to see the big picture while never losing sight of the craft that drew him to this field in the first place.   Josh is also a 2025-2026 board election candidate for .NET Foundation.   Topics of Discussion: [2:40] Josh talks about the .NET Foundation and its importance. [7:08] A self-described dorky child, Josh recounts his early days in IT, starting with building computers as a child. [9:33] Josh describes his transition from IT support to software development, driven by his interest in problem-solving. [15:55] Josh discusses the evolution of .NET, from its early days to the current state. [30:40] The importance of choosing the right tool for the job, regardless of the programming language. [32:42] The challenges of managing tech debt and the importance of sustainability in software development. [37:28] Josh shares his positive experiences with the .NET community and the support they provide. [38:08] How thoughtful and consistent feedback shapes the evolution of the .NET ecosystem. [40:02] Continuous learning and adaptation in the field of software development.   Mentioned in this Episode: Clear Measure Way Architect Forum Software Engineer Forum Joshua Arzt LinkedIn Technical Babble — XCalibur Systems Xcalibur37 GitHub User Xcalibur Stack Overflow     Want to Learn More? Visit AzureDevOps.Show for show notes and additional episodes.

Cloud Realities
CR114: Why human experience matters more than ever with Kevin Magee, All human

Cloud Realities

Play Episode Listen Later Oct 30, 2025 52:39


Technology can scale almost everything—except human experience. In a world driven by efficiency, what does it mean to design for how people truly feel? It's about transforming user interactions into ongoing insight and innovation, rooted in empathy and understanding.  This week, Dave, Esmee and Rob talk to Kevin Magee, Chief Technology Officer at All human about helping organizations transform customer experiences with a focus on design, engineering, and what is called "digital performance."  TLDR:00:41 Introduction of Kevin Magee with Guinness or sparkling water?03:23 Rob wonders, is Apple really opening up its ecosystem?11:40 Deep dive with Kevin into design, engineering, and digital performance36:30 How tools built for one purpose can transform entire systems48:35 Weekend city breaks and pursuing a master's in psychology  GuestKevin Magee: https://www.linkedin.com/in/kevinmagee/ HostsDave Chapman: https://www.linkedin.com/in/chapmandr/Rob Kernahan: https://www.linkedin.com/in/rob-kernahan/Esmee van de Giessen: https://www.linkedin.com/in/esmeevandegiessen/ ProductionMarcel van der Burg: https://www.linkedin.com/in/marcel-vd-burg/Dave Chapman: https://www.linkedin.com/in/chapmandr/ SoundBen Corbett: https://www.linkedin.com/in/ben-corbett-3b6a11135/Louis Corbett:  https://www.linkedin.com/in/louis-corbett-087250264/ 'Cloud Realities' is an original podcast from Capgemini

ITSPmagazine | Technology. Cybersecurity. Society
CI/CD Pipeline Security: Why Attackers Breach Your Software Pipeline and Own Your Build Before Production | AppSec Contradictions: 7 Truths We Keep Ignoring — Episode 4 | A Musing On the Future of Cybersecurity with Sean Martin and TAPE9 | Read by TAPE

ITSPmagazine | Technology. Cybersecurity. Society

Play Episode Listen Later Oct 29, 2025 3:38


Organizations pour millions into protecting running applications—yet attackers are targeting the delivery path itself.This episode of AppSec Contradictions reveals why CI/CD and cloud pipelines are becoming the new frontline in cybersecurity.

Relating to DevSecOps
Episode #081: Burnout by Budget Season: Surviving Q4 in Security

Relating to DevSecOps

Play Episode Listen Later Oct 29, 2025 21:57


Send us a textIn this candid and cathartic episode, Ken and Mike unpack the chaos that is Q4 for security professionals. From budget burnouts to end-of-year pentesting sprints, they explore why the final months of the year feel like a perfect storm for stress. Tune in as they share hard-earned lessons, practical advice for maintaining your sanity, and some gentle reminders that not everything needs to ship before Christmas. Whether you're a tired vendor, an overwhelmed engineer, or just trying to make it to PTO, this episode is for you.

Cloud Realities
CR113: Bridging the digital skills gap in a complex world with Mike Nayler, AWS

Cloud Realities

Play Episode Listen Later Oct 23, 2025 36:14


The skills we teach today will decide the world we live in tomorrow but the digital skills gap is something we've been dealing with for decades, but it's growing faster than ever, it starts with kids and stretches all the way into late IT careers, and now we're finally taking a more connected, lifelong approach to closing it. This week, Dave, Esmee, and Rob speak with Mike Nayler, Director, National Security, Defense & Public Safety at AWS about the digital skills gap and explore how tech companies can help close it. TLDR:00:45 Introduction of Mike Nayler and the pros and cons of enterprise architects, based on a survey03:30 Rob is confused about AI replacing prompt engineers07:55 Conversation with Mike on the digital skills gap25:15 The real gap is between institutions and the people they aim to serve33:24 Mike heading back to school and writing essays againGuest Mike Nayler: https://www.linkedin.com/in/nayler/ HostsDave Chapman: https://www.linkedin.com/in/chapmandr/Rob Kernahan: https://www.linkedin.com/in/rob-kernahan/Esmee van de Giessen: https://www.linkedin.com/in/esmeevandegiessen/ ProductionMarcel van der Burg: https://www.linkedin.com/in/marcel-vd-burg/Dave Chapman: https://www.linkedin.com/in/chapmandr/ SoundBen Corbett: https://www.linkedin.com/in/ben-corbett-3b6a11135/Louis Corbett:  https://www.linkedin.com/in/louis-corbett-087250264/ 'Cloud Realities' is an original podcast from Capgemini

Federal Drive with Tom Temin
Using SecDevOps to produce secure software

Federal Drive with Tom Temin

Play Episode Listen Later Oct 20, 2025 7:07


The concept of DevSecOps has been around long enough that it's now firmly established in most federal agencies, but using it to produce secure software on a regular basis takes careful planning. Darren Death is the Chief Information Security Officer at the Export Import Bank, and Madhuri Sammid is the Deputy Associate Chief Information Officer at the Bureau of Safety and Environmental Enforcement. They talked with Federal News Network's Jared serbu As part of our 2025 Cyber Leaders Exchange.See Privacy Policy at https://art19.com/privacy and California Privacy Notice at https://art19.com/privacy#do-not-sell-my-info.

Cloud Realities
CRSP06: State of AI 2025 pt.1 - Evolving role of AI across industries with Craig Suckling [AAA]

Cloud Realities

Play Episode Listen Later Oct 16, 2025 53:26


In 'Access All Areas' shows we go behind the scenes with the crew and their friends as they dive into complex challenges that organisations face—sometimes getting a little messy along the way. We're launching a special AI mini-series exploring how artificial intelligence is reshaping industries. Each episode dives into key themes like scaling AI, societal impact, leadership, sustainability, and the challenges ahead. Join us for fresh insights and bold conversations on the future of intelligent systems.  This week, Dave, Esmee, and Rob kick off the AI mini-series with Craig Suckling, CAIO at Capgemini and co-host of this special edition. The episode is inspired by “Riding the AI Whirlwind,” Gartner's 2025 strategic predictions report, which urges organizations to act boldly on AI's potential while managing risks like rising costs and privacy concerns  TLDR:00:40 – Introduction of Craig Suckling and launch of the AI mini-series02:38 – Summary of three key insights and strategic recommendations from Gartner's “Riding the AI Whirlwind” report23:03 – Strategic planning assumptions: what they mean for business and tech leaders41:40 – Sam Altman's top three concerns about the future of AI49:35 – What key topics remain unaddressed?51:00 – What to expect from the AI mini-series featuring industry leadersHostsDave Chapman: https://www.linkedin.com/in/chapmandr/Rob Kernahan: https://www.linkedin.com/in/rob-kernahan/Esmee van de Giessen: https://www.linkedin.com/in/esmeevandegiessen/with co-host Craig Suckling: https://www.linkedin.com/in/craigsuckling/ProductionMarcel van der Burg: https://www.linkedin.com/in/marcel-vd-burg/Dave Chapman: https://www.linkedin.com/in/chapmandr/ SoundBen Corbett: https://www.linkedin.com/in/ben-corbett-3b6a11135/Louis Corbett:  https://www.linkedin.com/in/louis-corbett-087250264/ 'Cloud Realities' is an original podcast from Capgemini

Cloud Security Podcast
Incident Response of Kubernetes and how to Automate Containment

Cloud Security Podcast

Play Episode Listen Later Oct 10, 2025 52:22


How do you perform incident response on a Kubernetes cluster when you're not even on the same network? In this episode, Damien Burks, Senior Security engineer breaks down the immense challenges of container security and why most commercial tools are failing at automated response.While many CNAPPs provide runtime detection, they lack a "sophisticated approach to automating incident response or containment" in complex environments like private EKS . He shares his hands-on experience building a platform that uses a dynamically deployed Lambda function to achieve containment of a compromised EKS node in just 10 minutes, a process that would otherwise take hours of manual work and approvals .This is a guide for any DevSecOps or cloud security professional tasked with securing containerized workloads. The conversation also covers a layered prevention strategy, the evolving role of the cloud security engineer, and career advice for those looking to enter the field.Guest Socials -⁠ ⁠⁠⁠⁠Damien's LinkedinPodcast Twitter - ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠@CloudSecPod⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠ ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠If you want to watch videos of this LIVE STREAMED episode and past episodes - Check out our other Cloud Security Social Channels:-⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Cloud Security Podcast- Youtube⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠- ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Cloud Security Newsletter ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠- ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Cloud Security BootCamp⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠If you are interested in AI Cybersecurity, you can check out our sister podcast -⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠ AI Security PodcastQuestions asked:(00:00) Introduction(02:15) Who is Damien Burks?(03:20) The State of Cloud Incident Response in 2025(05:15) Why There is No Sophisticated, Automated IR for Kubernetes(06:20) A Deep Dive into Kubernetes Incident Response(07:30) The Unique Challenge of a Private EKS Cluster(12:15) A Layered Approach to Prevention in a DevSecOps Culture(17:00) How to Automate Containment in a Private EKS Cluster(17:40) From Hours to 10 Minutes: The Impact of Automation(22:00) The Evolving & Complex Role of the Cloud Security Engineer(25:40) Do We Have Too Much Visibility or Not Enough?(29:00) Career Path: The Value of Learning to Code for DevSecOps(35:00) Damien's Hot Take: "Multi-Cloud Just Means Chaos"(44:20) Career Advice for Traditional IR Professionals Moving to Cloud(47:50) Final Questions: Video Games, Life's Journey, and GumboResources spoke about during the interviewDamien's Website

ITSPmagazine | Technology. Cybersecurity. Society
When the Coders Don't Code: What Happens When AI Coding Tools Go Dark? | A Musing On the Future of Cybersecurity with Sean Martin and TAPE9 | Read by TAPE9

ITSPmagazine | Technology. Cybersecurity. Society

Play Episode Listen Later Oct 8, 2025 9:35


In this issue of the Future of Cyber newsletter, Sean Martin digs into a topic that's quietly reshaping how software gets built—and how it breaks: the rise of AI-powered coding tools like ChatGPT, Claude, and GitHub Copilot.These tools promise speed, efficiency, and reduced boilerplate—but what are the hidden trade-offs? What happens when the tools go offline, or when the systems built through them are so abstracted that even the engineers maintaining them don't fully understand what they're working with?Drawing from conversations across the cybersecurity, legal, and developer communities—including a recent legal tech conference where law firms are empowering attorneys to “vibe code” internal tools—this article doesn't take a hard stance. Instead, it raises urgent questions:Are we creating shadow logic no one can trace?Do developers still understand the systems they're shipping?What happens when incident response teams face AI-generated code with no documentation?Are AI-generated systems introducing silent fragility into critical infrastructure?The piece also highlights insights from a recent podcast conversation with security architect Izar Tarandach, who compares AI coding to junior development: fast and functional, but in need of serious oversight. He warns that organizations rushing to automate development may be building brittle systems on shaky foundations, especially when security practices are assumed rather than applied.This is not a fear-driven screed or a rejection of AI. Rather, it's a call to assess new dependencies, rethink development accountability, and start building contingency plans before outages, hallucinations, or misconfigurations force the issue.If you're a CISO, developer, architect, risk manager—or anyone involved in software delivery or security—this article is designed to make you pause, think, and ideally, respond.

ITSPmagazine | Technology. Cybersecurity. Society
SBOMs in Application Security: From Compliance Trophy to Real Risk Reduction | AppSec Contradictions: 7 Truths We Keep Ignoring — Episode 3 | A Musing On the Future of Cybersecurity with Sean Martin and TAPE9 | Read by TAPE9

ITSPmagazine | Technology. Cybersecurity. Society

Play Episode Listen Later Oct 1, 2025 2:33


SBOMs were supposed to be the ingredient label for software—bringing transparency, faster response, and stronger trust. But reality shows otherwise. Fewer than 1% of GitHub projects have policy-driven SBOMs. Only 15% of developer SBOM questions get answered. And while 86% of EU firms claim supply chain policies, just 47% actually fund them.So why do SBOMs stall as compliance artifacts instead of risk-reduction tools? And what happens when they do work?In this episode of AppSec Contradictions, Sean Martin examines:Why SBOM adoption is laggingThe cost of static SBOMs for developers, AppSec teams, and business leadersReal-world examples where SBOMs deliver measurable valueHow AISBOMs are extending transparency into AI models and dataCatch the full companion article in the Future of Cybersecurity newsletter for deeper analysis and more research.