Access Control artwork

Access Control

22 episodes - English - Latest episode: 4 months ago - ★★★★★ - 3 ratings

Access Control, a podcast providing practical security advice for startups.

Technology Business Entrepreneurship security ssh ops devops infrastructure cloud
Homepage Apple Podcasts Google Podcasts Overcast Castro Pocket Casts RSS feed

Episodes

Securing the Open-source Future

January 12, 2024 17:35 - 58 minutes - 47 MB

'Access Control,' where we explore the intricate landscape of cryptography and cybersecurity with our esteemed guest, Filippo Valsorda, a distinguished cryptography engineer and an influential open source maintainer. For this 21st episode of Access Control Podcast, a podcast providing practical security advice for startups, Director of Developer Relations at Teleport Ben Arent chats with Filippo Valsorda. Filippo is a cryptography engineer and open-source maintainer. From 2018 to 2022, he wo...

From Orange Book to Identity-Native

December 15, 2023 21:15 - 41 minutes - 33.8 MB

A live interview with Ev Kontsevoy about the history of access controls and the future of identity-native infrastructure access.

University Access Control

July 07, 2023 23:53 - 19 minutes - 15.8 MB

is an enlightening podcast that delves into the world of the Open Computing Facility (OCF) at UC Berkeley. In this episode, the General Manager of OCF provides a detailed overview of the organization and its various roles, including running several software mirrors in the Bay Area. The discussion touches upon the mechanism of how users are automatically opted into the nearest geographical mirror and elaborates on the myriad other services that the lab supports. A significant portion of the c...

Multi-Layered Security

March 23, 2023 20:30 - 32 minutes - 26.3 MB

For this 18th episode of Access Control Podcast, a podcast providing practical security advice for startups, Developer Relations Manager at Teleport Ben Arent chats with Yash Kosaraju. Yash is Chief Security Officer at SendBird. Sendbird's mission is to build connections in a digital world, providing APIs and services for chat products with API and tools to integrate into apps. This episode dives into how teams can build multi-layered security systems to go beyond zero-trust to let teams do ...

Access at Scale

December 21, 2022 21:00 - 35 minutes - 29.2 MB

This panel will discuss how teams have scaled Teleport to support thousands of users and hundreds of servers.

Platform for HyperGrowth

August 09, 2022 21:30 - 36 minutes - 29.9 MB

Today we’ll dive into how to plan, build and execute a platform team to help support a growing organization; while keeping systems as secure as possible.

How a BISO can help accelerate Fintech innovation

April 29, 2022 13:00 - 41 minutes - 33.2 MB

Ben Arent interviews Alyssa Miller, a seasoned hacker, highly experienced security executive, and BISO at S&P Global Ratings.

Securing CI/CD

April 18, 2022 15:05 - 49 minutes - 40.2 MB

Key topics on Access Control Podcast: Episode 14 - Securing CI/CD and Supply Chain - What is CI/CD? CI/CD stands for continuous integration, continuous deployment. - With regard to software supply chain problems, as with other similar problems, there's always the question of how long have we known about something versus how long has it been happening. - Continuous deployment is important for remediation because the length of time to push a deployment impacts the duration of exposure to ...

Security Compliance & FedRAMP

February 20, 2022 20:50 - 41 minutes - 33.4 MB

Interview with Hisham Alhakim about FedRAMP, FISMA, Nist, FIPS, SBOM, Zero Trust, collaboration with engineers.

Infosec for startups

October 21, 2021 22:55 - 1 hour - 57.6 MB

In this episode we go deep into SOC2, Cryptography and how to get started building a security practice.

When should a startup call the FBI

September 28, 2021 18:00 - 30 minutes - 24.5 MB

For this 11th episode of Access Control Podcast, a podcast providing practical security advice for startups, Developer Relations Engineer at Teleport Ben Arent chats with Elvis Chan. Elvis is Assistant Special Agent in charge assigned to the San Francisco FBI Field office. Chan manages a squad responsible for investigating national security cyber matters and has over 14 years of experience in the bureau.

Securing Internal Applications

September 20, 2021 18:00 - 48 minutes - 39.9 MB

How Figma protects internal tools using off the shelf AWS services with Max Burkhardt, a security engineer at Figma

SRE Powered Dev Productivity

September 07, 2021 21:30 - 55 minutes - 45.1 MB

In this ninth episode of Access Control, a podcast providing practical security advice for startups, Ben Arent chats with Mario Loria. Mario is a Senior SRE at Carta who has been leading their move to Kubernetes and other cloud native technologies. Carta helps companies and investors manage their cap tables, valuations, investments, and equity plans. As users of Carta, we hope their security is top notch. Today we’ll be chatting about orchestrating Kubernetes, training teams on cloud native, ...

Securing Kubernetes

August 26, 2021 16:00 - 57 minutes - 46.6 MB

In this eighth episode of Access Control, a podcast providing practical security advice for startups, Developer Relations Engineer at Teleport Ben Arent chats with Andrew Martin, CEO of Control Plane. Control Plane is a London-based Kubernetes consultancy. Helping architect, install, audit, and secure Kubernetes clusters using Cloud Native technologies. Andrew was previously a DevOps Lead at the UK Home office and has helped lead teams implementing high-volume critical national infrastructure...

Hacker-Powered Security

August 13, 2021 16:00 - 37 minutes - 30.5 MB

In this seventh episode of Access Control, a podcast providing practical security advice for startups, Ben Arent chats with Ben Sadeghipour ( AKA (https://twitter.com/NahamSec ), Head of Hacker Education at https://www.hackerone.com/ and Hacker by night. This episode is a deep dive into how startups can leverage the power of crowd sourced hackers to find bugs and security issues in your apps. Ben Sadeghipour has over 685 vulnerabilities found in major sites such as Snapchat, AirBnB and even ...

HIPAA Compliance for startups

July 06, 2021 21:50 - 24 minutes - 19.9 MB

Key Topics on Access Control Podcast: Episode 6 – HIPAA Compliance for Startups - VerticalChange was founded to create impact for the social sector and help its agencies digitize manual processes. - VerticalChange provides a solution that combines CRM, analytics, and dynamic form-building. - Regulations like HIPAA, HITRUST, and FERPA are very strict, and agencies have to put in place many controls in order to comply. - Startups in the healthcare space need to have someone who unde...

Securing DevOps

June 28, 2021 16:30 - 46 minutes - 37.5 MB

This episode is a deep dive with Julien Vehent about his book Securing DevOps: Security in the Cloud. We touch on security topics at Mozilla and Google GCP and provide updated advice on securing the cloud since its publication. In this fifth episode of Access Control, a podcast providing practical security advice for startups, Ben Arent chats with Julien Vehent, Author of Securing DevOps and a security engineer at Google Cloud. Julien was previously on the Firefox Operations Security team, w...

Offensive Security and the JavaScript Ecosystem

May 27, 2021 18:20 - 37 minutes - 30.8 MB

In this fourth episode of Access Control, a podcast providing practical security advice for startups, Developer Relations Engineer at Teleport Ben Arent chats with [Adam Baldwin](https://www.linkedin.com/in/evilpacket/), aka [evilpacket](https://twitter.com/adam_baldwin), Offensive Security at Auth0. Adam was previously the VP of security at npm and founder of ^Lift Security, an application and penetration testing company focused on the JavaScript Ecosystem. Adam is a two-time DEFCON Black Ba...

State of Startup Application Security with Luca Carettoni

May 11, 2021 19:05 - 35 minutes - 29.1 MB

In this third episode of Access Control, a podcast providing practical security advice for startups, Ben Arent chats with Luca Carettoni, co-founder of Doyensec. Doyensec is an independent security research and development company focused on vulnerability discovery and remediation. The Teleport team has been working with Doyensec for the last two years and have worked together on security assessment for Teleport. In this episode, we’ll get a pentester's view on the current state of startup se...

There is no such thing as DevSecOps

April 30, 2021 18:10 - 44 minutes - 35.9 MB

In this second episode of Access Control, a podcast providing practical security advice for startups, Ben Arent chats with Dave Mangot, Principal at Mangoteque, a consultancy focused on helping companies become better at delivering software. Dave is prolific in the DevOps space and has helped improve the lives of thousands of IT Professionals through his best-selling video course, Mastering DevOps. - Not just developers and operations, but the entire business, needs to deliver value to ...

Access Control: When should a startup hire a CSO?

April 16, 2021 18:30 - 43 minutes - 35.4 MB

In this first episode of Access Control, a podcast providing practical security advice for startups, Ben Arent chats with Donnie Hasseltine, CSO at Xenon Partner and CEO at TeamPassword & TeamsID. Donnie talks about his time working as a CSO at a boutique private equity firm, how they go about performing a security review before and during an acquisition. The chat deep-dives into how using a password manager can help secure your org to prevent phishing attempts and into Donnie’s transition fr...

When should a startup hire a CSO?

April 16, 2021 18:30 - 43 minutes - 35.4 MB

In this first episode of Access Control, a podcast providing practical security advice for startups, Ben Arent chats with Donnie Hasseltine, CSO at Xenon Partner and CEO at TeamPassword & TeamsID. Donnie talks about his time working as a CSO at a boutique private equity firm, how they go about performing a security review before and during an acquisition. The chat deep-dives into how using a password manager can help secure your org to prevent phishing attempts and into Donnie’s transition fr...

Twitter Mentions

@lucacarettoni 1 Episode
@adam_baldwin 1 Episode
@nahamsec 1 Episode