Brook Schoenfield is an Elder AppSec Diplomat, the author of seven books about software security and AppSec, a researcher, the builder and leader of four AppSec programs at major tech companies, and a Master Security Architect for consultancies. Brook talks about his long career path, concerns and hopes for the industry, and the importance of threat modelling. There are 27-28 million programmers on Earth, but Brook fears that only a million work in security. 


 


The episode is brought to you by AppSec Phoenix Ltd with the Phoenix Security Cloud Platform, you can make vulnerability management for software and cloud SMART.  Follow the tag #appsecsmart


https://www.appsecphoenix.com Get access today: https://appsecphoenix.com/demo 


 


0:00 Introductions


4:00 27-28 mil programmers need for security


6:30 No silver bullet in software security


8:55 Brook’s career path into security


13:10 Bugs aren’t going anywhere


15:00 Next generation of InfoSec


21:06 Threat modelling, dynamic risk assessment


26:05 Story of threat modelling


28:06 Threat modelling tools


29:40 Beyond functionality, malicious attackers


32:30 Communicating with management


37:50 Tipping point, integrity


41:56 Final positive message


47:33 Outro 


 


Brook Schoenfield


Linkedin: https://linkedin.com/in/brookschoenfield 


https://brookschoenfield.com


Twitter @BrkSchoenfield


 


Mentioned


https://www.microsoft.com/en-us/securityengineering/sdl/threatmodeling 


 


Cyber Security and Cloud Podcast hosted by Francesco Cipollone


Linkedin: https://linkedin.com/in/fracipo 


Twitter @FrankSEC42


#CSCP #cybermentoringmonday cybercloudpodcast.com 


 


Social Media Links 
Follow us on social media to get the latest episodes:
Website: http://www.cybercloudpodcast.com/
You can listen to this podcast on your favourite player:
Itunes: https://podcasts.apple.com/gb/podcast/the-cyber-security-cloud-podcast-cscp/id1516316463  
Spotify: https://open.spotify.com/show/3fg8AqP4vEi5Im8YKxazUQ 
Linkedin: https://www.linkedin.com/company/35703565/admin/  



Twitter: https://twitter.com/podcast_cyber   



Youtube https://www.youtube.com/channel/UCVgsq-vMzq4sxObVonDsIAg/ 


 

Twitter Mentions