api connections

Jon Scheele

Join host Jon Scheele as he explores the world of APIs and digital technologies, bringing you insightful interviews with industry experts, live recordings from top tech conferences and meetups, and clear explanations of both business and technical concepts.

  1. 12 DE AGO.

    The hidden cybersecurity risks in our personal devices, with Joseph Yap

    In this episode, we dive into the world of home automation and the hidden security risks that come with it. Join us as Joseph Yap, a cybersecurity expert, shares his journey from a personal interest in smart homes to uncovering alarming vulnerabilities in everyday devices. Discover how convenience often comes at the cost of security, and learn practical steps to protect your home network from potential threats. Tune in to understand why your smart fridge might be more than just a kitchen appliance and how to safeguard your digital front door. The discussion covers various aspects of cybersecurity, including the threats posed by interconnected devices, the importance of maintaining good cyber hygiene, and the differences between corporate and personal cybersecurity practices. Joseph also highlights the need for a structured approach to cybersecurity, advocating for regular audits and updates to ensure the safety of home networks. Keywords cybersecurity, home network security, personal cybersecurity, corporate cybersecurity, cyber threats, vulnerabilities, cyber hygiene, smart home security, cybersecurity practices, technology in cybersecurity Takeaways Cybersecurity is integral to everything we do. Home automation can introduce significant vulnerabilities. Singapore is a major source of DDoS attacks due to compromised devices. Many households are unknowingly compromised. Establishing an asset register is crucial for security. Devices have a shelf life and can become insecure over time. Implementing multiple layers of security is essential. Regular maintenance of devices is necessary for security. Cybersecurity practices should be scalable for home users. Taking ownership of personal cybersecurity is vital. Sound bites "Someone's hiding in your house." "Things do expire." "Be the path of greater resistance." Chapters 01:30 The Ubiquity of Cybersecurity 04:37 Personal Journey into Cybersecurity 07:19 Understanding Cyber Threats and Vulnerabilities 10:33 The Importance of Home Network Security 13:26 Corporate vs. Personal Cybersecurity Practices 16:32 Establishing Good Cyber Hygiene 19:24 The Role of Technology in Cybersecurity 22:19 Creating a Cybersecurity Workflow 25:18 Scaling Cybersecurity Solutions for Homes 28:35 The Future of Cybersecurity

    34min
  2. 22 DE JUL.

    AI's Role in Business Strategy and Customer Experience, with Keith Carter

    In this conversation, Jon Scheele and Keith Carter explore the transformative impact of AI on business strategies, customer experiences, and career development. They discuss how organizations can leverage AI to enhance customer service, anticipate market moves, and foster creativity. Keith emphasizes the importance of actionable intelligence and the human element in AI-driven interactions, while also addressing the need for individuals to adapt and innovate in their careers amidst rapid technological changes. Key Points Keith Carter, a seasoned expert in AI and digital finance, emphasizes that AI is more than just digital transformation. It's about enhancing business outcomes by understanding workflows and leveraging technology to improve customer service and profitability. AI's ability to perform hyper-personalization and market basket analysis allows businesses to anticipate customer needs and outperform competitors. Breaking Barriers with AI: AI reduces traditional barriers, enabling businesses to enter new markets and serve diverse customer bases. By automating language translation and market analysis, companies can expand their reach and deliver more value to existing customers, making relationships more "sticky" and reducing churn. The Human Element: Despite AI's capabilities, the human touch remains crucial. AI enhances, rather than replaces, human creativity and decision-making. As Keith Carter notes, AI distributes creativity, allowing teams to deliver high-quality outputs from anywhere in the world. This synergy between AI and human intelligence is where true innovation lies. AI is not just a tool; it's a strategic partner in business. As we embrace this technology, we must also inspire the next generation to be creators, not just consumers. The future of business strategy is here, and it's powered by AI. Chapters 00:00 Navigating the AI Landscape 10:28 AI's Role in Business Strategy 19:52 Adapting Careers in the Age of AI Keywords AI, business strategy, customer experience, technology, digital transformation, actionable intelligence, creativity, career development, innovation, data analytics

    25min
  3. 23 DE JUN.

    Navigating the Future of API and AI Gateways, with Buu Lam

    In this conversation, Jon Scheele and Buu Lam discuss the evolving landscape of API and AI gateways, the importance of security in technology, and the need for human oversight in AI-driven processes. They explore the challenges posed by evolving security threats and the necessity for individuals to adapt and embrace change in their careers. This interview features Jon Scheele speaking with Buu Lam, who is the Director of Community Evangelism at F5, at F5's App World event in Singapore. Key Discussion Points: F5's AI Gateway Launch Buu explains that F5 has launched an AI gateway (now in general availability) alongside their traditional API gateway. Unlike their existing API gateway architecture, the AI gateway uses WebAssembly processors that can build applications to handle AI flows, rather than relying on traditional TCL scripting and event-based programming. Unique Security Challenges with AI The conversation highlights how AI gateways face different security challenges than traditional API gateways. While API gateways primarily manage internal traffic with signature-based rules, AI gateways must analyze both incoming requests and outgoing responses for sophisticated attacks. Bad actors can use subtle language and semantics to bypass security measures through prompt injections, making traditional rule-based security insufficient. Human-in-the-Loop Considerations They discuss the balance between automated security responses and human oversight, particularly when dealing with high-stakes transactions worth millions of dollars. The question of how much "agency" to give AI security systems versus requiring human intervention for critical decisions remains a key consideration. Career Advice for Tech Professionals Buu offers provocative advice for technology professionals: actively work to replace yourself with AI. He argues that by pushing yourself to automate your current functions, you'll discover new areas where you can add value and evolve professionally, rather than being replaced by others who are already building these automated solutions. The interview emphasizes the evolving landscape of AI security and the need for professionals to adapt proactively to technological change.

    9min
  4. 12/12/2024

    Unlocking Innovation through Standards and Platforms, with Erik Wilde

    In this conversation, Jon Scheele interviews Erik Wilde about the OpenAPI Initiative and its significance in the tech industry. They discuss the evolution of the OpenAPI Specification, the role of standards in fostering innovation, and the importance of building on standardized models. Erik emphasizes the concept of platform thinking and how it can drive market development, as well as the need for scaling API practices to enhance organizational capabilities. The discussion highlights the future of APIs and the ongoing trends in the industry. Takeaways The OpenAPI Initiative promotes the value of standards.Innovation is often built on established platforms.Standardized models can lead to consistent API development.APIs enable new services that were previously unimagined.Platform thinking is crucial for market development.Scaling API practices is essential for organizational growth.Effective API building requires a focus on security and efficiency.The evolution of OpenAPI reflects changing industry needs.Collaboration and sharing of APIs can drive innovation.Future trends in technology will heavily involve API scaling. Keywords OpenAPI, API standards, innovation, platform thinking, scaling APIs, apidays, Erik Wilde, API governance, API design, technology trends Chapters 00:00 Setting the Stage: Introduction and Context 00:08 Understanding OpenAPI: Standards and Their Importance 03:36 Innovation Through Standards: The Automotive Analogy 07:07 Building on Platforms: The Role of APIs in Innovation 08:49 Looking Ahead: Scaling API Practices for the Future

    11min
  5. 29/10/2024

    Putting GenAI to work in software development, with Uli Hitzel

    In this conversation, Jon Scheele and Uli Hitzel discuss the transformative impact of generative AI on the software development landscape. Uli shares his journey into AI, emphasizing the importance of understanding language and how to apply Generative AI tools in coding and productivity. They explore various tools available for software developers, the significance of team management in adopting these tools, and the role of AI throughout the system development life cycle, including testing and deployment. The discussion highlights the need for developers to adapt and learn how to effectively utilize AI tools while maintaining best practices in coding and documentation. Takeaways Generative AI is set to revolutionize various industries, especially software development.Understanding language is crucial for leveraging AI effectively.Productivity tools like GitHub Copilot can significantly enhance coding efficiency.It's important for developers to maintain a balance between using AI tools and understanding the underlying code.Team management and tool integration are key to successful AI adoption in enterprises.AI can assist in various stages of the software development life cycle, including ideation and testing.Documentation remains a critical aspect of software development, often overlooked by developers.Security and compliance are essential considerations when deploying AI tools in production.Developers should focus on continuous learning and adaptation to new tools and technologies.The journey of integrating AI into workflows is ongoing and requires a collaborative approach. Sound Bites "AI is going to change everything." "You don't have to be a technical person to get superpowers with AI." "It's almost like back in school where you're not supposed to use a calculator." Chapters 00:00 Introduction to Generative AI and Its Impact 03:12 Uli's Journey into AI and Its Applications 06:00 Understanding Language Models and Their Usefulness 09:13 Productivity Tools for Software Development 11:58 Managing Development Teams and Tool Integration 14:50 The Role of AI in Software Development Life Cycle 17:52 Testing and Quality Assurance with AI 21:01 Deployment and Security Considerations in AI 24:00 Conclusion and Future of AI in Development Keywords Generative AI, productivity, software development, language models, coding tools, team management, testing, deployment, security More at: https://www.apiconnections.io/podcast/putting-genai-to-work-in-software-development-with-uli-hitzel

    30min
  6. 23/10/2024

    DevOps Resilience and Observability, with Buu Lam

    In this conversation, Jon Scheele and F5's Community Evangelist, Buu Lam discuss key themes in DevOps resilience and observability. They explore the ongoing shift to multi-cloud strategies, the importance of ecosystem partnerships, and the challenges organizations face in integrating new technologies. The discussion also highlights the significance of resiliency and observability in cybersecurity, emphasizing the need for organizations to be aware of various signals and data points to make informed decisions. Takeaways The move to multi-cloud is essential for flexibility. Ecosystem partnerships are crucial for technology integration. Organizations must adapt their change management processes. Resiliency involves both machine and human elements. Observability is key to understanding system performance. Multiple data points are necessary for effective decision-making. The experience level of operators impacts incident response. Automation can enhance the ability to detect patterns. Compliance is critical for government and financial sectors. Understanding signals can prevent potential issues. Chapters 00:00 Introduction to Cybersecurity and Observability 02:33 Navigating Multi-Cloud Environments 05:30 The Importance of Ecosystem Collaboration 07:50 Resiliency and Observability in Operations Keywords cybersecurity, multi-cloud, ecosystem partnerships, observability, resiliency, DevOps, automation, F5, Govware, technology integration

    13min
  7. 15/10/2024

    API Security is critical for Cybersecurity with Chuck Herrin

    In this conversation, Jon Scheele and F5's Field CISO Chuck Herrin discuss the critical importance of API security in today's digital landscape, where API traffic constitutes a significant portion of overall internet traffic. They explore the unique vulnerabilities associated with APIs, the relevance of OWASP's Top 10 for API security, and the evolving threat landscape that organizations face. The discussion emphasizes the need for visibility and discovery of APIs, the risks posed by third-party APIs, and the emerging vulnerabilities related to AI. Herrin highlights the necessity of understanding the architecture and attack surfaces to effectively manage security risks. Takeaways API traffic constitutes over 70% of overall internet traffic. OWASP's Top 10 for API security is more granular than traditional web security. Defenders often overlook API vulnerabilities due to legacy focus. Visibility is crucial for understanding API exposure and risks. Third-party APIs pose significant risks if not properly managed. AI introduces new vulnerabilities that require updated security measures. Organizations must understand their API architecture to protect against attacks. Monitoring and governance are essential for API security. The cybercrime economy is larger than the global drug trade. Defense in depth remains a fundamental principle in cybersecurity. Keywords API security, OWASP, cybersecurity, vulnerabilities, third-party APIs, AI security, visibility, threat landscape, data protection, application security Sound Bites "APIs are just as much a cyber target." "API traffic is now the majority of web traffic." "You can't protect what you can't see." 00:00 The Importance of API Security 08:23 Understanding OWASP's Top 10 for API Security 16:27 The Evolving Threat Landscape of APIs 25:06 Visibility and Discovery of APIs 33:41 Third-Party API Risks and Management 42:00 AI and Emerging Vulnerabilities in API Security

    44min

Sobre

Join host Jon Scheele as he explores the world of APIs and digital technologies, bringing you insightful interviews with industry experts, live recordings from top tech conferences and meetups, and clear explanations of both business and technical concepts.