1,997 episodes

This feed includes all episodes of Paul's Security Weekly, Enterprise Security Weekly, Business Security Weekly, Application Security Weekly, and Security Weekly News! Your one-stop shop for all things Security Weekly!

Security Weekly Podcast Network (Audio‪)‬ Security Weekly

    • Technology
    • 4.4 • 202 Ratings

This feed includes all episodes of Paul's Security Weekly, Enterprise Security Weekly, Business Security Weekly, Application Security Weekly, and Security Weekly News! Your one-stop shop for all things Security Weekly!

    The Right Skills For The Job - Kayla Williams - PSW #800

    The Right Skills For The Job - Kayla Williams - PSW #800

    This week, First up its the Security News: libwebp or die: we unravel some of the details behind the webp vulnerability first fixed by Apple and Google, then, hopefully by everyone else, attackers can steal your pixels using your GPU, someone cough China cough has been hacking Cisco routers, Kia boys are still a problem, How the Cult of the Dead Cow plans to save the internet, how iOS updates could break glucose monitors, spamming the CVE database, and when a medium is really a high!
    Just what are the right skills to have or acquire to work in cybersecurity today? Kayla and the Security Weekly crew talk about it in this segment. We also touch on why we get burnt out and how to avoid it, all in anticipation for SOC Analyst Appreciation Day!
    This segment is sponsored by Devo . Visit https://securityweekly.com/devo to learn more about them!
    Visit https://www.securityweekly.com/psw for all the latest episodes!
    Follow us on Twitter: https://www.twitter.com/securityweekly
    Like us on Facebook: https://www.facebook.com/secweekly
    Show Notes: https://securityweekly.com/psw-800

    • 2 hr 50 min
    Supply Chain Security Security with Containers and CI/CD Systems - Kirsten Newcomer - #ASW 256

    Supply Chain Security Security with Containers and CI/CD Systems - Kirsten Newcomer - #ASW 256

    Supply chain has been a hot topic for a few years now, but so many things we need to do for a secure supply chain aren't new at all. We'll cover SBOMs, vuln management, and putting together a secure pipeline.
    Segment resources:
    https://www.solarwinds.com/assets/solarwinds/swresources/whitepaper/2111swiwhitepaper_nextgenbuild.pdf https://next.redhat.com/project/tekton-chains/ https://tekton.dev/ In the news, a stroll back through the Apache Struts breach of Equifax, CISA's list of Known Exploited Vulnerabilities, Rust's replacement for OpenSSL, Go no longer throws programmers for a loop, complexity vs. design (that leads to better security), and more!
    Visit https://securityweekly.com/asw for all the latest episodes!
    Follow us on Twitter: https://www.twitter.com/secweekly
    Like us on Facebook: https://www.facebook.com/secweekly
    Show Notes: https://securityweekly.com/asw-256

    • 1 hr 27 min
    Y3000, Sandman, ShadowSyndicate, MoveIt, Apple, Predator, More News, and Jason Wood - SWN #328

    Y3000, Sandman, ShadowSyndicate, MoveIt, Apple, Predator, More News, and Jason Wood - SWN #328

    This week Dr. Doug talks: The Year 3000, Sandman, ShadowSyndicate, National Student Clearing House, Apple, Predator, Xenomorph, Mixin, More News, and Jason Wood on the Security Weekly News.
    Visit https://www.securityweekly.com/swn for all the latest episodes!
    Follow us on Twitter: https://www.twitter.com/securityweekly Like us on Facebook: https://www.facebook.com/secweekly
    Show Notes: https://securityweekly.com/swn-328

    • 33 min
    Human Risk Management at Western Governors University - Jake Wilson - BSW #321

    Human Risk Management at Western Governors University - Jake Wilson - BSW #321

    In this episode, we interview Jake Wilson, Western Governor University's Security Awareness Evangelist. We'll learn about how he built up and matured WGU's security awareness program, eliminating blind spots, and improving efficacy through data analysis and better reporting.
    This segment is sponsored by Living Security. Visit https://securityweekly.com/livingsecurity to learn more about them!
    This week in the leadership and communications section: building a feedback-driven culture, letting go of the reins, 25 hard-hitting lessons from 17 years in cybersecurity, and more!
    Follow us on Twitter: https://www.twitter.com/securityweekly
    Like us on Facebook: https://www.facebook.com/secweekly
    Show Notes: https://securityweekly.com/bsw-321

    • 1 hr 9 min
    2024 Security Planning, Better Tabletop Exercises - Merritt Maxim, Ryan Fried - ESW #332

    2024 Security Planning, Better Tabletop Exercises - Merritt Maxim, Ryan Fried - ESW #332

    Forrester Research releases a few annual reoccurring cybersecurity reports, but one of the biggest that covers the most ground is the Security Risk Planning Guide, which was recently released for 2024. One of the report's 17 authors, and research director, Merritt Maxim, will walk us through the report's most interesting insights and highlights. This is going to be considerably interesting considering some of this year's trends impacting security teams:
    An economic downturn, resulting in layoffs and budget freezes The widespread proliferation of generative AI technology The relentless and resilient nature of cybercrime, despite some notable law enforcement wins Ongoing discussion about the role and relevance of SOCs, CISO's, as well as the security department place in today's enterprise Increased enterprise reliance on SaaS and Cloud, as vendors and service providers continue to struggle with securing their products and services If you've ever played Dungeons & Dragons, you probably know that the quality of the experience depends on how prepared, experienced, and talented the Dungeon Master is.
    Today, we'll talk to InfoSec DM and practitioner extraordinaire Ryan Fried about some of the key elements that separate a good cybersecurity tabletop exercise from a bad one! This is literally his day job at Mandiant, and it doesn't hurt to have one of the world's largest libraries of attacker TTPs and the collective lessons learned from thousands of actual incident response experiences.
    This week we talk about finding, acquisitions and the state of the market. If you're interested in cybersecurity market discussion, this is the episode for you.
    We also discuss what makes a cybersecurity influencer.
    Visit https://www.securityweekly.com/esw for all the latest episodes!
    Follow us on Twitter: https://www.twitter.com/securityweekly Like us on Facebook: https://www.facebook.com/secweekly
    Show Notes: https://securityweekly.com/esw-332

    • 2 hr 18 min
    Passkeys, bots, hotels, conning the con, TrendMicro, Pizza & Aaran Leyland - SWN #327

    Passkeys, bots, hotels, conning the con, TrendMicro, Pizza & Aaran Leyland - SWN #327

    This week on the Security Weekly News: Passkeys, bots, hotels, conning the con, TrendMicro, Pizza, Aaran Leyland, & more!
    Visit https://www.securityweekly.com/swn for all the latest episodes!
    Follow us on Twitter: https://www.twitter.com/securityweekly Like us on Facebook: https://www.facebook.com/secweekly
    Visit https://www.securityweekly.com/swn for all the latest episodes!
    Follow us on Twitter: https://www.twitter.com/securityweekly Like us on Facebook: https://www.facebook.com/secweekly
    Show Notes: https://securityweekly.com/swn-327

    • 31 min

Customer Reviews

4.4 out of 5
202 Ratings

202 Ratings

rsotojun ,

Much thanks to PSW and ASW

These shows are geared towards professionals with great points of view + nerd humor. application security weekly (ASW) and psw my favorites

Kgoode517 ,

The Best Cyber Security Podcast on the Planet

This is hands down my favorite cybersecurity podcast. The experienced, funny, kind, and knowledgeable men and women who make up this network of shows have taught me so much about security and technology in general. I have found many fun and interesting projects, such as Security Onion and Nzyme, through their teachings, and I love when they do webcasts. I rely on this show for my continuing education in the industry and for staying up-to-date on security news and professional commentary on trends and developments in cybersecurity.

Bevonomics ,

Great to immerse yourself in InfoSec

Been listening since I got into security 7 years ago, from 0 experience in tech to a six figure job. Listening to all these guys with 20 years of experience definitely contributed in lots of little ways to my breaking into tech. And they have a good time!

Top Podcasts In Technology

Trane Technologies
Lex Fridman
Jason Calacanis
The New York Times
NPR
Ben Gilbert and David Rosenthal

You Might Also Like

Johannes B. Ullrich
N2K Networks
Graham Cluley & Carole Theriault
CISO Series
N2K Networks
TWiT