Rephonic
Artwork for Application Security Weekly

Application Security Weekly (Video)

Mike Shema
Application Security
Cybersecurity
Generative AI
Artificial Intelligence
Devops
Threat Modeling
OWASP
Large Language Models
Fuzzing
SQL Injection
OWASP Top 10
Ransomware
Appsec
Supply Chain Security
Open Source Software
CISA
Devsecops
Vulnerability Management
Software Supply Chain Security
Apis

About all things AppSec, DevOps, and DevSecOps. Hosted by Mike Shema and John Kinsella, the podcast focuses on helping its audience find and fix software flaws effectively.

PublishesWeeklyEpisodes706Founded8 years ago
Number of ListenersCategories
Tech NewsNewsTechnology

Listen to this Podcast

Artwork for Application Security Weekly

Latest Episodes

Red team exercises set goals to see if a particular outcome can be accomplished through a simulated attack, but the ultimate outcome should be educating the org about how to improve tools and processes that make attacks more difficult to succeed. Gwy... more

YouTube

It's one thing to write secure code, it's another to release it into the wild. That code needs to be designed, built, tested, released, and maintained. Farshad Abasi and Cameron Walters explain how the OWASP Secure Pipeline Verification Standard pick... more

Security problems aren't changing very much even though security teams are. We catch up on the implications of the Claude Code source leak, the very human lessons from the axios NPM compromise, and what secure design looks like when it involves agent... more

YouTube

The future of secure software is going through a mix of skills expected of humans and skills files created for LLMs. We might even posit that appsec as a discipline will fade (and that might not even be a bad thing!). Keith Hoodlet describes the skil... more

YouTube

Key Facts

Accepts Guests
Accepts Sponsors
Contact Information
Podcast Host
Number of Listeners
Find out how many people listen to this podcast per episode and each month.

Similar Podcasts

People also subscribe to these shows.

Recent Guests

Gwyddon Data Owen
Retired Air Force Cyber Warfare Officer; Director of Cybersecurity and Technology for Universal Strategy Group
Universal Strategy Group
Episode: The Human Aspect of Red Teams - Brian Fox, Tom Tovar, T. Gwyddon 'Data' Owen - ASW #379
Tom Tovar
CEO at Appdome
Appdome
Episode: The Human Aspect of Red Teams - Brian Fox, Tom Tovar, T. Gwyddon 'Data' Owen - ASW #379
Cameron Walters
Director of Application Security and Security Engineering
Unknown (OWASP SPVS project co-lead)
Episode: Securing Software's Journey with the OWASP SPVS - Cameron W., Farshad Abasi, Rohan Ravindranath, Ido Geffen - ASW #378
Rohan Ravindranath
Founder/CEO at Zappsec
Zappsec
Episode: Securing Software's Journey with the OWASP SPVS - Cameron W., Farshad Abasi, Rohan Ravindranath, Ido Geffen - ASW #378
Ido Geffen
CEO and co-founder at Novee Security
Novee Security
Episode: Securing Software's Journey with the OWASP SPVS - Cameron W., Farshad Abasi, Rohan Ravindranath, Ido Geffen - ASW #378
Raj Mallempati
CEO and Co-founder at BlueFlag Security
BlueFlag Security
Episode: AppSec News Roundup on Claude Code Leak, Axios NPM Compromise, Secure Design - Idan Plotnik, Raj Mallempati - ASW #377
Keith Hoodlet
Director of Security Research at One Password
One Password
Episode: Developing the Skills Needed for Modern Software Development - Keith Hoodlet, Ron Rasin, Shashwat Sehgal - ASW #376
Ron Rasin
Chief Strategy Officer at Silverfort
Silverfort
Episode: Developing the Skills Needed for Modern Software Development - Keith Hoodlet, Ron Rasin, Shashwat Sehgal - ASW #376
Shashwat Sehgal
CEO and co-founder at P0 Security
P0 Security
Episode: Developing the Skills Needed for Modern Software Development - Keith Hoodlet, Ron Rasin, Shashwat Sehgal - ASW #376

Hosts

Mike Shema
Host of Application Security Weekly
John Kinsella
Co-host of Application Security Weekly

Reviews

4.9 out of 5 stars from 8 ratings
  • Occasional good content

    Keith occasionally has something worth saying, but he lacks solid experience with hardcore software development, and knows almost nothing about lean/agile. He approaches software like an operations problem.

    Paul is unpleasant to listen to and seldom adds anything of value. I wouild not listent to this podcast at all if Paul was the only contributor.

    This week's episode is particularlt vexing, as the bros bray on about American Football. Please find another forum for that. Your listeners are he... more

    Apple Podcasts
    2
    jdtangney
    United States7 years ago

Listeners Say

Key themes from listener reviews, highlighting what works and what could be improved about the show.

There are concerns that the podcast sometimes lacks depth due to the hosts' varying levels of experience in software development.
Some appreciate the practical insights provided, especially for professionals looking to improve their AppSec knowledge.

Chart Rankings

How this podcast ranks in the Apple Podcasts, Spotify and YouTube charts.

Apple Podcasts
#115
Australia/News/Tech News
Apple Podcasts
#32
Philippines/News/Tech News
Apple Podcasts
#49
Saudi Arabia/News/Tech News
Apple Podcasts
#50
New Zealand/News/Tech News
Apple Podcasts
#59
South Africa/News/Tech News
Apple Podcasts
#122
India/News/Tech News

Talking Points

Recent interactions between the hosts and their guests.

Securing Software's Journey with the OWASP SPVS - Cameron W., Farshad Abasi, Rohan Ravindranath, Ido Geffen - ASW #378
Q: What is Zero Trust as code and how does it work in practice?
Zero Trust as code embeds security policies in the same repositories and pipelines as infrastructure code, enabling drift detection, automatic remediation, and uniform policy deployment across multiple vendors.
Securing Software's Journey with the OWASP SPVS - Cameron W., Farshad Abasi, Rohan Ravindranath, Ido Geffen - ASW #378
Q: How do AI and agentic software change the control landscape?
AI introduces unpredictable behavior, multi-agent interactions, and new risk vectors like AI bombs, so SPVS adds dedicated AI controls, identity models for AI services, and governance around prompt data and agent frameworks.
AppSec News Roundup on Claude Code Leak, Axios NPM Compromise, Secure Design - Idan Plotnik, Raj Mallempati - ASW #377
Q: Idan, how does Apiiro's Guardian agent change the game for secure coding in an AI-assisted development world?
Idan describes a guardian agent layered on top of coding agents, enriching prompts with a software graph to enforce secure-by-design prompts, enabling proactive prevention of vulnerabilities before code is generated, and maintaining business context across the SDLC.
AppSec News Roundup on Claude Code Leak, Axios NPM Compromise, Secure Design - Idan Plotnik, Raj Mallempati - ASW #377
Q: Raj, what are you seeing at BlueFlag in terms of primary risk vectors in modern dev environments?
Raj explains that identity and access management of both human and non-human developers drives most risk; the focus should be on visibility into all identities, least privilege, and correlating behavioral data to understand and mitigate toxic interactions across tools.
Making Medical Devices Secure - Tamil Mathi - ASW #373
Q: What advice would you give to someone wanting to enter this field?
Develop a product-security mindset that emphasizes understanding the system as a whole, combine developer skills with security basics, and engage with real-world hardware challenges through safe, approved learning environments and resources like DEFCON biohacking village and IoT-focused education.

Audience Metrics

Listeners, social reach, demographics and more for this podcast.

Listeners per Episode
Gender Skew
Location
Interests
Professions
Age Range
Household Income
Social Media Reach

Frequently Asked Questions About Application Security Weekly

What is Application Security Weekly about and what kind of topics does it cover?

This podcast focuses on various aspects of application security (AppSec), DevOps, and DevSecOps, providing listeners with insights on finding and addressing software vulnerabilities effectively. Each episode features discussions with industry experts who share their knowledge and experiences related to the evolving landscape of cybersecurity, including the use of large language models (LLMs), secure coding practices, threat modeling, and recent trends in securing software supply chains. The conversational format often highlights practical strategies for professionals in the field, making complex topics accessible and engaging.

Where can I find podcast stats for Application Security Weekly?

Rephonic provides a wide range of podcast stats for Application Security Weekly. We scanned the web and collated all of the information that we could find in our comprehensive podcast database. See how many people listen to Application Security Weekly and access YouTube viewership numbers, download stats, audience demographics, chart rankings, ratings, reviews and more.

How many listeners does Application Security Weekly get?

Rephonic provides a full set of podcast information for three million podcasts, including the number of listeners. View further listenership figures for Application Security Weekly, including podcast download numbers and subscriber numbers, so you can make better decisions about which podcasts to sponsor or be a guest on. You will need to upgrade your account to access this premium data.

What are the audience demographics for Application Security Weekly?

Rephonic provides comprehensive predictive audience data for Application Security Weekly, including gender skew, age, country, political leaning, income, professions, education level, and interests. You can access these listener demographics by upgrading your account.

How many subscribers and views does Application Security Weekly have?

To see how many followers or subscribers Application Security Weekly has on Spotify and other platforms such as Castbox and Podcast Addict, simply upgrade your account. You'll also find viewership figures for their YouTube channel if they have one.

Which podcasts are similar to Application Security Weekly?

These podcasts share a similar audience with Application Security Weekly:

1. The Application Security Podcast
2. Security Weekly News (Audio)
3. Cybersecurity Today
4. CyberWire Daily
5. SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

How many episodes of Application Security Weekly are there?

Application Security Weekly launched 8 years ago and published 706 episodes to date. You can find more information about this podcast including rankings, audience demographics and engagement in our podcast database.

How do I contact Application Security Weekly?

Our systems regularly scour the web to find email addresses and social media links for this podcast. We scanned the web and collated all of the contact information that we could find in our podcast database. But in the unlikely event that you can't find what you're looking for, our concierge service lets you request our research team to source better contacts for you.

Where can I see ratings and reviews for Application Security Weekly?

Rephonic pulls ratings and reviews for Application Security Weekly from multiple sources, including Spotify, Apple Podcasts, Castbox, and Podcast Addict.

View all the reviews in one place instead of visiting each platform individually and use this information to decide if a show is worth pitching or not.

How do I access podcast episode transcripts for Application Security Weekly?

Rephonic provides full transcripts for episodes of Application Security Weekly. Search within each transcript for your keywords, whether they be topics, brands or people, and figure out if it's worth pitching as a guest or sponsor. You can even set-up alerts to get notified when your keywords are mentioned.

What guests have appeared on Application Security Weekly?

Recent guests on Application Security Weekly include:

1. Gwyddon Data Owen
2. Tom Tovar
3. Cameron Walters
4. Rohan Ravindranath
5. Ido Geffen
6. Raj Mallempati
7. Keith Hoodlet
8. Ron Rasin

To view more recent guests and their details, simply upgrade your Rephonic account. You'll also get access to a typical guest profile to help you decide if the show is worth pitching.

Find and pitch the right podcasts

We help savvy brands, marketers and PR professionals to find the right podcasts for any topic or niche. Get the data and contacts you need to pitch podcasts at scale and turn listeners into customers.
Try it free for 7 days