Rephonic
Artwork for Application Security Weekly

Application Security Weekly (Video)

Security Weekly Productions
Application Security
OWASP
Threat Modeling
Qualys
Secure Pipeline Verification Standard
Devops
Devsecops
Generative AI
Software Assurance Maturity Model
Conference Presentations
GNU C Library
Software Supply Chain Security
Log4j
AI Security
Kubernetes
Cybersecurity
B-Sides San Francisco
Jenkins
Apple
Software Bloat

About all things AppSec, DevOps, and DevSecOps. Hosted by Mike Shema and John Kinsella, the podcast focuses on helping its audience find and fix software flaws effectively.

PublishesWeeklyEpisodes701Founded8 years ago
Number of ListenersCategories
NewsTechnologyTech News

Listen to this Podcast

Artwork for Application Security Weekly

Latest Episodes

Medical devices are a special segment of the IoT world where availability and patient safety are paramount. Tamil Mathi explains why many devices need to fail open -- the opposite of what traditional appsec approaches might initially think -- and wha... more

YouTube

As more developers turn to LLMs to generate code, more appsec teams are turning to LLMs to conduct security code reviews. One of the biggest themes in all the discussion around LLMs, agents, and code is speed -- more code created faster. James Wicket... more

YouTube

Journalists put a lot of effort into collecting information and protecting their sources, but everyone can benefit from having a digital environment that's more secure and more privacy protecting. Runa Sandvik shares her experience working with journ... more

YouTube

A major premise of appsec is figuring out effective ways to answer the question, "What security flaws are in this code?" The nature of the question doesn't really change depending on who or what wrote the code. In other words, LLMs writing code reall... more

YouTube

Key Facts

Accepts Guests
Accepts Sponsors
Contact Information
Podcast Host
Number of Listeners
Find out how many people listen to this podcast per episode and each month.

Similar Podcasts

People also subscribe to these shows.

CyberWire Daily
CyberWire DailyN2K Networks
Hacking Humans
Hacking HumansN2K Networks

Recent Guests

Tamil Mathi
Security researcher focusing on IoT, web, and cloud security with threat modeling expertise
Episode: Making Medical Devices Secure - Tamil Mathi - ASW #373
James Wickett
CEO of Dry Run Security
Dry Run Security
Episode: Modern AppSec that keeps pace with AI development - James Wickett - ASW #372
Runa Sandvik
Founder of Granite, a consultancy focused on security for journalists and other at-risk people.
Granite
Episode: Helping Users with Practical Advice to Protect their Digital Devices - Runa Sandvik - ASW #371
Kalyani Pawar
Expert in application security and coding practices.
Episode: Lessons from MongoBleed, CWE Top 25, and Secure Coding Benchmarks - ASW #366
Chris Wysopal
Chief Security Evangelist at Veracode, formerly Vice President of Research and Development at Security Consultancy @Stake
Veracode
Episode: The Upsides and Downsides of LLM-Generated Code - Chris Wysopal - ASW #364
Felipe Zipitria
Project Leader at OWASP
OWASP
Episode: AI-Era AppSec: Transparency, Trust, and Risk Beyond the Firewall - Felipe Zipitria, Steve Springett, Aruneesh Salhotra, Ken Huang - ASW #363
Steve Springett
Vice Chair of the Global Board of Directors at OWASP Foundation
OWASP Foundation
Episode: AI-Era AppSec: Transparency, Trust, and Risk Beyond the Firewall - Felipe Zipitria, Steve Springett, Aruneesh Salhotra, Ken Huang - ASW #363
Aruneesh Salhotra
CEO and CISO at SNM Consulting and OWASP Project Lead
SNM Consulting
Episode: AI-Era AppSec: Transparency, Trust, and Risk Beyond the Firewall - Felipe Zipitria, Steve Springett, Aruneesh Salhotra, Ken Huang - ASW #363
Ken Huang
CEO at distributedapps.ai, Author on AI and Blockchain
distributedapps.ai
Episode: AI-Era AppSec: Transparency, Trust, and Risk Beyond the Firewall - Felipe Zipitria, Steve Springett, Aruneesh Salhotra, Ken Huang - ASW #363

Hosts

Mike Shema
Host of Application Security Weekly
John Kinsella
Co-host of Application Security Weekly

Reviews

4.9 out of 5 stars from 8 ratings
  • Occasional good content

    Keith occasionally has something worth saying, but he lacks solid experience with hardcore software development, and knows almost nothing about lean/agile. He approaches software like an operations problem.

    Paul is unpleasant to listen to and seldom adds anything of value. I wouild not listent to this podcast at all if Paul was the only contributor.

    This week's episode is particularlt vexing, as the bros bray on about American Football. Please find another forum for that. Your listeners are he... more

    Apple Podcasts
    2
    jdtangney
    United States7 years ago

Listeners Say

Key themes from listener reviews, highlighting what works and what could be improved about the show.

There are concerns that the podcast sometimes lacks depth due to the hosts' varying levels of experience in software development.
Some appreciate the practical insights provided, especially for professionals looking to improve their AppSec knowledge.

Chart Rankings

How this podcast ranks in the Apple Podcasts, Spotify and YouTube charts.

Apple Podcasts
#32
Canada/News/Tech News
Apple Podcasts
#43
Philippines/News/Tech News
Apple Podcasts
#60
Saudi Arabia/News/Tech News
Apple Podcasts
#62
New Zealand/News/Tech News
Apple Podcasts
#80
Finland/News/Tech News
Apple Podcasts
#82
South Africa/News/Tech News

Talking Points

Recent interactions between the hosts and their guests.

Making Medical Devices Secure - Tamil Mathi - ASW #373
Q: What advice would you give to someone wanting to enter this field?
Develop a product-security mindset that emphasizes understanding the system as a whole, combine developer skills with security basics, and engage with real-world hardware challenges through safe, approved learning environments and resources like DEFCON biohacking village and IoT-focused education.
Making Medical Devices Secure - Tamil Mathi - ASW #373
Q: How does FDA regulation shape the development and documentation process for medical devices?
FDA submissions (510K) require extensive documentation; security considerations should be embedded in documentation early and iteratively, providing a centralized repository for security controls and enabling regulators to assess the product without source code reviews.
Making Medical Devices Secure - Tamil Mathi - ASW #373
Q: What are the broad categories of medical devices you encounter and how do they influence threat modeling?
Devices range from low-risk class ones to implantables (class three). Threat modeling must account for hardware foundations (secure boot, hardware layers) and how devices may operate with or without connectivity, with availability and patient safety driving primary security concerns.
Helping Users with Practical Advice to Protect their Digital Devices - Runa Sandvik - ASW #371
Q: How do you deal with people who don't trust any of these tools?
I try to start by understanding where their distrust comes from and then guide the conversation based on their responses.
Helping Users with Practical Advice to Protect their Digital Devices - Runa Sandvik - ASW #371
Q: What is one thing that you try to have people walk away from when they're interacting with you?
I really like interactions that end with the other person having a sense of like, okay, I got this. I can do the thing that we just talked about.

Audience Metrics

Listeners, social reach, demographics and more for this podcast.

Listeners per Episode
Gender Skew
Location
Interests
Professions
Age Range
Household Income
Social Media Reach

Frequently Asked Questions About Application Security Weekly

What is Application Security Weekly about and what kind of topics does it cover?

This podcast focuses on various aspects of application security (AppSec), DevOps, and DevSecOps, providing listeners with insights on finding and addressing software vulnerabilities effectively. Each episode features discussions with industry experts who share their knowledge and experiences related to the evolving landscape of cybersecurity, including the use of large language models (LLMs), secure coding practices, threat modeling, and recent trends in securing software supply chains. The conversational format often highlights practical strategies for professionals in the field, making complex topics accessible and engaging.

Where can I find podcast stats for Application Security Weekly?

Rephonic provides a wide range of podcast stats for Application Security Weekly. We scanned the web and collated all of the information that we could find in our comprehensive podcast database. See how many people listen to Application Security Weekly and access YouTube viewership numbers, download stats, audience demographics, chart rankings, ratings, reviews and more.

How many listeners does Application Security Weekly get?

Rephonic provides a full set of podcast information for three million podcasts, including the number of listeners. View further listenership figures for Application Security Weekly, including podcast download numbers and subscriber numbers, so you can make better decisions about which podcasts to sponsor or be a guest on. You will need to upgrade your account to access this premium data.

What are the audience demographics for Application Security Weekly?

Rephonic provides comprehensive predictive audience data for Application Security Weekly, including gender skew, age, country, political leaning, income, professions, education level, and interests. You can access these listener demographics by upgrading your account.

How many subscribers and views does Application Security Weekly have?

To see how many followers or subscribers Application Security Weekly has on Spotify and other platforms such as Castbox and Podcast Addict, simply upgrade your account. You'll also find viewership figures for their YouTube channel if they have one.

Which podcasts are similar to Application Security Weekly?

These podcasts share a similar audience with Application Security Weekly:

1. CyberWire Daily
2. Cybersecurity Today
3. Hacking Humans

How many episodes of Application Security Weekly are there?

Application Security Weekly launched 8 years ago and published 701 episodes to date. You can find more information about this podcast including rankings, audience demographics and engagement in our podcast database.

How do I contact Application Security Weekly?

Our systems regularly scour the web to find email addresses and social media links for this podcast. We scanned the web and collated all of the contact information that we could find in our podcast database. But in the unlikely event that you can't find what you're looking for, our concierge service lets you request our research team to source better contacts for you.

Where can I see ratings and reviews for Application Security Weekly?

Rephonic pulls ratings and reviews for Application Security Weekly from multiple sources, including Spotify, Apple Podcasts, Castbox, and Podcast Addict.

View all the reviews in one place instead of visiting each platform individually and use this information to decide if a show is worth pitching or not.

How do I access podcast episode transcripts for Application Security Weekly?

Rephonic provides full transcripts for episodes of Application Security Weekly. Search within each transcript for your keywords, whether they be topics, brands or people, and figure out if it's worth pitching as a guest or sponsor. You can even set-up alerts to get notified when your keywords are mentioned.

What guests have appeared on Application Security Weekly?

Recent guests on Application Security Weekly include:

1. Tamil Mathi
2. James Wickett
3. Runa Sandvik
4. Kalyani Pawar
5. Chris Wysopal
6. Felipe Zipitria
7. Steve Springett
8. Aruneesh Salhotra

To view more recent guests and their details, simply upgrade your Rephonic account. You'll also get access to a typical guest profile to help you decide if the show is worth pitching.

Find and pitch the right podcasts

We help savvy brands, marketers and PR professionals to find the right podcasts for any topic or niche. Get the data and contacts you need to pitch podcasts at scale and turn listeners into customers.
Try it free for 7 days