Boring AppSec
Subscribe
Sign in
Home
About
Edition 31: The role of diagramming in design-stage security is changing
LLMs are changing how Security teams think about design stage security. Diagramming is no longer mandatory, but that does not make it irrelevant.
Oct 5
•
Sandesh Mysore Anand
6
Latest
Top
Discussions
Edition 30: The SDLC is changing and so will AppSec (again)
Every time software development changes, so does AppSec. The LLM-powered coding era will be no different.
Jul 22
•
Sandesh Mysore Anand
9
2
Edition 29: Security slows down Change Management and we have a chance to fix it
One of the advantages of building a company is that you get to talk to many people.
May 27
•
Sandesh Mysore Anand
2
2
Edition 28: ADR v/s Shift-left should be looked at as a "Stock" v/s "Flow" problem
And like most "Stock" v "Flow" discussions, you need a bit of both.
Jan 27
•
Sandesh Mysore Anand
3
The times, they are A-changin
In the coming months, this newsletter will reflect the changes in my career: from being an AppSec operator to being a co-founder of an AppSec company.
Jan 19
•
Sandesh Mysore Anand
Edition 27: Secure by Design is important, but requires a different kind of industry effort to achieve it
CISA's Secure by Design has good intentions, but has an identity crisis. At this point, it may not move the needle on software security.
Nov 10, 2024
•
Sandesh Mysore Anand
5
1
Edition 26: Scaling Security Design Reviews and why the time is now
"Developer enablement" is all the rage in AppSec and rightly so. The best time to do it is just before they start building.
Jul 29, 2024
•
Sandesh Mysore Anand
8
[New Pod Announcement] Episode 1: - Asset Inventory
In the first episode of this brand new Podcast, Anshuman and I talk about software inventories. Why we need them, how to build them, and what to avoid.
Mar 4, 2024
•
Sandesh Mysore Anand
and
Anshuman Bhartiya
See all
Boring AppSec
E1-27: Getting the Boring aspects of AppSec right E28+: All aspects of building AppSec products
Subscribe
Contact
Twitter
LinkedIn
Boring AppSec
Subscribe
About
Archive
Sitemap
This site requires JavaScript to run correctly. Please
turn on JavaScript
or unblock scripts