• Empowering Developers, Elevating Security: Neha Malik on Building an AppSec Culture

  • 2025/01/08
  • 再生時間: 36 分
  • ポッドキャスト

Empowering Developers, Elevating Security: Neha Malik on Building an AppSec Culture

  • サマリー

  • Episode Summary

    In this episode of Secured, host Cole Cornford chats with Neha Malik, Head of Product Security at REA Group, about building and scaling effective application security (AppSec) programs. They delve into the importance of empathy, communication, and relationship-building between security teams and developers. Neha shares her journey from a Microsoft graduate program, through external consulting at KPMG, and into her current leadership role. They discuss making security easy for engineers, managing security champions programs with realistic expectations, and learning from other disciplines—like psychology and marketing—to better influence and engage stakeholders. Neha and Cole also highlight how tailoring approach and tooling can differ for startups and large enterprises, and emphasise that collaboration, not confrontation, leads to long-term AppSec success.

    Timestamps

    00:20 - Neha’s Role at REA Group and Positive AppSec Outcomes

    01:30 - Starting a Career in Security at Microsoft’s Grad Program

    05:45 - Building an AppSec Program from Scratch at REA

    10:00 - Startups: Embedding Security in Tools Over Heavy Process

    14:40 - Security Champions Programs: Value, Expectations, and Incentives

    20:25 - Learning from Other Disciplines (e.g., Psychology) to Influence Teams

    Mentioned in this episode:

    Call for Feedback



    This podcast uses the following third-party services for analysis:

    Podtrac - https://analytics.podtrac.com/privacy-policy-gdrp
    Spotify Ad Analytics - https://www.spotify.com/us/legal/ad-analytics-privacy-policy/
    続きを読む 一部表示

あらすじ・解説

Episode Summary

In this episode of Secured, host Cole Cornford chats with Neha Malik, Head of Product Security at REA Group, about building and scaling effective application security (AppSec) programs. They delve into the importance of empathy, communication, and relationship-building between security teams and developers. Neha shares her journey from a Microsoft graduate program, through external consulting at KPMG, and into her current leadership role. They discuss making security easy for engineers, managing security champions programs with realistic expectations, and learning from other disciplines—like psychology and marketing—to better influence and engage stakeholders. Neha and Cole also highlight how tailoring approach and tooling can differ for startups and large enterprises, and emphasise that collaboration, not confrontation, leads to long-term AppSec success.

Timestamps

00:20 - Neha’s Role at REA Group and Positive AppSec Outcomes

01:30 - Starting a Career in Security at Microsoft’s Grad Program

05:45 - Building an AppSec Program from Scratch at REA

10:00 - Startups: Embedding Security in Tools Over Heavy Process

14:40 - Security Champions Programs: Value, Expectations, and Incentives

20:25 - Learning from Other Disciplines (e.g., Psychology) to Influence Teams

Mentioned in this episode:

Call for Feedback



This podcast uses the following third-party services for analysis:

Podtrac - https://analytics.podtrac.com/privacy-policy-gdrp
Spotify Ad Analytics - https://www.spotify.com/us/legal/ad-analytics-privacy-policy/
activate_buybox_copy_target_t1

Empowering Developers, Elevating Security: Neha Malik on Building an AppSec Cultureに寄せられたリスナーの声

カスタマーレビュー:以下のタブを選択することで、他のサイトのレビューをご覧になれます。