logo
episode-header-image
Jan 2024
25m 34s

2787: Navigating the Evolving Landscape ...

NEIL C. HUGHES
About this episode

In this compelling episode, we delve into the strategic importance of application security as businesses undergo digital transformation. Sandeep Johri, with his rich experience at Checkmarx, sheds light on this domain's multifaceted challenges and opportunities. We discuss how vulnerabilities in applications can erode customer confidence and pose significant regulatory challenges.

Checkmarx stands out in this landscape with its comprehensive application security platform, CX1, which provides holistic coverage of AppSec. This sets them apart from competitors who may only focus on one or two areas. But what truly enhances Checkmarx's capabilities is the integration of Artificial Intelligence. AI not only accelerates the ability of developers to fix vulnerabilities but also enables Checkmarx to proactively detect emerging threats, particularly those arising from AI systems themselves.

A key theme of our discussion is the communication of AppSec value to corporate boards. Johri emphasizes the importance of maturity assessment models and risk quantification in presenting a clear picture of AppSec status and priorities. This strategic approach offers a roadmap for improvement and a tangible understanding of ROI in application security. However, technology is just one piece of the puzzle. We delve into the human aspect – training developers in AppSec. Here, Checkmarx's integrated "Codebashing" modules come into play, offering quick, context-relevant tutorials for developers to address vulnerabilities efficiently.

Illustrating the impact of these strategies, Johri shares success stories from Checkmarx's engagements, notably with large banking institutions, where they've assisted in swiftly prioritizing and eliminating vulnerabilities. Many of these clients began with relatively immature AppSec processes, underscoring the transformative potential of Checkmarx's approach.

Up next
Yesterday
3341: Lessons from the Coursera 2025 Global Skills Report
Are we preparing people as quickly as we’re preparing machines? That’s the uncomfortable question at the heart of Coursera’s 2025 Global Skills Report, and the starting point for my conversation with Nikolaz Foucaud, Coursera’s Managing Director for EMEA. As the UK jumps more tha ... Show More
26m 40s
Jul 8
3340: How Criteo Is Using AI to Redesign the Future of Retail Experiences
What happens when AI moves from experimental tool to everyday shopping assistant? In this episode of Tech Talks Daily, I’m joined by Liva Ralaivola, Head of the Criteo AI Lab, to unpack how artificial intelligence is reshaping the way we discover, compare, and purchase products o ... Show More
34m 38s
Jul 7
3339: How Cisco Is Preparing for a World Powered by Agentic AI and Quantum Computing
How do we prepare for a world where AI agents work together, networks think for themselves, and quantum teleportation is no longer just science fiction? I recently caught up once again with Vijoy Pandey, SVP and GM of Outshift by Cisco, live at Cisco Live in San Diego, for a wide ... Show More
30m 22s
Recommended Episodes
Dec 2021
Providing Visibility and Context to Software Development Security with Idan Plotnik, the CEO of Apiiro
Running fast is good but not headfirst into a brick wall. Similarly, software development needs to move fast, but moving too fast typically is not secure and can cause headaches. Furthermore, old security protocols are insufficient and inefficient. Idan Plotnik, the Co-Founder & ... Show More
32m 2s
Dec 2021
Keeping Security Simple with Johanna Baum, the CEO and Founder of S3 (Strategic Security Solutions)
There is a lot of conversation among IT security leaders about engaging the workforce in order to mitigate threats. But how do security professionals actually win people over to their side? Many employees are willing to comply but what can be done to really get through to those t ... Show More
41 m
Jan 2024
Encore: Examining the current state of security orchestration. [CyberWire-X]
In this encore episode of CyberWire-X, N2K’s CSO, Chief Analyst, and Senior Fellow, Rick Howard, is joined by guest Rohit Dhamankar, Fortra's Vice President of Product Strategy, and Hash Table member Steve Winterfeld, Akamai's Advisory CISO to discuss CISO initiatives such as ven ... Show More
32m 13s
Dec 2021
Security Straight Talk with Jim Alkove, Chief Trust Officer at Salesforce, and George Kurtz, President/CEO and co-founder of CrowdStrike
When it comes to IT security, there are a lot of marketing pitches out there offering bullish assessments of certain technologies, and, of course, the particular products being pitched. Really, there’s nothing wrong with marketers doing their jobs, and it’s especially useful when ... Show More
36m 12s
May 2022
Securing APIs and Applications in the Cloud
Enterprises across the globe are seeing surging demand for digital experiences from their customers, employees, and partners. For many of these enterprises, hundreds of business applications are hosted in private or public clouds that interact with their users (customers, partner ... Show More
27 m
Oct 2021
Rolling with Change as API has its Moment, with Joshua Scott, Head of IT and Security for Postman
It’s easy to feel unmoored in a fast-changing world with such choppy waves. With so much change, there’s a natural tendency to want to drop the anchor in the nearest calm waters and remain there, hoping this approach will be the most secure. But the water’s never really placid. T ... Show More
35m 53s
Feb 2024
PagerDuty’s CTO on the Crux of IT Operations
One of the critical components of the software value chain is resiliency, or how quickly a system can recover with the fewest people affected or noticing, says PagerDuty Chief Technology Officer Tim Armandpour. He joins Sunil Rajgopal, Bloomberg Intelligence’s senior software ana ... Show More
44m 30s
Jan 2022
Safeguarding Data in App Development with Jedidiah Yueh, the Founder and CEO of Delphix
Developing enterprise apps quickly is essential for business success, and securing data during the development process is imperative too. Jedidiah Yueh, the Founder and CEO of Delphix, suggests that though not as many people are talking about securing data in the app development ... Show More
37m 20s
Jan 2022
The rise of Karakurt Hacking Team.
Guest Rob Boyce, Accenture's Global Lead for Cyber Incident Response and Transformation Services, joins Dave to discuss their research "Karakurt rises from its lair." Accenture Security has identified a new threat group, the self-proclaimed Karakurt Hacking Team, that has impacte ... Show More
12m 55s
Jul 2021
Analyzing the Impact of A.I. and Technology on Society and Cybersecurity
Technology is advancing at pace never seen before and the newest tech, applications and widgets are being widely adopted at an even quicker rate. Just look at A.I. and machine learning tools,which are now used to identify things once thought unimaginable — whether it's to figure ... Show More
49m 58s