James Chiappetta
@jameschiapet
Followers
145
Following
92
Media
1
Statuses
74
Cybersecurity Leader. Founder of the https://t.co/EmuALazWDw security blog.
Northeastern part of USA
Joined May 2008
Want to cut risk, win over Developers, and finally prove AppSec’s value? Check out this post to see how the "one vulnerability at a time" campaign model can help. https://t.co/WFh4W5rHdA
#cybersecurity #applicationsecurity #appsec #artificialintelligence #SoftwareEngineering
betterappsec.com
A guide to dealing with the data from security processes, so Application Security teams can mobilize Developers and truly show their value.
0
1
2
Here is our take on how AI and LLMs are changing Application Security (AppSec) products, such as SAST and DAST, for the better. https://t.co/DJsomRmaol
#applicationsecurity #appsec #cybersecurity #LLMs #ArtificialIntelligence #Software
betterappsec.com
How AI and LLMs are changing Application Security (AppSec) products, such as SAST and DAST, to improve software quality.
0
2
2
🤖 The Future of AppSec: Integrating LLMs and AI Agents into Manual Workflows @anshuman_bh walks through a workflow that automates: * Risk classification * Rapid risk assessment * Security reviews Code snippets, prompts, demo videos https://t.co/1QxYQkPYMu
0
12
42
🤖 tl;dr sec 246 🗡️ GitHub Actions Attack Diagram @adnanthekhan 🤫 The Worst Places to Leak Secrets 😈 Red Team TTPs 🧠 Security Awareness & Secure Coding @shehackspurple 🤖 Tech behind @Semgrep Assistant ☁️ Cloud infra the wrong way, but faster @trailofbits
1
4
7
Our new post tries to unravel the App & Cloud Security product market with support from the community. https://t.co/P0I4HgWnlq
#applicationsecurity #appsec #cybersecurity #ai #cloudsec #cloudsecurity
betterappsec.com
A practitioner’s perspective on how the Application Security (AppSec) Product market is changing.
0
1
1
🎉 It's finally here! The CloudSec Engineer. A practical guide on how to enter, establish yourself, and thrive in the Cloud Security industry as an individual contributor. Now available: https://t.co/CBEIv7IZL7
#thecloudsecengineer
7
22
116
A look at how Artificial Intelligence (AI) products and features are driving scale for both Application Security (AppSec) and broader Cyber teams. https://t.co/YnBrMpqu6X
#appsec #applicationsecurity #cybersecurity #ai #artificialintelligence
betterappsec.com
A look at how Artificial Intelligence (AI) products and features are driving scale for both Application Security (AppSec) and Cyber.
1
2
3
Keshav Malik takes you through how JWTs are used in modern web applications! #appsec #applicationsecurity #jwt #authentication #softwaredevelopment #oauth2 #cybersecurity
https://t.co/9gg9ycKMD0
betterappsec.com
A detailed look at JSON Web Tokens (JWTs) and how to best use them for modern web applications.
0
1
1
Without data, many companies would be irrelevant. It’s their ticket to success and protecting it in the cloud should be a first order problem. https://t.co/9ET1rbc8P9
#cloudsecurity #applicationsecurity #CyberSecurity #aws #informationsecurity
betterappsec.com
A guide on how to achieve cloud & application security data protection and maturity in a cloud native way.
0
1
2
Vulnerability Elimination is a process that requires patience and consistent effort. This post could hopefully help you in your journey. https://t.co/h78knC9HQW
#applicationsecurity #appsec #cloudsecurity #cybersecurity #sdlc #softwaredevelopment #securityoperations
betterappsec.com
From detect to protect: an overview of how to eliminate vulnerabilities from your Application and Cloud security Programs.
0
1
1
Here is our take on how Gen AI tools can start to help scale Application Security's code analysis and threat modeling workflows. https://t.co/gdtuDgTR0s
#applicationsecurity #appsec #artificialintelligence #sdlc #cybersecurity #cloudsecurity #cloudsec #Software
betterappsec.com
A look at how Generative Artificial Intelligence (Gen AI) tools can help scale an Application Security (AppSec) Engineer’s workflow.
0
1
1
Thanks for all the kind messages about https://t.co/p80ooyJpsw this week. Lovely to hear such positive feedback about we have done so far and plan to do in the future. Happy Friday!
github.com
Chalk allows you to follow code from development, through builds and into production. - crashappsec/chalk
0
2
5
✏️ Announcing: Chalk A new OSS tool that aims to make it easy to trace apps from source code to production It can be used for SBOMs, code provenance, to be SLSA level 2 compliant, to create a real-time application inventory, and more By @crashappsec
https://t.co/HWDYPI63lp
1
5
28
A lot of collaboration went into this, and we hope it serves an intro to our journey of using AI tools to further scale cybersecurity. #CyberSecurity #applicationsecurity #cloudsecurity
#ArtificialIntelligence #SoftwareEngineering
https://t.co/Yvr0V2rJgs
betterappsec.com
An introduction to how Artificial Intelligence (AI) can help Application & Cloud Security teams now and in the future.
0
2
3
☁️ 🤖 AWS Docs GPT AI-powered search & chat for AWS documentation #AWS #machine_learning #AI
https://t.co/Pb9JHUGQKY
0
6
12
Technical Program Management (TPM) is key to a mature Application and Cloud Security program. It paves the way for secure-by-design operational efficiency. https://t.co/jcRBclOP1O
#cybersecurity #applicationsecurity #cloudsecurity #leadership #appsec #cloudsec
betterappsec.com
Defining Technical Program Management (TPM) and the problems it resolves in the context of Application and Cloud Security. Paving the way…
0
1
2
A guide to structuring a secure code review process and why it’s important for every Application & Cloud Security team to have one. https://t.co/Nm6Ram5SkJ
#applicationsecurity #cloudsecurity #cybersecurity #appsec #cloudsec #softwaredevelopment #sdlc
betterappsec.com
A guide to structuring a secure code review process and why it’s important for every Application & Cloud Security team to have one.
0
1
7
📊 Tracking Meaningful Security Product Metrics Many security teams struggle to quantify and demonstrate the value that they bring to their company @BSidesSF talk by @leifdreizler on the right metrics to show you're mitigating risk and driving revenue growth 🧵
1
12
39
💪 How to Achieve Application & Cloud Security Resilience * Security scanning types * Where to perform comprehensive vs targeted scans * Building a high quality detection set * The art of root cause analysis * Useful metrics By @jameschiapet #appsec
https://t.co/M2RzpfSy2F
0
15
64
A guide to building a truly resilient Application and Cloud Security program through automation and data. https://t.co/7a7DfiZyl5
#cloudsecurity #automation #cybersecurity #applicationsecurity #appsec #cloudsec
betterappsec.com
A guide to defining and maturing a truly resilient Application and Cloud Security program through automation and data.
0
3
5