PagerDuty's Security Training for Engineers

Topics covered
Popular Clips
Episode Highlights
Disclosure
Responsible disclosure plays a crucial role in cybersecurity by managing vulnerabilities efficiently. Joe Zack explains that when a security researcher discovers a vulnerability, the company typically has 90 days to address it before the researcher releases the information publicly. This period allows companies to mitigate risks and develop patches, but it also highlights the importance of not relying solely on frameworks to handle security issues 1. Michael Outlaw emphasizes the need for proactive measures, such as sanitizing inputs and using open-source tools to stay informed about potential vulnerabilities 1.
Framework Risks
Relying solely on frameworks for security can be risky, as highlighted by Alan Underwood. He warns against the misconception that frameworks handle all security concerns, citing the example of a zero-day vulnerability in Grafana 2. Joe Zack adds that while frameworks like Dapper can help parameterize queries, developers should not entirely depend on them for input sanitization 2.
Related Episodes
PagerDuty’s Security Training for Engineers! Part Deux
Answers 383 questions

PagerDuty's Security Training for Engineers, Penultimate
Answers 383 questions

PagerDuty's Security Training for Engineers, The Dramatic Conclusion
Answers 383 questions

Water Cooler Gpt
Answers 383 questionsHow to be a Programmer
Answers 383 questionsSite Reliability Engineering - Monitoring Distributed Systems
Answers 383 questions

Keyboards, Cloud Costs, Static Analysis, and Philosophy
Answers 383 questions

Docker Licensing, Career and Coding Questions
Answers 383 questions
Tackling Tough Developer Questions
Answers 383 questions

Is Kubernetes Programming?
Answers 383 questionsDocker for Developers
Answers 383 questions

Google's Engineering Practices - What to Look for in a Code Review
Answers 383 questions

Technical Challenges of Scale at Twitter
Answers 383 questions

DevOps: Job Title or Job Responsibility?
Answers 383 questions

Site Reliability Engineering - Evolution of Automation
Answers 383 questions
