Certified System Engineers

Certifying Critical OT System Engineers

Accredited, industry-recognized certifications giving engineers the authority to stop projects that don’t adhere to safety standards have long been required in chemical, architectural, electrical, and other safety-critical industries.  So why not for software?  In this show, we talk with Trace Bannon, senior principal, software architect and researcher at MITRE, and ... Read More
Getting Physical with Cybersecurity

Getting Physical with Cybersecurity

LAS VEGAS – Security doors and cameras, alarms and biometrics, smart locks and drones, were some of the security device types on display at ISCWest (International Security Consortium West) 2025 at the Venetian Hotel in April. Many of these devices are used for public safety in airports, stadiums, courts, etc., ... Read More
Will the FDA Start Banning Chinese-Made Medical Devices?

Will the FDA Start Banning Chinese-Made Medical Devices?

Interview with Joe Silvia, CEO of MedWare Cyber Click here to listen. In late January, the FDA issued a safety warning on Contec CMS8000 patient monitors and those relabeled as MN-120. The Chinese-made devices, used by thousands of medical institutions across the world, contain back doors in the firmware that ... Read More
Everything in C with Tanya Janca

Everything While Training: Lessons on C and C++ Secure Coding Practices with Tanya Janca

Click here for full interview. In this show, we speak with Tanya Janca, aka SheHacksPurple, a renowned code security trainer with nearly 30 years of experience in application development, engineering, and testing. In the past, she’s worked in counterterrorism for the Canadian government and as chief security officer for the ... Read More

U.S. Bans Software and Firmware Products From Adversarial Countries

In January 2024, U.S. law went into effect that would ban smart cars with Russian and Chinese technology and protect the vehicle supply chain due to concerns about the privacy of consumer data – and, more importantly, remote manipulation of driving vehicles impacting passenger safety. These laws are to take ... Read More
AI Wars Playing Out in Application Attacks and Defenses

AI Wars Playing Out in Application Attacks and Defenses

Deb Radcliff interviews Bugcrowd founder and white hat hacker, Casey Ellis. As if protecting applications wasn’t tough enough, attackers are now leveraging AI to find and exploit application vulnerabilities faster, outpacing patch efforts and evading security. This especially applies to embedded systems and open-source libraries, and all along the software ... Read More
OWASP Top 10 with Brian Glas

OWASP Top 10: What’s C Got to Do With It?

Deb Radcliff interviews OWASP Top Ten core team member Brian Glas. What do the OWASP Top Ten web application vulnerabilities have to do with C languages? And where do those vulnerabilities coincide with Software Bills of Materials (SBOMs)?  As the Top Ten core team begins analyzing the 2025 data, we ... Read More

2025 Software Manufacturing Predictions: SBOMs, Regulations, and More

As we head into 2025, experts weigh in on trends affecting software products in the medical, vehicle, and energy sectors. They also talk about manufacturer readiness for the EU Cyber Resilience Act, and other legislation coming their way. Below, we’ve broken out predictions based on the sectors. Medical Sector Predictions ... Read More
Army Not Ready for February SBOM Deadline

Army Not Ready for February SBOM Deadline

Interview with government IT “Reformer” John Weiler By Deb Radcliff, editor of TalkSecure, sponsored by CodeSecure and syndicated at Security Boulevard & YouTube Starting in February 2025, the U.S. Army will require software bills of materials (SBOMs) for new software contracts. The requirements apply to all "covered computer software," whether developed by government ... Read More
Secure by Demand with Dick Brooks

Empowering Software Buyers Through Secure-by-Demand Guidelines

| | cisa, sdlc, TalkSecure Blog
Interview by Deb Radcliff, editor of TalkSecure, hosted by CodeSecure and syndicated at YouTube, Bright Talk, and Security Boulevard Recently, the Cybersecurity and Infrastructure Security Agency (CISA) released its Secure by Demand Guide for technology buyers to drive adoption of its established Secure by Design guidance for product manufacturers.  The ... Read More