Code Story
Code Story

Code Story

In a tech startup, how do you get from an idea on the back of a napkin to a fully functioning product? Code Story is a podcast featuring tech leaders, reflecting the roads they travelled and the products they created. On the show, we interview tech visionaries, digging into the critical moments of what it takes to change an industry, and build (and lead) a team that has your back.Hosted by Noah Labhart, this show is a window into the digital startup world. In their own words, tech veterans share what it feels like to create a world class product, how to recover from critical mistakes, and how to scale your solution to the masses.Their tech. Their products. Their stories.This podcast is for the founder, tech leader, CTO, CEO, developer, software architect, startup leader, disruptive visionary - or the curious minded individual, who wants to know what a builder goes through in creating world changing technology.

The Haunted House of APIs - A Portal to the Beyond with Allison Averill
30 October 2024
The Haunted House of APIs - A Portal to the Beyond with Allison Averill
The Haunted House of API's

Today, we are releasing another episode for Cybersecurity Awareness month, in our series entitled the Haunted House of API’s, sponsored by our friends at Traceable AI. In this series, we are building awareness around API’s, their security risks – and what you can do about it. Traceable AI is building One Platform to secure every API, so you can discover, protect, and test all your API's with contextual API security, enabling organizations to minimize risk and maximize the value API's bring to their customers.

A Portal to the Beyond: Securing Gen AI and other Third-Party APIs in Your Applications

Today’s episode is titled A Portal to the Beyond: Securing Gen AI and other Third-Party APIs in Your Applications, with Allison Averill. Developers are building exciting new features with Gen AI, often leveraging 3rd party APIs. Doing this isn’t new, but are these integrations secure? These APIs open a portal to the beyond – and introduce supply chain risk to your applications. Allison is a Generative AI and product management expert at Traceable, and she will explore the risks lurking in generative AI and other 3rd party APIs, sharing best practices for securing these integrations, so you can ensure they don’t become the stuff of security horror stories.

    How are application developers leveraging 3rd party APIs today, and how is the landscape changing?How do third-party APIs introduce risks to applications and what are some common mistakes organizations make when integrating with third party APIs?How are generative AI APIs different from other third party APIs? What unique risks do they introduce?Have you encountered any 'nightmare' scenarios where an insecure third-party API caused a security incident?What best practices should organizations follow to ensure secure integrations?How can organizations balance the need for innovation with the necessity of maintaining strict security controls when working with external partners?

Sponsors

    Traceable

Links

    https://www.traceable.ai/https://www.linkedin.com/in/allisonaverill/

 



Our Sponsors:
* Check out Vanta and use my code CODESTORY for a great deal: https://www.vanta.com


Support this podcast at — https://redcircle.com/code-story/donations

Advertising Inquiries: https://redcircle.com/brands

Privacy & Opt-Out: https://redcircle.com/privacy
The Haunted House of APIs - Phantom Threats with Adam Arellano
29 October 2024
The Haunted House of APIs - Phantom Threats with Adam Arellano
The Haunted House of API's

Today, we are releasing another episode for Cybersecurity Awareness month, in our series entitled the Haunted House of API’s, sponsored by our friends at Traceable AI. In this series, we are building awareness around API’s, their security risks – and what you can do about it. Traceable AI is building One Platform to secure every API, so you can discover, protect, and test all your API's with contextual API security, enabling organizations to minimize risk and maximize the value API's bring to their customers.

Phantom Threats: The Ghosts Haunting Your API Security

Today’s episode is titled Phantom Threats: The Ghosts Haunting Your API Security, with Adam Arellano. API security threats often go unnoticed, hiding like ghosts in your infrastructure. Bots, sophisticated fraud attempts, account takeovers and attackers disguising themselves within legit traffic… these all pose risk to your organization, and can bypass traditional security measures, wreaking havoc without detection – until it’s too late. Adam is a tech advisor, Global CISO at Traceable, and will guide listeners through the world of phantom threats haunting API security.

    What are "phantom threats" in the context of API security, and how do they go undetected?Can you explain how advanced botnets and fraud attempts exploit APIs while blending into legitimate traffic?Do you have a real-world example of a phantom threat that caused significant damage to an organization?What makes detecting these phantom threats so challenging, and why do traditional security measures often fail?What are the best strategies or technologies organizations can adopt to detect and eliminate these hidden threats before they cause harm?

Sponsors

    Traceable

Links

    https://www.traceable.ai/https://www.linkedin.com/in/adamrossarellano/




Our Sponsors:
* Check out Vanta and use my code CODESTORY for a great deal: https://www.vanta.com


Support this podcast at — https://redcircle.com/code-story/donations

Advertising Inquiries: https://redcircle.com/brands

Privacy & Opt-Out: https://redcircle.com/privacy
The Haunted House of APIs - The Haunted Web of APIs with Richard Bird
24 October 2024
The Haunted House of APIs - The Haunted Web of APIs with Richard Bird
The Haunted House of API's

Today, we are releasing another episode for Cybersecurity Awareness month, in our series entitled the Haunted House of API’s, sponsored by our friends at Traceable AI. In this series, we are building awareness around API’s, their security risks – and what you can do about it. Traceable AI is building One Platform to secure every API, so you can discover, protect, and test all your API's with contextual API security, enabling organizations to minimize risk and maximize the value API's bring to their customers.

The Haunted Web: Navigating API Sprawl and Creepy Crawlers

Today’s episode is titled The Haunted Web: Navigating API Sprawl and Creepy Crawlers, with Traceable’s Chief Security Officer, Richard Bird. As organizations scale and evolve, so does the complexity of their APIs. API sprawl, the uncontrolled expansion of APIs, creates a tangled web where vulnerabilities linger in the shadows. These unseen APIs become “creepy crawlers” of your digital infrastructure, creeping through your systems and posing security risks. Richard will discuss how unmanaged and undocumented APIs contribute to blind spots in security, the risks they create for organizations and the best strategies for securing a sprawling ecosystem.

Discussion questions:

    Can you explain what we mean by "unknown APIs" and the different types, like shadow, rogue, zombie, and undocumented?Why do these APIs often go unnoticed, and how do they become security risks?What makes these APIs such an attractive target for attackers, and can you share an example of how one has been exploited?How can organizations begin to uncover these hidden APIs, and what tools or strategies are effective in doing so?In your experience, what are some common mistakes organizations make that lead to these unknown APIs being created or overlooked?

Sponsors

    Traceable

Links

    https://www.traceable.ai/https://www.linkedin.com/in/rbird/https://richardbird.com/


Our Sponsors:
* Check out Vanta and use my code CODESTORY for a great deal: https://www.vanta.com


Support this podcast at — https://redcircle.com/code-story/donations

Advertising Inquiries: https://redcircle.com/brands

Privacy & Opt-Out: https://redcircle.com/privacy