Rephonic
Artwork for Application Security Weekly

Application Security Weekly (Video)

Security Weekly Productions
Application Security
OWASP
Threat Modeling
Qualys
Devops
Devsecops
Generative AI
Software Assurance Maturity Model
Conference Presentations
Gnu C Library
Secure Pipeline Verification Standard
Software Supply Chain Security
Log4j
AI Security
Kubernetes
Cybersecurity
B-Sides San Francisco
Jenkins
Apple
Apple's Pickle

About all things AppSec, DevOps, and DevSecOps. Hosted by Mike Shema and John Kinsella, the podcast focuses on helping its audience find and fix software flaws effectively.

PublishesWeeklyEpisodes687Founded8 years ago
Number of ListenersCategories
TechnologyTech NewsNews

Listen to this Podcast

Artwork for Application Security Weekly

Latest Episodes

The MCP standard gave rise to dreams of interconnected agents and nightmares of what those interconnected agents would do with unfettered access to APIs, data, and local systems. Aaron Parecki explains how OAuth's new Client ID Metadata Documents spe... more

YouTube

For OT systems, uptime is paramount. That's a hard rule that makes maintaining, upgrading, and securing them a complex struggle. Tomas "Data" Owens and James Cotter discuss how Tennessee is tackling the organizational and technical challenges that co... more

YouTube

What are your favorite resources for secure code? Co-hosts John Kinsella and Kalyani Pawar talk about the reality of bringing security into a business. We talk about the role of the OWASP Top 10 and the OWASP ASVS in crafting security programs. And b... more

YouTube

Secure code should be grounded more in concepts like secure by default and secure by design than by "spot the vuln" thinking. Matias Madou shares his experience in secure coding training and the importance of teaching critical thinking. He also discu... more

YouTube

Key Facts

Accepts Guests
Accepts Sponsors
Contact Information
Podcast Host
Number of Listeners
Find out how many people listen to this podcast per episode and each month.

Similar Podcasts

People also subscribe to these shows.

Recent Guests

Matias Madou
A security expert, researcher, and CTO and co-founder of Secure Code Warrior
Secure Code Warrior
Episode: Secure Coding as Critical Thinking Instead of Vulnspotting - Matias Madou - ASW #357
Rob Allen
Chief Product Officer at ThreatLocker with two decades of security experience.
ThreatLocker
Episode: Ransomware, Defaults, and Proactive Defenses - Rob Allen - ASW #356
Bar Kaduri
Cloud Security Threat Research Team Leader at Orca Security with a background in malware analysis and cybersecurity roles.
Orca Security
Episode: Researching and Remediating RCEs via GitHub Actions - Bar Kaduri, Roi Nisimi - ASW #355
Roi Nisimi
Formerly served in IDF's elite cyber units, experienced in offensive security and vulnerability research.
Episode: Researching and Remediating RCEs via GitHub Actions - Bar Kaduri, Roi Nisimi - ASW #355
Steve Wilson
Chief Product Officer at ExaBeam, leader in generative AI and cybersecurity
ExaBeam
Episode: Inside the OWASP GenAI Security Project - Steve Wilson - ASW #352
Nico Waisman
CISO at XBOW with over 20 years in security; previously CISO at Lyft.
XBOW
Episode: Finding Large Bounties with Large Language Models - Nico Waisman - ASW #351
Francesco Cipollone
Former AppSec and Cloud Security Lead for HSBC, led Cloud Security for AWS Professional Services, chair of the Cloud Security Alliance
AWS, HSBC
Episode: Changing the Vuln Conversation from Volume to Remediation - Francesco Cipollone - ASW #350
Scott Clinton
Board member and co-chair of the OWASP GenAI Security Project
OWASP
Episode: How OWASP's GenAI Security Project keeps up with the pace of AI/Agentic changes - Scott Clinton - ASW #348
Seemant Sehgal
Founder of BreachLock
BreachLock
Episode: Limitations and Liabilities of LLM Coding - Ted Shorter, Seemant Sehgal - ASW #347

Hosts

Mike Shema
Host of Application Security Weekly, focused on providing insights and discussions related to application security and secure software development.
John Kinsella
Co-host of Application Security Weekly, involved in discussions pertaining to application security, DevOps environments, and the integration of security into development practices.

Reviews

4.9 out of 5 stars from 8 ratings
  • Occasional good content

    Keith occasionally has something worth saying, but he lacks solid experience with hardcore software development, and knows almost nothing about lean/agile. He approaches software like an operations problem.

    Paul is unpleasant to listen to and seldom adds anything of value. I wouild not listent to this podcast at all if Paul was the only contributor.

    This week's episode is particularlt vexing, as the bros bray on about American Football. Please find another forum for that. Your listeners are he... more

    Apple Podcasts
    2
    jdtangney
    United States7 years ago

Listeners Say

Key themes from listener reviews, highlighting what works and what could be improved about the show.

Listeners appreciate the deep technical discussions and expert insights shared, particularly valuing the practical advice offered for improving security practices.
Some reviews mention a desire for more focus on core application security topics and less diversion into unrelated subjects.
Overall, the podcast is seen as a valuable resource for those in the application security field, though opinions vary on the engagement of the hosts.

Chart Rankings

How this podcast ranks in the Apple Podcasts, Spotify and YouTube charts.

Apple Podcasts
#189
Canada/News/Tech News
Apple Podcasts
#3
Russia/News/Tech News
Apple Podcasts
#59
Russia/News
Apple Podcasts
#61
India/News/Tech News
Apple Podcasts
#64
Finland/News/Tech News
Apple Podcasts
#71
Philippines/News/Tech News

Talking Points

Recent interactions between the hosts and their guests.

Quantum Computing Isn't A Threat To Blockchains - Yet - Sandy Carielli, Martha Bennett - ASW #354
Q: Why is the urgency to adopt quantum-safe strategies heightened in 2025?
Recent breakthroughs in quantum computing technologies have accelerated the timeline and urgency for action.
Quantum Computing Isn't A Threat To Blockchains - Yet - Sandy Carielli, Martha Bennett - ASW #354
Q: What makes migrating to post-quantum cryptography different from other encryption upgrades?
The migration involves deep infrastructure changes and the way public key cryptography is integral to protecting data.
Quantum Computing Isn't A Threat To Blockchains - Yet - Sandy Carielli, Martha Bennett - ASW #354
Q: What is Q-Day specifically?
Q-Day refers to the point when a quantum computer will be capable of breaking a reasonably sized RSA or ECC key.
Reacting to Ransomware and Setting Secure Defaults - Rob Allen - ASW #353
Q: What can most places do to be proactive?
Organizations should implement layered defenses including network segmentation, multi-factor authentication, and proactive configurations to reduce the risk of ransomware attacks.
Finding Large Bounties with Large Language Models - Nico Waisman - ASW #351
Q: What did you focus on in terms of finding vulnerabilities?
Initially, we focused on low-hanging fruits and then moved to more impactful vulnerabilities as we built our capability.

Audience Metrics

Listeners, social reach, demographics and more for this podcast.

Listeners per Episode
Gender Skew
Location
Interests
Professions
Age Range
Household Income
Social Media Reach

Frequently Asked Questions About Application Security Weekly

What is Application Security Weekly about and what kind of topics does it cover?

Content surrounding application security, DevOps practices, and emerging technologies is a significant focus, with discussions that generally explore ways to identify and remediate software vulnerabilities effectively. Episodes often feature expert guests who share insights on secure coding practices, cybersecurity threats, and innovative tools and methodologies to promote security within development processes. Notably, the podcast also integrates contemporary trends in AI and machine learning into security discussions, showcasing the relevance of these technologies in application security and the evolving challenges faced by developers in adapting to them.

Where can I find podcast stats for Application Security Weekly?

Rephonic provides a wide range of podcast stats for Application Security Weekly. We scanned the web and collated all of the information that we could find in our comprehensive podcast database. See how many people listen to Application Security Weekly and access YouTube viewership numbers, download stats, audience demographics, chart rankings, ratings, reviews and more.

How many listeners does Application Security Weekly get?

Rephonic provides a full set of podcast information for three million podcasts, including the number of listeners. View further listenership figures for Application Security Weekly, including podcast download numbers and subscriber numbers, so you can make better decisions about which podcasts to sponsor or be a guest on. You will need to upgrade your account to access this premium data.

What are the audience demographics for Application Security Weekly?

Rephonic provides comprehensive predictive audience data for Application Security Weekly, including gender skew, age, country, political leaning, income, professions, education level, and interests. You can access these listener demographics by upgrading your account.

How many subscribers and views does Application Security Weekly have?

To see how many followers or subscribers Application Security Weekly has on Spotify and other platforms such as Castbox and Podcast Addict, simply upgrade your account. You'll also find viewership figures for their YouTube channel if they have one.

Which podcasts are similar to Application Security Weekly?

These podcasts share a similar audience with Application Security Weekly:

1. SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
2. Cyber Security Headlines
3. Cybersecurity Today
4. CyberWire Daily
5. Hacking Humans

How many episodes of Application Security Weekly are there?

Application Security Weekly launched 8 years ago and published 687 episodes to date. You can find more information about this podcast including rankings, audience demographics and engagement in our podcast database.

How do I contact Application Security Weekly?

Our systems regularly scour the web to find email addresses and social media links for this podcast. We scanned the web and collated all of the contact information that we could find in our podcast database. But in the unlikely event that you can't find what you're looking for, our concierge service lets you request our research team to source better contacts for you.

Where can I see ratings and reviews for Application Security Weekly?

Rephonic pulls ratings and reviews for Application Security Weekly from multiple sources, including Spotify, Apple Podcasts, Castbox, and Podcast Addict.

View all the reviews in one place instead of visiting each platform individually and use this information to decide if a show is worth pitching or not.

How do I access podcast episode transcripts for Application Security Weekly?

Rephonic provides full transcripts for episodes of Application Security Weekly. Search within each transcript for your keywords, whether they be topics, brands or people, and figure out if it's worth pitching as a guest or sponsor. You can even set-up alerts to get notified when your keywords are mentioned.

What guests have appeared on Application Security Weekly?

Recent guests on Application Security Weekly include:

1. Matias Madou
2. Rob Allen
3. Bar Kaduri
4. Roi Nisimi
5. Steve Wilson
6. Nico Waisman
7. Francesco Cipollone
8. Scott Clinton

To view more recent guests and their details, simply upgrade your Rephonic account. You'll also get access to a typical guest profile to help you decide if the show is worth pitching.

Find and pitch the right podcasts

We help savvy brands, marketers and PR professionals to find the right podcasts for any topic or niche. Get the data and contacts you need to pitch podcasts at scale and turn listeners into customers.
Try it free for 7 days