Techstrong.tv features industry thought leaders, experts and practitioners in DevOps, cloud-native, cybersecurity and digital transformation sharing news and commentary, analyst research, in-studio and on-site interviews, topical video series and industry and Techstrong conferences from around the world. Techstrong.tv features both editorial and sponsored content.
Nick Vigier, CISO of Talend, and Mike Rothman do some old CISO bonding and discuss how the security organization needs to reorient around value and serving its "customers." They also debate whether DevSecOps is finally a thing, and how integrating security into the code pipeline provides benefits far beyond application security.
Chad discusses how companies can curb Cloud Sprawl with a simple cloud experience and why “ease of use” is a heightened priority for IT teams to navigate cloud complexity and data requirements.
Feb. 9, 2023, Atlassian hosts the inaugural Agile and DevOps-focused event Atlassian Presents: Unleash in Berlin (and virtual.) Claire Drumond, head of marketing, Jira Software & Agile Solutions, shares how the event helps help teams collaborate from discovery to delivery to running great software. Attendees will hear from and have the opportunity to network with Agile, DevOps and product leaders from Atlassian.
Rajesh Deenadayalan, director of cloud security services for Hitachi Vantara, explains why cybersecurity is becoming so much more challenging as more workloads are deployed across multicloud environments.
Leonid Belkind, CTO of Torq, joins Mike Rothman to discuss the state of SOAR, why automation is critical to scaling security operations, and how gathering telemetry and analyzing it provides data to substantiate the value of security automation. He also highlights Torq's new Insights product and addresses some of the organizational headwinds preventing widespread SOAR adoption.
Richard Henshall, head of product management for Ansible at Red Hat, provides an update on Project Wisdom initiative that is bringing natural language processing (NLP) to IT automation.
Just last December, the U.S. Department of Energy’s National Renewable Energy Laboratory announced the first cohort of its Clean Energy Cybersecurity Accelerator program and Xage Security was selected for this fast-paced project. CEO of Xage Security Duncan Greatwood, talks with sustainability and climate contributor Bonnie Schneider about cybersecurity and renewable energy.
Chen Burshan, CEO of Skyhawk Security joins Mike Rothman to discuss the state of cloud security, SkyHawk's spinout from Radware, and why it's important to look at more than cloud logs to understand cloud security posture. They also talk about SkyHawk's free CSPM offering.
Winter driving can be challenging even for the most experienced motorists. But new science and technology innovations are making it easier to navigate this season’s harshest weather conditions. Sustainability and climate contributor Bonnie Schneider speaks with Dr. Heather Reeves, a research scientist at the University of Oklahoma who is working collaboratively with the National Weather Service on these innovations.
Designing Data Centers with sustainability in mind is a top priority for Luke Kipfer, vice president, data center development and construction for American Real Estate Partners and Powerhouse Data Centers. Luke shares strategies, challenges and recent achievements in sustainable data center design, construction, and optimization with sustainability and climate contributor Bonnie Schneider.
LayerX CEO Or Eshed discusses the launch of their recently launched browser security platform that’s trying to disrupt the traditional cybersecurity market by turn any browser into a protected workspace manageable by enterprise security teams.
CodeSee CEO Shanea Leven explains why tools for visualizing codebases are becoming more important in the wake of expanding its alliance with GitHub and Microsoft.
C.W. Walker, director of product strategy for SpyCloud, explains what's really required to implement passwordless authentication as more organizations look to reduce their reliance on passwords to improve cybersecurity.
A recent survey commissioned by Apptio’s Technology Business Management (TBM) Council found that business IT leaders are hungry for greater transparency to support both day-to-day and long-term business management plans. The annual “State of TBM Report” explores spending priorities and concerns among these tech leaders, illuminating the delicate balance between innovation and cost control amid today’s turbulent economic environment. TBM Council General Manager Eileen Wade sheds light on the State of TBM Report, what they reveal about the state of IT management and how the TBM framework can instill greater organization and transparency in tech management decisions.
Courtney Nash discusses recent incidents across a variety of systems, what may have caused them, and what the solutions could be, based off of her research. These incidents include Ticketmaster outages, and the recent FAA issues. What could these organizations implement to make these systmes more robust and ensure that problems that customers, and flyers, are experiencing do not occur again.
Mike Rothman talks to Tom Tovar, CEO of AppDome, about a recent survey they did gauging consumer expectations regarding mobile security. Suffice to say, app developers risk significant brand damage by not paying attention to security. They also discuss AppDome's approach to allowing developers to easily integrate mobile app security into their code.
Jerry Caponera, GM of Risk Quantification at ThreatConnect, explains what's required to successfully navigate cyber insurance now that underwriters of these policies are putting more stringent requirements in place to reduce losses stemming from cybersecurity attacks.
Consumers worldwide want frictionless online experiences without sacrificing the security of personal information, according to Ping Identity’s 2022 Consumer Survey. In 2023, interest in identity proofing will continue rising in heavily regulated industries, such as banking. According to the Ping survey, 63% of consumers feel better about a service that uses MFA and 63% think banks and medical sites should have the same easy login as social media. As consumer confidence in identity, security and privacy erodes, federal and state laws will drive identity verification into wider public awareness.
Danielle Cook, CMO of Fairwinds joins Mike Rothman to discuss Kubernetes in 2023. They highlight findings from an upcoming PulseMeter and list the critical success factors for K8s to mature in 2023, covering security, manageability and operations, auditing, and containing cost.
How can we weather the strains our changing climate places on the infrastructure of our global food supply chain? The innovative technologies behind modular farming offer new solutions. Rick Vanzura, CEO of Freight Farms, joins Sustainability and Climate Contributor Bonnie Schneider to discuss the world's largest network of IoT-connected farms spanning 49 U.S. states and 33 countries.
Yulia Gontar, strategic growth executive for Super Protocol, explains how an open source project will enable confidential computing to be applied to decentralized blockchain environments in the Web3 era to better secure data.
During the interview, Adam speaks to the silver linings in malicious attacks and how CISOs are beginning to fully grasp the growing challenge, and quickly realizing the need to address both human and non-human entities effectively and comprehensively in order to maintain a healthy SaaS security posture. In addition, Adam will speak toidentifying trusted workloads, flagging high-risk events, and preserving productivity.
Mackenzie Jackson, Developer Advocate at GitGuardian, will discuss the major cause of breaches in 2022, look back on the biggest breaches, and discuss how to safeguard against them.
AWS Clean Energy Accelerator program is designed to spur co-innovation through energy partnerships with mature startups from across the globe. One of the program's most recent participants include a Hawaii-based start-up called Shifted Energy, led by serial tech entrepreneur Olin Lagon. Sustainability and Climate Contributor Bonnie Schneider speaks with Olin and Damien Buie, Energy Sector Lead – Renewables and New Energies for Amazon Web Services on their organizations' collaborative efforts to address the climate crisis.
ClimateTech entrepreneur Oliver Bolton joined Sustainability and Climate Tech Contributor Bonnie Schneider to discuss Earthly automated investment and visualisation tools that enable businesses to showcase their climate journey and positive impact to their customers, partners, employees and stakeholders.
Kapil Raina, vice president of zero trust marketing and identity protection evangelist for CrowdStrike, explains how cyberattacks against Microsoft Active Directory (AD) are evolving.
Greg Bak, chief of research and development for Xopero, explains why organizations need to protect data stored in their Jira project management applications from Atlassian to keep application development efforts on track
Steven discusses with Alan how test data management ensures compliance with data privacy regulations, and why Steven believes compliance is one of the biggest strategic issues in modern IT along with how DevOps teams can use certified and fully compliant data to transform application development and delivery with up to 10x faster releases, with 10x fewer defects and 100% masked data.
Cyolo CEO Almog Apirion explains what's required to rein in cybersecurity costs in 2023 while at the same time implementing zero-trust policies based on identity.
David played a key role in building Quali’s “Infrastructure Automation Maturity Model” to showcase current IT infrastructure practices and how they enable, challenge or inhibit IT and business objectives.
Launchable is on a mission to make software testing faster and smarter. Alan, KK and Harpreet talk about how Launchable is closing the testing communication gap with Personalized Slack Notifications.
Approov CEO Ted Miracco explains what makes securing software-defined vehicles a major challenge as more software is embedded within them.
After a successful Predict 2023 conference, Mitch and Mike cover their key takeaways and highlight how the Techstrong community drives Techstrong Research. They also dig into some of the key debates around software security, cloud-native and digital transformation. And the celebratory beer that Mike enjoyed after wrapping up the show.
FlowForge CEO Zeger-Jan (ZJ) van de Weg discusses No Dread, their open source tool that helps with low code, no code development, which is offered as a SaaS solution.
Rahul Subramaniam, chief evangelist for CloudFix, explains why cloud computing environments have become so complex to manage and what IT teams need to focus on to regain control at a time when the rate at which application workloads are moving into the cloud only continues to accelerate.
Nucleus Security CEO Stephen Carter explains exactly how AI platforms such as ChatGPT will be used for both good and ill in cybersecurity.
Tech workers have seen layoffs recently. But new opportunities may be found in "green collar" jobs in the climate tech space. Natalie Lavery, Marketing Lead of Climate People, a technology recruiting firm dedicated to decarbonizing the economy through placing mission-driven talent into ClimateTech careers, joins Climate & Sustainability Contributor Bonnie Schneider to discuss the growing need for strong tech talent to fill job openings at global organizations focused on climate solutions.
Chris Eng, Chief Research Officer at Veracode, discusses with Alan Veracode's State of Software Security Report 2023.
Jodi Ashley (Techstrong) and Tracy Ragan (Deployhub) are joined by Heidi Gilmore, Office of the CMO at Stackstate. The panel talks candidly about marketing in the tech industry, how important marketing professionals are to delivering education and value and dispels the myth that Marketing is "fluffy."
Sravish discusses why democratizing access to risk and compliance tools should become an industry standard for startups and SMBs and how Kintent is now uniquely delivering a free cloud offering for startups to help them become SOC-2 and NIST-CSF compliant so they can successfully compete and thrive in today's business world.
Kelly Albrink, Application Security Practice Director at Bishop Fox, discusses New Year's resolutions for security folks.
Dotan Horovits, principal developer advocate for Logz.io, explains why platform engineering represents the latest effort to centrally manage DevOps platforms at scale without compromising flexibility in a way developers will resist.
Robb Henshaw, chief marketing officer for Cameyo, explains how a shift to Linux servers will lower the cost of implementing virtual desktops as remote work continues to be prevalent.
Chris D'Arcy, founder of EcomPricer, discusses how the company utilizes AI models and data manage discounts for online sellers. Chris talks about how he built his company and product based upon AI, and his learnings along the way.
Charles Horton, NetSPI COO, discussions the acquisition of nVisium to further scale NetSPI's offensive security solutions and address heightened demand for human-delivered penetration testing. nVisium will support NetSPI’s continued efforts to deliver strategic security testing solutions to enterprises.
Inflectra CEO Adam Sandman explains how agile frameworks such as the Scaled Agile Framework (SAFe) are gaining traction as enterprise IT organizations continue to shift more responsibility for cybersecurity left toward application developers in a way that doesn’t compromise the speed at which high-quality applications are developed.
Mike and Mitch kick off 2023 with some prognostications about what 2023 has in store for us. They also go through the high level themes for DevOps, cloud-native, security, and digital transformation, previewing the trends release at Predict 2023 on Jan. 12.
OpsVerse CEO Arul Jegadish Francis explains how a managed DevOps service accelerates application development by reducing management overhead.
What types of data are stolen most often in a breach, how are bad actors gaining access, and what steps can companies take to protect their data? Terry Ray, Imperva SVP and Field CTO, discusses the latest research from Imperva revealing shifts in credit card and personal information compromised in successful attacks. Terry shares the questions every company must be able to answer about their data.
Mike talks with Brett Galloway, CEO of AttackIQ, about the disconnect between the effectiveness of security controls and the funding of the security program. They also discuss how ransomware has changed the economic calculus of security funding and touch on the parallels between quantifying marketing and security controls effectiveness.
Typically, Data Analysts and Data Scientists are tasked to build in data governance, while CISOs, CIOs, and CDOs focus on compliance requirements, implementation, and how to best exploit data. Jabari Norton speaks to why a successful strategy requires all key stakeholders to be all hands on deck.
Kevin Bury, chief customer officer for N-able, explains how the IT ecosystem is evolving as more IT functions are consumed via managed services that internal IT teams co-manage.
mabl co-founder Dan Belcher explains the impact accelerated application development enabled by DevOps is having on application testing.
Noopur Davis, executive vice president, chief information security and product privacy officer for Comcast, explains what it takes to secure the connected home as the number of cyberattacks being aimed at remote systems and applications continues to escalate.
Andrew Davidson talks about MongoDB's vision for a Developer Data Platform called Atlas. It provides a unified way to work with data that addresses a multitude of operational and analytics use cases while handling the movement and integration of data for its users. It's a database as a service that works with Amazon as well as all the hyper scalars.
Arik and Alan discuss why companies need to validate their security. Every day CISOs face the near-impossible task of identifying their organizations’ exploitable security gaps in real-time across an ever-growing attack surface. Despite the large sums invested in a variety of security solutions, they still don’t know if their security is actually effective or what in their organization can be actively exploited.
Normalyze CTO and Co-Founder Ravi Ithal shares data security challenges in the cloud and how cloud-native containers, microservices and cloud usecases are causal factors to the widespread increase and proliferation of data.
Bob Rudis, VP Data Science for GreyNoise Intelligence talks with Mike Rothman about the state of security detection and how data science and intelligence is poised to make a difference in 2023. They also discuss why ransomware is misnamed and whether security has moved forward or backwards.
Remote.It CEO Ryo Koyama explains why the simplest way to implement zero-trust cybersecurity is to add one line of code to a TCP/IP networking stack.
Rowland Graus, head of product for Agoric, explains how decentralized blockchain applications will be built using standard JavaScript tools.
Alkira CEO Amir Khan explains why networking in the multicloud computing era requires a different approach.
CEO Alan Shreve discusses ngrok's recent $50 million Series A funding led by Lightspeed Venture Partners with participation from Coatue. With its first funding round and with the demonstrable developer adoption, ngrok is using these funds to build scale to meet the increasing demand for its simplified, API-first ingress-as-a-service platform across a variety of enterprise use cases.
TigerGraph announced new visual graph analytics and graph ML features on TigerGraph Cloud, its fully managed graph database as a service. The new offering introduces TigerGraph Insights, an intuitive visual graph analytics tool for users to search and explore meaningful business insights, and ML Workbench, a powerful Python-based framework to accelerate the development of graph-enhanced machine learning applications.
Mike Nelson, VP of IoT Security at DigiCert, speaks with Alan about DigiCert's new Digital Trust Survey.
Alex Ilgayev, a security researcher for Cycode, dives into how a vulnerability discovered in an open source Codesee tool became the latest example of why there needs to be more focus in securing software supply chains.
Loft Labs CEO Lukas Gentele explains why donating an open source DevSpace tool to the Cloud Native Computing Foundation (CNCF) will advance Kubernetes developer productivity.
Anjan Kundavaram, Chief Product Office of Precisely, joins Mike Rothman at AWS re:Invent to talk about DataOps as a whole and Precisely, a data integrity solution that works towards developing accessible and trustworthy data.
Sarwar Raza, Vice President of Managed Cloud Services at Red Hat, joins Alan Shimel at AWS re.:Invent to discuss Red Hat’s recently announced expansion of its open-source solutions are publicly available in AWS Marketplace They also talk about the rise of cloud marketplaces and why managed cloud services, in particular, are a growing priority for customers in today’s hybrid multi-cloud world.
Martin discusses Netography’s latest paper, “A Reckoning: The Massive Implications of Losing Network Visibility & Control”. Martin will outline the exact struggles enterprises face when defending the Atomized Network and how they can change their approach to see the users, applications, data, and devices they have, what they are doing, and what’s happening to them.
In their last show of 2022, Mike and Mitch do a year-end retrospective, highlighting the major trends and discussing what's in store for 2023. They even worked in a Star Wars reference, as 2022 had a definite "Empire Strikes Back" feel. Happy holidays and the crew will be back in 2023.
Matt Butcher, Co-founder and CEO of Fermyon, joins Mitch Ashley at AWS re:Invent to discuss how Fermyon is pioneering cloud computing with the first cloud-native WebAssembly SaaS that lets developers build better microservices faster.
Cockroach Labs announced its most comprehensive update for CockroachDB, simplifying daily life for developers and making them more efficient by reducing the amount of application logic required to operate its hyper resilient cloud native database. This brings greater capabilities to the cloud-native distributed database market to rival entrenched legacy offerings.
There are discussions in the OS community about whether it’s beneficial for the larger ecosystem to have giant corporations meddling around. OSS components are rarely ready to use out-of-the-box, so there are direct costs that incur when integrating, customizing and maintaining; this responsibility falls on the developer, including software upgrades, security updates, and technical support, which can quickly rack up significant ongoing bills. Corporate donations will be core to sustainable growth and creative individualism - not to mention securing the open source supply chain.
Mike interviews Iddo Gino, founder and CEO of Rapid (formerly RapidAPI) about the state of the API economy, the importance of curated and validated APIs as application building blocks, and what's coming in 2023.
Brian Gracely, vice president of product strategy for Solo.io, explains what service meshes such as Istio are emerging as the foundation upon which cloud-native application security will be built and maintained.
Recently appointed Ordr CEO Jim Hyman explains what cybersecurity needs to start with a thorough understanding of an ever-increasing attack surface in the age of connected devices.
Hosts Mitch Ashley and Austin Parker are joined by our panel of experts Paige Cruz (Chronosphere) and Starlight Romero (Flatiron Health) to discuss the key changes organizations need to address, as well as the social and technical challenges faced when adopting SRE principles and practices.
Courtney Nash presents the next iteration of The Void by Verica. Bringing in over 7000 new incidents the report looks at a number of incidents to find trends, including that MTTR is not a reliable metric.
In a continuation from Alan's previous discussion with Deepak, they talk about trends in the tech labor market, the increased need for responsive security measures, what's next for the operations community, and more.
Join host Mitchell Ashley and our panel of experts Lee Atchison (Atchison Technology), Ixchel Ruiz (JFrog), Shawn Jacques (Tricentis) and Kristin Jackvony (Paylocity) as they discuss why a “test everything” approach is not feasible, what are the most important tests you should be focusing on and how to test less to increase the quality of your software.
Nasuni CTO Andres Rodriguez explains why ransomware is running rampant because existing approaches to data protection are fundamentally broken at a time when the need for cybersecurity resiliency has never been greater.
EnterpriseDB announced the immediate global availability of EDB Tools and Extensions Release for PostgreSQL® 15 (EDB PG 15), which makes it easier than ever before for enterprises to deploy Postgres as their enterprise database standard. The announcement comes ahead of EDB’s next major release in Q1 2023, which will include Transparent Data Encryption (TDE), a highly requested feature that will significantly enhance security.
Cobalt announced a partnership with NTT DATA, a leading Managed Security Service Provider (MSSP) to offer stronger security to clients. The partnership expands NTT’s product and services portfolio to include Cobalt’s pentesting suite, which not only broadens Cobalt’s partner ecosystem, but also diversifies NTT’s security offerings to include PtaaS.
Hosts Alan Shimel and John Mertic are joined by Cameron Seay (E. Caroline Univ.), Misty Decker (Micro Focus) and Magie Hall (Vienna University) to provide more details about the milestones they’ve achieved , the new research study and more.
Andre Rall, Director of Cloud Security at Uptycs, joins Alan Shimel at AWS re:Invent to talk about the Uptycs platform that allows a user to get visibility into their assets and assess risks to remediate security breaches. They also talk about Uptyc’s Secret Menu promotion.
Ari Paul, Director Product Marketing at Clumio, joins Alan Shimel at AWS re:Invent to talk about Clumio’s new capabilities that will allow enterprises to protect their AWS data at any scale as well as recovering from disruptions instantly.
Evan Kaplan, CEO of InfluxData, joins Alan Shimel at AWS re:Invent to talk about InfluxData’s new InfluxDB IOx, its newest storage engine that will allow users to run unlimited time series workloads and contextualize that data across any dimension.
APIwiz CEO Rakshith Rao explains how low-code tools will be employed to democratize the management of APIs.in a way that reduces the misconfigurations that create cybersecurity challenges.
Bharat Jogi, the director of vulnerability threat research at Qualys, joins Alan Shimel at Qualys Security Conference 2022 to give an overview of Microsoft Patch Tuesdays, as well as share the most jarring CVEs released and provide an update on ProxyNotShell.
Nathan Rollings, senior director of vulnerability management at Elevate Health, joins Alan Shimel at Qualys Security Conference 2022 to discuss how the Qualys Cloud Platform can increase ROI.
Chris Harrold, developer experience program director for Ansys, explains how simulations will play a large role in improving the overall quality of application development starting with support for open source Python projects.
Theresa Lanowitz, head of cybersecurity evangelism for AT&T Business, goes through some of their 2023 predictions. She and Mike Rothman focus on edge computing use cases, and the impact on application security as all of this code increases the attack surface, regardless of where it's deployed.
Shaun O'Meara, field CTO for Mirantis, explains why Docker Swarm is still gaining traction as a lighter weight container orchestration alternative to Kubernetes.
Blue.cloud COO Koray Ozcubukcu explains why software engineering as a service is gaining traction at a time when demand for DevOps engineering expertise still far exceeds the available supply.
Qualys CMO Suresh Balasubramanian joins Alan Shimel at Qualys Security Conference 2022 to discuss the significance of the event to Qualys and its customers, as well as the path the company has taken to get to where it is today.
Sumedh Thakar, CEO of Qualys, joins Alan Shimel at Qualys Security Conference 2022 to discuss many of the challenges and opportunities in a growing security market.
CTOs sit at the top of a highly technical, expensive organization. Some of them will have risen from being software developers through layers of management and leadership to arrive at that point. But is that background helpful? And is it necessary?
Noname Security recently announced the launch of Noname Recon, the latest addition to the company’s API Security Platform. With Recon, customers are now able to simulate an attacker performing reconnaissance on an organization’s domains, allowing them to rapidly find and fix issues – without any integrations, installations, or implementations required.
Sune Engsig, vice president of product management for Leapwork, explains how a crisis is building because the rate at which applications are being built and patched is exceeding the ability of DevOps teams to test code prior to being deployed.
Hosts Alan Shimel and Lori Lorusso are joined by our featured guests who are maintainers of, contributors to and active voices in the Pyrsia project. Sudhindra Rao (JFrog), Steve Taylor (DeployHub), Tracy Ragan (DeployHub) and Joel Marcey (Rust Foundation).
Parag Bajaria, VP of cloud and container security at Qualys, joins Alan Shimel at Qualys Security Conference 2022 to discuss how Qualys TotalCloud will help security teams secure the entire cloud attack surface.
Eran Livne, senior director of endpoint remediation at Qualys, joins Alan Shimel at Qualys Security Conference 2022 to discuss how to operationalize cyber risk reduction with patch management.
Mike Orosz, VP of information & product security at Vertiz, joins Alan Shimel at Qualys Security Conference 2022 to discuss how security teams can get an attacker’s view of their environments.
Jason Chen, Founder & Dr. Lindsey Polley, Director for Cyber & Space Intelligence at MACH37 discuss what it takes to be the next-generation cyber product company and how their contributions to cyber security are monumental. They explore why accelerators are a stable way to grow as a startup and produce the right results, to further highlight the challenges a startup can overcome in order to achieve success.
Through their deep dive into the technical details of this vulnerability chain, SonarSource determined how an attacker can escalate to the Checkmk automation user by exploiting an authenticated arbitrary file read in NagVis. Stefan will discuss the multiple vulnerabilities that were discovered, how they can be prevented, and the risks organizations face if they have yet to address SonarSource’s recommendations.
Danielle Cook and Liz Coolman, of Fairwinds, join Alan Shimel at KubeCon to discuss the challenges of Kubernetes and how to provide a support system for developers with security, costs and compliance in mind. They also announced that Fairwinds Insights is available and there is a free trial.
Austin Parker, head of DevRel at Lightstep, joins Alan Shimel at KubeCon to discuss OpenTelemetry, one of the biggest CNCF projects.
Tim Jones, managing director of application modernization for Advanced, dives into the IT services provider's latest report tracking efforts to modernize mainframe applications.
Newly-appointed ConnectWise CTO Raghu Bongula explains how the relationship between managed service providers (MSPs) and internal IT teams is evolving as IT environments become more complex to manage and secure.
Tom Gillis, senior vice president and general manager of the Network and Advanced Security Group at VMware, explains how Project Northstar will finally unify the management of networking and cybersecurity in the multi-cloud age.
Jim Douglas, CEO at Armory, and Fernando Freire, Principal Engineer and Engineering Manager at Armory, join Alan Shimel at KubeCon to talk about the evolution of delivery platforms over the past decade, how to fit in with the environments people are using and how to leverage infrastructure that is already present.
Teleport's CMO, Michael Ferranti, fills us in on their recent report highlighting access and security challenges as infrastructure becomes more complex. As a bonus, Mike Rothman couldn't resist poking fun at Zero Trust marketing hype, so they had a good discussion regarding how Zero Trust can help and what it's good for (and what it's not).
Qualys CISO Jonathan Trull joins Alan Shimel at Qualys Security Conference 2022 to discuss the priorities of security teams heading into 2023.
Dlaine Miley, senior cloud security engineer at Mercury Financial, joins Alan Shimel at Qualys Security Conference 2022 to speak about methods that drive compliance and remediation efficiency.
Cato Networks announced that it became the fastest-growing enterprise network security startup with annual recurring revenue (ARR) growing from $1 million to $100 million in just five years. What's propelled the growth and what does it say about the rest of the SASE industry? Yishay Yovel gives the details.
AppMap CEO Elizabeth Lawler explains why observability needs to shift left to ensure the best application developer experience possible.
Uma Mukkara, head of chaos engineering at Harness, joins Mitch Ashley at KubeCon to discuss the importance of chaos engineering and its increased adoption across many sectors. Uma also shares what skills are required to provide chaos engineering, and how the CNCF has provided needed support in many areas.
Payal Mehrota, senior director VMDR TruRisk at Qualys, joins Alan Shimel at Qualys Security Conference 2022 to discuss why organizations should be taking a risk-based approach to mitigating threats.
Cybrary CEO Kevin Hanes explains why organizations during uncertain economic times need to focus on upskilling the skills of the cybersecurity teams they already have.
Luos CEO Nicolas Rabault explains how DevOps workflows will be consistently applied across edge computing platforms at a time when IT is becoming more distributed than ever.
Viktor Gamov, developer advocate for Kong, joins Mitch Ashley at KubeCon to talk about API security and why it is such a big deal today, as well as announcements regarding Kong Gateway 3.0 and the services it provides.
Shailesh Athalye, SVP of product management at Qualys, joins Alan Shimel at Qualys Security Conference 2022 to discuss Qualys’ Unified Cloud Platform. Alan and Shailesh also touch on the biggest challenges faced by security teams today.
Techstrong.tv features industry thought leaders, experts and practitioners in DevOps, cloud-native, cybersecurity and digital transformation sharing news and commentary, analyst research, in-studio and on-site interviews, topical video series and industry and Techstrong conferences from around the world. Techstrong.TV features both editorial and sponsored content.
Jaret Chiles, global vice president of client services for DoIT, explains why understanding how to measure the return on investment (ROI) in cloud computing, is more critical than ever as the types of workloads being deployed become more expensive to deploy and manage.
Dilip Bachwani, CTO and VP of Cloud Platform at Qualys, joins Alan Shimel at Qualys Security Conference 2022 to discuss the challenges of container security and lifecycle management.
Anant Adya, executive vice president for cloud, infrastructure and security (CIS) services at Infosys, explain what makes cloud security so challenging in the multi-cloud computing era.
API security is one of the biggest challenges facing CIOs/CISOs today. Traditional API security solutions have so far been siloed and fragmented, leaving CIOs/CISOs with a choice of multiple pain points and patchworked solutions.
Wib is launching on Nov 8, has the only solution to provide complete visibility across the entire API landscape, from code to production, helping to give software developers, cyber defenders and CIOs/CISOs full control of the complete API domain.
Flosum, a leading provider of end-to-end secure DevSecOps, data management, data protection and security automation platforms built on Salesforce, announced the availability of Flosum Winter Release 2023. Flosum Winter Release 2023 focuses on enabling organizations to secure and accelerate digital transformation by taking control of the full development lifecycle.
Brian Penn, manager of security posture at Aflac, joins Alan Shimel at Qualys Security Conference 2022 to discuss how he’s reducing cyber risk with BCI and VMDR.
Roi Ravhon, CEO & Co-Founder of Finout, joins Alan Shimel at KubeCon to discuss Finout, a FinOps company that helps companies see entire breakdowns of cloud costs and determine where to better allocate that money.
Vijoy Pandey, VP of emerging technologies and incubation at Cisco, joins Alan Shimel at KubeCon to discuss how Cisco’s newest products ensure security, performance, scalability and availability.
The Modern IT Outage: Costs, Causes and Cures," found that the average cost of an IT Outage is $12,913 per minute. Produced in conjunction with Enterprise Management Associates (EMA), the report found a correlation between IT outage costs and the size of an organization, as businesses with more than 20,000 employees lose an average of $25,402 per minute due to outages, translating to more than $1.5 million per hour.
Larger companies should consider things such as potential revenue at risk, number of people who could be impacted, and the possibility of associated fees, penalties or litigation.
LeanIX CEO André Christ explains the critical role enterprise architects and DevOps engineers need to play to reduce cloud computing costs.
Matt Richards, chief marketing officer for Aqua Security, explains how eBPF in the Linux kernel will advance the state of cloud-native cybersecurity.
Mike interviews Dev Nag, CEO of CtrlStack to discuss their emergence from stealth and how they are going beyond Observability data to more effectively discover the root cause of application issues.
Software developer productivity is near or at the top of most engineering managers' priority lists, partly due to current and future economic uncertainty and partly due to difficulties in hiring developer talent. Chronosphere's Co-Founder and CEO, Martin Mao, shares how observability can bring new insights into cloud-native applications, observability-driven development and resiliency through break-testing and more.
Asanka Abeysinghe, chief technology evangelist at WSO2, joins Alan Shimel at KubeCon to discuss the company’s three areas of expertise: API management, integration and identity/access management.
DeepFactor CEO Kiran Kamity joins Alan Shimel at KubeCon to discuss the company’s goal of incorporating security into software development life cycles.
Roy is coming back on TechStrong to talk about the historical misalignment of IT and operations teams responsible for physical devices in the enterprise.
Otto Contreras, deputy CIO for the City of Miami, talks about how IT teams are becoming more agile than ever.
Running Kubernetes at scale, meeting security and compliance requirements, and deploying Kubernetes clusters spanning on-premise or multiple public clouds can introduce an increasing amount of complexity. Sebastian talks about how these are just a few pitfalls when it comes to Kubernetes cluster management.
Armory — in coordination with Gartner peer insights — released new reports about the state of deployment practices. They surveyed 400 engineering and operations professionals to better understand their current approach to deployment, efforts to improve speed-to-market and common pain points.
Jeffrey discusses the latest capabilities – Automated service suggestions, Service Request Playbook, and Workplace Scenario Planning – built on the ServiceNow platform. These new capabilities accelerate automation of complex, often offline processes for enterprises and government agencies, helping to improve service operations as well as customer, employee, and constituent experiences.
Every software engineering manager struggles with two nagging questions: finding better ways to understand the work happening in their development pipelines and using metrics that provide useful and meaningful insights into how dev teams are doing. Jeremy Freeman, Co-Founder and CTO of Allstacks, discusses solving bottlenecks, making sure work isn't unnecessarily in a wait state, and determining what metrics are more than just how many builds are performed or code pushes to production occur.
Patrick Bergstrom, CTO of StormForge, and Yasmin Rajabi, VP of product management at StormForge, join Alan Shimel at KubeCon to discuss day two Kubernetes operations. Specifically, Yasmin and Patrick dive into optimization and how enterprises can leverage machine learning to their advantage.
Shanni Prutchi, a security consultant with Bishop Fox, explains why organizations need to embrace cybersecurity by design.
CyberGRX CISO Dave Stapleton discusses the level of stress cybersecurity teams are under and what should be done to alleviate it as cyberattacks increase in volume and sophistication.
Dr. Stephen Magill discusses the key findings from Sonatype's 8th Annual State of the Software Supply Chain Report. Over the past year, Sonatype studied dependency update patterns for thousands of open source projects, analyzed hundreds of survey responses, and took a critical look at commonly-held beliefs about effectively managing security risk.
Josh talks about SolarWinds Observability, which is a fully-integrated, cloud-native SaaS offering that provides unified and comprehensive visibility for today's modern, distributed, hybrid and multi-cloud environments. The new SaaS platform blends SolarWinds observability solutions across network, infrastructure, systems, application, database, digital experience, and log monitoring in one end-to-end solution across private and public clouds with single-pane-of-glass visibility.
Florian Malecki, chief marketing officer for Arcserve, explains why the need to modernize data protection has become so much more pressing in a ransomware era where there is no real defense against these types of cyberattacks.
nOps CEO JT Giri explains how financial operations (FinOps) is being automatically implemented using machine learning algorithms to rein in cloud computing costs that have spun out of control.
TigerGraph announced its commitment to support openCypher, a popular query language for building graph database applications. Developers can now access a limited preview translation tool to learn how openCypher support will appear in TigerGraph’s flagship graph query language, GSQL.
What do AlmaLinux, Debian, Fedora, openSUSE, Red Hat, Rocky Linux, SUSE and Ubuntu have in common? They are all Linux distributions, sure, but wait--there's more! Now, thanks to Open Mainframe Project’s Linux Distributions Working Group, they all work closely together toward a common goal: To oversee the health and maintenance of the s390x port of various Linux distributions to ensure that the s390x remains a supported mainframe architecture for them all. The working group will collaborate on major concerns and achievements that the distributions share with respect to the s390x mainframe architecture and work together to support new contributors and make sure they have everything they need to continue building on, supporting and maintaining this important infrastructure.
In this episode, Hosts Alan Shimel and John Mertic are joined by working group members Elizabeth K. Joseph (IBM), Sarah Julia Kriesch (Accenture), Dr. Ulrich Weigand (IBM) and Jack Aboutboul (AlmaLinux) to learn more about why this port was needed, how it’s going and what the future holds for Linux on the mainframe.
Amit Govrin, CEO of Kubiya, and Shaked Askayo, CTO of Kubiya, join Alan Shimel at KubeCon to discuss how they’ve created the world's first virtual assistant for DevOps, and how it will facilitate a brand new experience for end users in the world of self-service DevOps.
David DeSanto, VP of product at GitLab, joins Alan Shimel at KubeCon to discuss how GitLab provides an end-to-end software development experience. David also speaks about GitLab’s newest software supply chain security initiative, which focuses on proactive security remediations and regulatory compliance functionality.
CSA, in partnership with BigID, surveyed 1,500+ IT and security professionals to better understand the industry’s knowledge, attitudes and opinions regarding data security in the cloud and found that organizations are struggling to track and secure sensitive data in the cloud.
Rod talks about Aviatrix's new solution - CostIQ, which enables organizations to institute detailed network usage-based, multi-cloud chargebacks, accurately billing individual cost centers for real use. Furthermore CostIQ allows IT planners and cloud architects to effortlessly analyze expense usage trends identifying and reallocate underutilized resources.
Veracode announced the enhancement of its Continuous Software Security Platform with substantial improvements to its integrated developer experience. New features include extended integrations to support software composition analysis (SCA), a software bill of materials (SBOM) Application Programming Interface (API), and additional language and framework support for static analysis, further enhancing developers’ ability to secure software in the environments where they work.
Tim Perkins, director of IT hosting and hybrid services for Walgreens, talks about why reliability concerns are driving more IT management platforms into the cloud.
Igor Volovich, vice president of compliance strategy for Qmulos, explains why existing approaches toward achieving and maintaining compliance are fundamentally broken in way that adversely impacts everything from cybersecurity to business risk management.
Andrew Martin joins Mitch Ashley at KubeCon to discuss his company, Control Plane, which focuses on cloud-native security, as well as his new book, Hacking Kubernetes.
Abhishek Saxena, CEO and co-founder of unSkript, joins Alan Shimel at KubeCon to discuss how the CloudOps platform is separating user security from automation security.
Decodable CEO Eric Sammer explains how the rise of open source streaming data analytics platforms are driving modern approaches to DataOps that are fueling digital business transformations.
Remediant CEO Raj Dodhiawala explains why inherent remote desktop protocol (RDP) weaknesses require a different cybersecurity approach to prevent malware from moving laterally across an extended enterprise.
Frank Liu, director of operations & ML architect at Zilliz, discusses $60M raised for open source Milvus vector database.
Darko talks about why starting a new project with microservices may be tempting but that's almost never a good idea. The problem resides in that nailing the design is absolutely a must for microservices, and the first design is almost never the most optimal. We must try and discard different designs to understand the user and business needs. Microservices only create extra work with no benefits at this early stage.
Shahar Fogel joins Mitch Ashley at KubeCon to discuss Rookout, which is a developer-first observability platform. Mitch and Shahar talk about observability from a developer’s perspective throughout the software process.
Akeyless CEO Oded Hareven explains what makes secrets management so stubbornly difficult despite the rise of best DevSecOps processes after raising $65 million to solve the cybersecurity problem.
Dustin Ingram, a software engineer on the Open Source Security Team at Google, details how open source software is becoming more secure thanks to better DevSecOps practices in the wake of the executive order issued by the Biden administration.
Margaret Lee, vice president and general manager for digital services and operations management at BMC, explains how DevOps and IT service management are finally starting to converge under a larger ServiceOps umbrella.
John McKenny, senior vice president and general manager for Intelligent Z Optimization and Transformation for BMC, explains how application modernization is continuously evolving.
Tricentis announced the launch of Tricentis NeoLoad 9.0, and new products Tricentis Test Management for Jira and Tricentis Test Automation for Salesforce. The solutions expand the company’s market leading capabilities in continuous performance testing, test management, and test automation aimed at improving application quality and delivery time for better business-critical outcomes.
Now that security products are becoming increasingly automated, and the teams are increasingly integrated, the fly in the ointment is the data team. Karthik Ranganathan describes the next generation of the dev pipeline - DevDataSecOps.
Chris ‘Tito’ Sestito is Co-Founder & CEO of HiddenLayer, a cybersecurity start-up dedicated to preventing adversarial machine learning attacks. Tito discusses the 10/25 launch of the new HiddenLayer MLSec Platform as well as security issues affecting AI and the lack of technology offerings currently available to address these issues -- that is where HiddenLayer comes in.
In this episode, our hosts Jodi Ashley (Techstrong) and Tracy Ragan (DeployHub) are joined by Alaina Percival, a technology powerhouse who pivoted her young career by teaching herself to code shortly after she moved to Silicon Valley. Now, Alaina is the CEO of Women Who Code and is "helping diverse professionals increase their wealth and influence around the globe." If you are interested in learning how to build a diverse technical community, how to take a chance and pivot your own career (or both!) don't miss this interview with a true tech visionary.
Ming Gong, newly appointed vice president of product management for Blameless, dives into how the role of the SRE is evolving as IT organizations seek to bridge the divide between DevOps and IT service management (ITSM).
Dan Lohrmann, field CISO for Presidio, takes a victory lap for his correctly predicted view of increasing regulation for incident reporting. He then chats with Mike about other markets where we can expect tighter regulation and what organizations should do to prepare.
Mitch and Mike discuss what they are thankful about as we enter the home stretch of 2022 and start looking forward to 2023.
Frank Kim and Mike discuss when and how smaller companies should build a security program and hire dedicated security people. They also talk about how to decide the appropriate level of security tooling for a company.
Utpal Bhatt, CMO of Tigera, and Fahad Rizqi, vice president of sales at Tigera, join Alan Shimel at KubeCon to discuss Project Calico, a solution for open-source networking and cloud-native security.
Jeffrey Martin, vice president of product for Mend, explains why so much more code should just be automatically patched to remediate vulnerabilities.
Hemanth and Alan talk about how IBM released 3 AI libraries for developers to be able to incorporate into their apps with more to come.
Sonny Shi, principal engineer at Stacklet, and Jorge Castro, community manager at Stacklet, join Alan Shimel at KubeCon to discuss cloud custodian, a rules engine for cloud that ensures a compliant, secure and cost-efficient infrastructure.
Allison Cramer, vice president of digital services and operations management for
BMC, explains how service operations is evolving in the age of digital business
transformation.
Graymatter.io CEO Chris Holmes explains why application networking will require a lot more than service mesh to be achieved.
Mike Malone, founder and CEO of Smallstep, joins Mitch Ashley at KubeCon to discuss how Smallstep is giving people the tools to customize and integrate into their environments in an intuitive, user-friendly way.
Mike and Mitch discuss the implosion of FTX as a means to reinforce the importance of trust. They discuss where trust fits into the DevOps process (code signing) and also how zero trust is really about ensuring trust more frequently.
Sergei Egorov, co-founder and CEO of Atomicjar, joins Mitch Ashley at KubeCon to speak about the devtools company that builds soft services for open source projects. Mitch and Sergei also discuss why Atomicjar is the go-to integration testing solution for developers right now.
Mike talks to Scott Craig from Hyland Software about how to minimize the overhead of compliance reporting by leveraging machine learning and other recent innovations. They also discuss some differences in the compliance process between industries.
NetWitness Field CTO Ben Smith explains why cybersecurity teams need to focus more on enablers rather than indicators of compromise to prevent security breaches.
Brian Fox, Sonatype CTO, discusses the eighth annual State of the Software Supply Chain report. This year's report focuses on the ongoing growth of the software supply chain, as well as persistent security concerns, insights on choosing the best dependencies for your projects, developer behavior and recommendations, and more. Download the report at https://sonatype.com.
Deepthi Sigireddi, engineer at PlanetScale and lead maintainer for Vitess, joins Alan Shimel at KubeCon to discuss how the scalable MySQL platform and CNCF graduated project are facilitating improved experiences for end users.
Scott Lowe, principal technical content engineer at Pulumi, joins Alan Shimel at KubeCon to discuss its universal infrastructure-as-code solution, and how its core engine is both language agnostic and platform agnostic.
Austin Parker of Lightstep, Andreas Grabner of Dynatrace and Ana Margarita Medina of Lightstep join Mitch Ashley for a KubeCon edition of the SRE Show. The panel discusses open telemetry, observability into developer environments and much more.
SirionLabs co-founder Kanti Prabha explains what it takes to successfully apply artificial intelligence (AI) across business and IT operations.
Tobias Träbing, technical director for EMEA for XM Cyber, dives into how cyberattack patterns against applications are becoming more sophisticated.
Harish Grama, global cloud practice leader for Kyndryl, explains what makes cloud computing in hybrid IT environments more challenging to manage than ever.
Jim Bugwadia, CEO and co-founder of Nirmata, joins Alan Shimel at KubeCon to discuss Caverno, a policy engine design for Kubernetes. Alan and Jim also dive into Nirmata’s focus on cluster, policy and workload management, as well as how it has driven the company to its current state.
Jeff Cobb, head of product at Chronosphere, joins Mitch Ashley at KubeCon to discuss the cloud-native observability company, which solves observability problems by focusing on the availability and reliability of digital delivery systems.
Liz Rice, chief open source officer for Isovalent, explains how big an impact eBPF is about to have on scaling both Linux and Windows platforms.
Derek Ashmore, application transformation principal for Asperitas, explains what makes application modernization so challenging in the age of cloud computing.
Patrick Sheehan, chief revenue officer for Phylum, explains how to secure software supply chains using open source software in real time.
Dr. May Wang discusses ML/AI adoption within the field of cybersecurity, how it has impacted her day-to-day, and what role she plays in advancing its utility within the industry as threats constantly evolve. She belongs to the 1% of female leaders in c-suite roles within the cybersecurity field and has over 20 years of experience in the industry.
At Flytxt, Dr. Vinod Vasudevan is helping some of the biggest brands in the world like Samsung, Nokia, and Oracle amongst others to maximize their customer lifetime value. Today, the company has the most well-trained AI to measure CLV.
Unito completed $20 million in funding led by CDPQ with participation from new investors Rainfall Ventures and Investissement Québec. The new funding will allow Unito to solidify its growing market traction. Unito integrates disparate SaaS applications like Asana, GitHub, Google Sheets, Jira, Salesforce, and Trello, enabling workflows that cross the boundaries of tools, teams, and organizations.
For the second episode of The State of Pipelines: Past, Present & Future, our featured guests are maintainers, contributors, and active voices in the Jenkins project and CD Foundation. This year Jenkins celebrates its 18 birthday! As the leading open source automation server, Jenkins provides hundreds of plugins to support building, deploying, and automating any project. Hosts Alan Shimel and Lori Lorusso are joined by Mark Waite (CloudBees) and Darin Pope (CloudBees) as we dive into various Jenkins topics including, modernizing the UI, security, community contributions, and more.
Migrating workloads from on-premises infrastructure into the cloud is a long and tedious process, and if not done properly, it could result in high-risk situations. Having a strategic testing plan is key to mitigate the risk of losing critical functionalities in your databases and applications as you move to the cloud. Hosts Alan Shimel and Mitch Ashley are joined by a panel of experts, Jonathan Boswell (Tricentis), Tracy Ragan (DeployHub), and Mike Rothman (Techstrong Research) to talk about how to develop an effective cloud testing strategy, the different types of testing you need to consider when shifting to the cloud, how to shorten your testing cycle and how cloud testing can help accelerate your digital transformation.
Daniel Thanos, vice president of Arctic Wolf Labs, explains why multifactor authentication (MFA) fatigue has already set in despite best cybersecurity intentions.
Ravid Circus, chief product officer for Seemplicity, explains why in the current challenging economic climate will require cybersecurity teams to change the way they collaborate.
Mike and Mitch discuss the recent Dropbox breach and also what Mitch saw at the recent KubeCon show. They hit on some trends for the upcoming Predict 2023 conference, and also announced that the Research team will be at AWS re:Invent in late November.
GrammaTech's newest product, CodeSentry, is a supply chain security platform (SaaS and On-prem) which can scan production applications (binaries and beyond) to produce SBOMs, identify associated open source vulnerabilities, license information and a lot more.
ActiveState releases ActiveState Artifact Repository to enable organizations to securely build Python dependencies directly from source code. Rather than developers importing prebuilt Python dependencies from a public repository like the Python Package Index (PyPI), or from some internal build process that may not be secured from supply chain attacks, all Python artifacts are created via ActiveState’s secure build service and stored directly in their own private ActiveState Artifact Repository for distribution, creating a closed-loop environment that maximizes supply chain security.
Ana Jiménez Santamaría, program manager for open source program offices (OSPO) and the TODO Group within the Linux Foundation, explains how best practices for setting up an OSPO are shared.
In advance of SuriCon event, Stamus Networks CTO Éric Leblond and Peter Manev, chief strategy officer, discuss why a more introductory “Network Security using Suricata" book was needed to help make the open source intrusion detection/intrusion prevention (IDS/IPS) platform more accessible.
Newly appointed Percona CEO Ann Schlemmer explains what it takes to deploy and manage open source databases in the enterprise.
Thrive CTO Michael Gray explains what it really takes to implement a zero-trust cybersecurity model across what has become highly distributed computing environments.
Sean Isom, engineering manager for Adobe, explains what types of applications currently lend themselves to being built using WebAssembly (Wasm)
Scott Trevino, senior vice president of cybersecurity for TRIMEDX, explains why the connected hospital has become such a tempting threat for cybercriminals.
Craig Box, vice president of open source and community for ARMO, explains how an open source Kubescape project is advancing Kubernetes cybersecurity.
Ganesh Pai, Founder and CEO of Uptycs and Mike discuss innovative ways to capture telemetry from endpoints all the way to cloud platforms and the role of streaming analytics in improving security detection.
BMC CTO Ram Chakravarti explains how organizations can keep up with the pace of IT innovation.
Daniela Barbosa, general manager for the Hyperledger Foundation, explains why the time for open source private blockchain platforms has arrived.
Anonos discusses it has raised $50 million in new growth financing to deliver data privacy technology with 100% accuracy and utility to data -driven enterprises. The company will use the growth funding to scale customer success and expand partnerships, sales and marketing for its Data Embassy® software platform, which powers secure data processing in untrusted environments with cleartext accuracy and speed for faster insights to achieve enterprise goals.
The scary reality is: cybersecurity is no longer just a focus for defenders, but for society at large. Rick McElroy of VMware speaks to the various ways cyberattacks are evolving - for example, two-thirds of defenders witnessed a deepfake attack over the past year - and how to combat them.
OccamSec CEO Mark Stamford explains why securing software supply chains will not be an easy fix any time soon given all the time and effort that will be needed to address a raft of cybersecurity technology issues and cultural inertia within application development teams.
Codenotary CTO Dennis Zimmer explains why there is a need for an open source immutable database that as an alternative to blockchain platforms will better secure software supply chains.
Cloudflare will launch Turnstile, a new API that any site owner can use to replace CAPTCHAs on their site, whether or not they use Cloudflare already. Turnstile is a smarter, invisible CAPTCHA alternative. The solution automatically chooses from a rotating suite of browser challenges that work behind the scenes, looking for signals there is a human user. With this technology, Cloudflare reduced their own use of CAPTCHA by 91% .
Tim Serewicz, training program director for the Linux Foundation, explains how the consortium is addressing a chronic open source software skills shortage.
Ross Mauri, GM for IBM Z at IBM, explains why mainframes provide a more climate-friendly approach to reducing the total cost of IT.
From the board level down, companies know that AI is an urgent competitive necessity. But despite promises to redefine every industry, many companies struggle to get value out of AI. Underlying this struggle are a few core challenges: scale, production, and expertise. Robert to unpack the essential infrastructure needed to make this happen and why unified platforms, like Ray and Anyscale, are critical.
Chad McDonald, chief of staff and CISO for Radiant Logic, explains how an economic downturn will make maintaining cybersecurity even more challenging as staff reductions increase insider threats.
Erez Barak, general manager and vice president of engineering for Sumo Logic, explains why the key to reliability is observability in modern DevOps environments.
The shift left movement is nothing new. DevSecOps have been conducting security tests earlier in the development process for years – but have headlines of successful attacks slowed down? The problem is this - the notion of shifting left is dependent on a standard linear development process. In reality, development is anything but linear. Effective DevSecOps requires testing in both staging and production environments, particularly with attackers increasingly targeting unknown, forgotten, and neglected assets. There are advantages and to implementing both a shift left and right approach. Testing in development is important, but isn't a silver bullet and it's also critical to test in production. Shifting everything left, and acting like that fixes everything, is a mistake.
FireMon, the leading network security policy management company that brings visibility, control, agility, and automation to enterprise cloud and hybrid network infrastructure, has appointed Lumeta GM and VP Justin Stouder as its new CTO.
Hilary Carter, vice president of research for the Linux Foundation, explains why the consortium wants organizations to share their open source software adoption stories.
Gab Columbro explains why Linux Foundation is creating a division dedicated to addressing European open source issues.
Octopus SVP, of Worldwide Revenue, Harsh Sabikhi will share the latest company events and announcements, including several new product enhancements. For example, the company recently introduced ServiceNow Change Management integration and early access to its DevOps Insights for DORA metrics.
Thomas Steenbergen, head of the open source program office (OSPO) for EPAM Systems, explains why proactively managing open source software licenses and contributions is crucial.
SCANOSS CEO Alan Facey explains how software bill of materials (SBOMs) will be employed to better ensure application security.
VS Joshi, global head of product and solutions for Digitate, explains how automation can actually help identify IT projects that are likely to fail sooner.
Enterprise adoption of Service Level Objectives (SLOs) is increasing as companies seek to do more with less. Early player in the field Nobl9, has seen an uptick of interest and is here to give an update.
Codacy CEO Jaime Jorge explains why there is a critical need for a lot more DevOps intelligence to accelerate application development and deployment.
Mike and Mitch do a KubeCon preview this week talking about the maturity of the open source movement and what to look for at the conference. The research team also plugs Predict 23 and discusses a recent post that Mitch wrote about the transformation of observability.
Founded in 2004, David Hustace launched The OpenNMS Group after seeking a better way to take care of carrier and enterprise clients as proprietary solutions were expensive, inflexible and hard to deploy. In June 2022, The OpenNMS Group launched the 30th release of its Horizon technology.
Marcos Figueiredo, global offering manager for Fujitsu, talks about how the Japanese conglomerate is contributing to the open source Kubernetes community to make data management simpler.
Dr. Ibrahim Haddad, vice president of strategic programs for AI and data at Linux Foundation, explains why the newly established PyTorch Foundation will advance artificial intelligence.
Shift left has more than its fair share of admirers and advocates, as DevOps and DevSecOps initiatives aim to move responsibility for building and securing applications as early (or as far left) in the development life cycle as possible. But what about its more traditional (and much maligned) cousin, shift right? Shift right, or testing in production, was once taboo and is still discouraged by many. But testing in production is becoming a more common occurrence. The main goal of shift right testing is to spot and correct any issues that may not have been detected during the preceding development process. So, why does it have a bad reputation? Hosts Alan Shimel and Mitch Ashley are joined by Chris Riley (HubSpot), Nora Jones (Jeli) Paul Bruce (Tricentis) and Shamim Ahmed (Broadcom) as they debunk the myths of testing in production and discuss why it is important for your business. Join us to learn the truth about shift right testing best practices and trends for maintaining system integrity.
Cost capitalization of software development — the process of spreading out the costs of developing software — has become an essential practice for today’s enterprises. However, for many engineers, tracking and reporting time spent on software development is a headache — tedious, time-consuming work that slows them down in their efforts to create new products. This is why Jellyfish is taking the lead and pioneering the DevFinOps sector with their new product, Jellyfish DevFinOps, specifically made to address the issues of cost capitalization.
Deepak speaks with Alan about the tech labor market, the increased need for responsive security measures, and what's next for the operations community.
Cloud native API company Kong Inc. is unveiling a slew of new performance, security, and extensibility features, as well as new Kong Incubator projects and updates to its partner ecosystem with companies like AWS and Red Hat. VP of Product Reza Shafii discusses how the latest features, spanning Kong’s entire portfolio, will help developers streamline their workflows, enable businesses to modernize API strategies, and ultimately improve the end experience for customers.
groundcover CEO Shahar Azulay explains how eBPF in the kernel of operating systems will be employed to transform application performance management (APM) in the Kubernetes era.
James talks about Virtuoso's NoCode testing automation, which can lead to greater efficiencies, reduced risk, more control, and therefore, a greater chance of success.