How to stay current in AppSec
There is countless ways to keep up with what is happening within the Application Security Space. If you want to stay plugged in, I would suggest you go to local security meetups, listen to security related podcasts and utilize Twitter.
Security Meetups
Amongst all the ways to keep up I keep up with is going on in the AppSec/InfoSec, my favorite is in-person meetups. Since I am based in Atlanta, I go to DC404, OWASP Atlanta, ATL2600 and sometimes the ISACA Atlanta.
Make sure to also sign up for their respective listservs!
Podcasts
Also I am a big fan of podcasts. Here are a few favorites of mine:
- Software Engineering Daily: Really great 1 hour in-depth interviews that touch on the last software tech trends & technologies in Software Engineering. I tend to pick and choose based on topics I either am interested in or want to learn more about
- SANS’ ISC StormCast: Hand down my favorite, it is daily update on information security news that is only ~5 minutes
- Defensive Security Podcast: A great ~1 hour weekly roundup about what happening in InfoSec
- Risky Business: another ~1 hour weekly InfoSec round up that also has good humor
Twitter is an invaluable place to get the latest information. My favorite folks to follow at the moment are @shehackspurple, @briankrebs, @armorguy, @ashleymcnamara, @k8em0, @_mwc.