How can we leverage AI for more secure and efficient code and how will it impact devsecops? Ashish spoke to Michael Hanley, CSO and SVP of Engineering at GitHub, about the transformative impact of GitHub Copilot and AI on software development and security. Michael speaks about GitHub's internal use of Copilot for over three years and its role in enhancing developer satisfaction and productivity by removing mundane coding tasks. They speak about the broader implications for DevSecOps, the future of AI in coding, and strategic tips for integrating AI tools within organizations.
Guest Socials: Michael's Linkedin
Podcast Twitter - @CloudSecPod
If you want to watch videos of this LIVE STREAMED episode and past episodes - Check out our other Cloud Security Social Channels:
- Cloud Security Podcast- Youtube
- Cloud Security Newsletter
- Cloud Security BootCamp
Questions asked:
(00:00) Introduction
(02:19) A bit about Michael Hanley
(04:25) Making Security Easy for Developers
(07:17) What is GitHub Copilot?
(10:01) Whats the Future of AI for Security and Developers?
(13:36) Security Recommendations for using AI
(16:35) How is data stored in GitHub Copilot?
(17:40) How is AI impacting DevSecOps?
(21:50) The balance between Security and Innovation
(24:18) The evolution of education with AI
(27:30) Strategic Approach for CISOs implementing AI Pair Programmers
(30:08) Bridging the gap between Security and Engineering
(34:37) The Fun Questions
Resources spoken about during the episode:
https://resources.github.com/copilot-trust-center/
https://www.github.careers/careers-home
Finding Security Bugs in Google Cloud - Kat Traxler
Hacker stories from the Internet - Darknet Diaries
CSO Hall of Fame - 21 yrs in Cybersecurity: Challenges THEN & NOW
Finding and Fixing SECURITY BUGS IN GOOGLE CLOUD - Dylan Ayrey
Attacking and Defending Managed Kubernetes Clusters - Brad Geesaman
Kubernetes Runtime Threat Detection and Response - Falco, Sysdig
Study Hall - Attacking K8S Cluster Defaults!
Start here for Kubernetes Security - Magno Logan
Study Hall - Kubernetes Concepts and Architecture Explained!
Risk Analysis of Kubernetes Security - Mark Manning, Snowflake
Study Hall - What is Kubernetes & Why do you NEED TO know about it?
Kubernetes (Goat) Vulnerable by Design - Madhu Akula
CISO PERSPECTIVE SERIES: LINKEDIN CISO - Geoff Belknap
Study Hall: Honest truth behind learning Kubernetes
Building Threat Detection for your Cloud Environment
Cloud Governance using Infrastructure as Code (IaC)
Kubernetes Security Explained for those starting today! - Kelsey Hightower
Getting Infrastructure as Code (IaC) Security Culture right! - Yoni Leitersdorf
Azure Security Best Practices for Cloud Architects - John Savill
WHAT IS INFRASTRUCTURE AS CODE SECURITY? - Barak Schoster
Create your
podcast in
minutes
It is Free
Insight Story: Tech Trends Unpacked
Zero-Shot
Fast Forward by Tomorrow Unlocked: Tech past, tech future
The Unbelivable Truth - Series 1 - 26 including specials and pilot
Lex Fridman Podcast