Please download one of these browsers:
Keep your browser version up-to-date for a fast, secure, web experience.
Samer Adi, IT Security Leader - CISO, Green Shield Canada; Chris Schweigert, Senior Director of Cybersecurity Operations, TrueBlue Inc.; and Hadas Cassorla, CISO, M1 Finance
Learn DevOps concepts and principles. Become a DevOps Professional. Prepare for the EXIN DevOps Professional certification exam.
Prepare for the EXIN DevOps Professional certification. Learn DevOps concepts, principles, and practice with sample exams.
In this series, Daniel and Justin take a look at some of the more advanced scripting practices. Here they will empower your scripts by taking advantage of things like Functions, Libraries, creating graphical elements, sed (Stream EDitor), gawk, and Regular Expression.
Becoming a Linux Power User is a technical skills course designed to elevate viewers to "Power User" status.
The Linux Security Techniques series introduces the viewers to the various security features found in modern Linux distributions.
Master container security in our Vulnerable Erlang course! Exploit CVE-2025-32433, deploy vulnerable Docker containers, detect threats with Sysdig Falco, and secure systems. Ideal for security professionals, DevSecOps, and pentesters.
The Linux Fundamentals for Certification learning path provides essential Linux operating system skills and prepares you for entry-level Linux certification exams. You'll master core command-line operations and fundamental system administration concepts.
Learn about types of vulnerabilities, the exploits that can occur from those vulnerabilities, and the programming practices that will help prevent exploitation in an application!
In this series, we are going to take a look at programming using the Python programming language. If you have tried to start before and just spun your wheels, then you should give it a try again.
James Kettle of PortSwigger reveals sophisticated web race condition exploits, demonstrating how attackers can manipulate state machines and create backdoors through precise timing attacks.
Trend Micro's senior threat researcher Nitesh Surana reveals critical vulnerabilities in Azure Machine Learning services, demonstrating how attackers can compromise ML workspaces.
Sean Blenkhorn from Axonius explains modern approaches to cybersecurity asset management in increasingly complex environments.
Industry experts Gary Meshell and John Gutkowski explore how financial institutions can integrate AI and cyber mesh architecture to enhance threat detection and improve security resilience.
Learn from Christophe Barel about securing supply chains, adopting shift-left strategies, and managing open-source risks. Explore frameworks for secure coding, automated security-by-design, and faster detection and remediation of supply chain attacks.
Aurélien Svevi explains how application detection and response cuts through security noise by analyzing applications in production to connect attacks with exploitable vulnerabilities.
Sean Mack shares how DevSecOps transforms security from obstacle to competitive advantage by embedding protection into development workflows, enabling teams to move faster while reducing risk through proper road maps and guardrails.
Join Randall Jackson, CISO at Income Research & Management, as we dive into building proactive cybersecurity teams, measuring what truly matters, and executing effective incident response. Learn how to strengthen compliance, improve reporting, and enhance resilience—so your organization can detect faster, respond smarter, and protect what matters most.
Bryan Rosensteel of Wiz explains how AI has collapsed the time to exploit, why siloed security fails in the cloud, and how visibility and context let defenders prioritize true risk.
Don Codling and Craig Darling examine security-by-design principles for AI, cloud and enterprise architecture, covering governance, compliance, identity security, threat modeling and strategies for building resilient technology environments.
Allan Tay of Singapore Pools makes the case for security-by-design as a leadership mandate, showing how governance, cloud accountability and responsible AI adoption protect enterprises from costly breaches.
Visagan Subburayalu, Dr. Vishal Saraswat and Amol Naik debate who owns AI-generated code security and how organizations can balance developer velocity with accountability, guardrails and human-in-the-loop controls.
Sonya Moisset of Snyk breaks down the security risks of AI-assisted engineering - from slopsquatting to weaponized agents - and shares a five-layer playbook to secure your AI-powered software development life cycle.
Denis Maligin of Chainguard examines how open-source supply chain attacks reach production environments and how zero-CVE images and software bills of materials address the Cyber Resilience Act.
Daniella Drori traces AppSec's evolution from siloed, alert-heavy scanners to context-aware security, showing how cross-scanner correlation and AI-aware tooling close the gap between what gets detected and what actually gets fixed.
Thejes Sree Satheesh Kumar and Srinivasan Sekar examine how AI agents using protocols like MCP create unmonitored toolchain attack surfaces and why traditional security models are unequipped to defend them.
Rishav Raj and Rajkumar Rathod of FIS demo VISTA, an open-source Burp Suite extension that integrates LLM reasoning into penetration testing workflows without replacing human judgment.
Ashish Kataria of Synacor examines how modern sanitization pipelines can inadvertently introduce XSS vulnerabilities through structural mutations, namespace confusion and multi-stage parser mismatches.
Venkatesh Vanjaku of CloudSEK discusses proactive measures for identifying and mitigating software supply chain risks in the modern digital ecosystem.
The transition from DevOps and CI/CD to cloud-native technologies, microservices architecture, security, and governance, and ultimately automation and artificial intelligence, necessitates a modern approach to software supply chain management.
Gaetan Labat shares cost-effective strategies for embedding security into projects, covering early visibility techniques, risk prioritization, streamlined documentation and practical acceptance procedures.
Panelists Pramod Kumar Dubey, Pradipta Patro and Lalit Trivedi discuss C-suite priorities, tool integration, and automation in DevSecOps implementation.
Sean D. Mack explores integrating security into software delivery without sacrificing speed, examining evolving threat landscapes, fostering shared security ownership models, and adopting best practices for prioritizing security findings at scale.
Jennifer Huang and Chris Rankin share insights on balancing developer productivity with security in fintech environments, addressing AI-driven shadow IT and shifting security from gatekeeper to enabler role.
Yadhu Krishna M. of CRED outlines practical frameworks for reducing software supply chain risk using SBOM-driven visibility and dependency ownership mapping that aligns security priorities with engineering workflows.
Kumar Ashwin of RedHunt Labs explains how dangling Git commits persist across platforms and expose secrets at scale, revealing a hidden risk within everyday development workflows.