Contributors

Headshot
Co-host

Chris Romeo

Chris Romeo is a leading voice and thinker in application security, threat modeling, and security champions and the CEO of Devici and General Partner at Kerr Ventures. Chris hosts the award-winning “Application Security Podcast,” “The Security Table,” and “The Threat Modeling Podcast” and is a highly rated industry speaker and trainer, featured at the RSA Conference, the AppSec Village @ DefCon, OWASP Global AppSec, ISC2 Security Congress, InfoSec World and All Day DevOps. Chris founded Security Journey, a security education company, leading to an exit in 2022. Chris was the Chief Security Advocate at Cisco, spreading security knowledge through education and champion programs. Chris has twenty-six years of security experience, holding positions across the gamut, including application security, security engineering, incident response, and various Executive roles. Chris holds the CISSP and CSSLP certifications. 

Headshot
Co-host

Izar Tarandach

Creation, development, support, and research in Secure Development Lifecycle.

My present area of focus is security development leadership for teams, driving and enabling the realization of secure development practices and methodologies.

Particular interest in Security for Agile Methodologies, Threat Modeling, Risk Assessment, Secure Design, and security in new technologies.

Headshot
Co-host

Matt Coles

Experienced security architect and security program leadership - defining and delivering security programs, processes, and secure system architecture. Expertise across the product lifecycle enabling security, privacy, and safety of complex systems with practices such as threat modeling and architecture analysis, code analysis, security testing, secure supply chain and manufacturing, and vulnerability and incident response. Strong communication skills to deliver timely and actionable information to technical and non-technical audiences. Focus on practical ("applied") security solutions founded in secure systems engineering, with the goal of proactively avoiding and mitigating security risks to support business objectives.