Moving from academic research to industry is non-trivial
Moving from academic research to industry is non-trivial
![](https://cdn.prod.website-files.com/5fec9210c1841a6c20c6ce81/6022b6b8325498326a6f81dc_5fc5e5a9a3ed4149d3f5300b_PodCast-Icon.webp)
![](https://cdn.prod.website-files.com/5fec9210c1841a6c20c6ce81/6022b6b8325498326a6f81dc_5fc5e5a9a3ed4149d3f5300b_PodCast-Icon.webp)
I was recently interviewed for the Silver Bullet podcast, hosted by Gary McGraw where I discussed the advantages of industry over academic research, why it was non-trivial to start a business in Europe and where the Application Security industry is moving towards in the future.
While it was never my intention to start a business, I did because I saw too many companies struggling with the same problem; writing secure code is a challenge for most developers. We have an entire industry focused on finding security problems in code, and these problems are just piling up.
There are very few solutions that are actually focused on efficiently helping organizations and their development team that struggle with fixing the problems found, and even less on trying to prevent more problems being introduced in code. More and more, organizations are becoming aware of this vicious cycle and are realizing that their development team need to be trained on writing secure code from the beginning and they need to be equipped with the tools and processes to enable them.
If you want to know more about how Gary McGraw and myself see the industry moving forward, check out the the Silver Bullet podcast!
Show 139: Matias Madou discusses secure development training and software security testing research
https://www.synopsys.com/software-integrity/resources/podcasts/show-139.html
Resources to get you started
Trust Agent by Secure Code Warrior
Discover SCW Trust Agent, an innovative solution designed to enhance security by aligning developer secure code knowledge and skills with the work they commit. It provides comprehensive visibility and controls across an organization's entire code repository, analyzing each commit against developers' secure code profiles. With SCW Trust Agent, organizations can strengthen their security posture, optimize development lifecycles, and scale developer-driven security.
Resources to get you started
Women in Security are Winning: How the AWSN is Setting Up a New Generation of Security Superwomen
Secure-by-Design is the latest initiative on everyone’s lips, and the Australian government, collaborating with CISA at the highest levels of global governance, is guiding a higher standard of software quality and security from vendors.
Women in Security are Winning: How the AWSN is Setting Up a New Generation of Security Superwomen
Secure-by-Design is the latest initiative on everyone’s lips, and the Australian government, collaborating with CISA at the highest levels of global governance, is guiding a higher standard of software quality and security from vendors.
SCW Trust Agent - Visibility and Control to Scale Developer Driven Security
SCW Trust Agent, introduced by Secure Code Warrior, offers security leaders the visibility and control needed to scale developer-driven security within organizations. By connecting to code repositories, it assesses code commit metadata, inspects developers, programming languages used, and shipment timestamps to determine developers' security knowledge.
Moving from academic research to industry is non-trivial
![](https://cdn.prod.website-files.com/5fec9210c1841a6c20c6ce81/6022b6b8325498326a6f81dc_5fc5e5a9a3ed4149d3f5300b_PodCast-Icon.webp)
I was recently interviewed for the Silver Bullet podcast, hosted by Gary McGraw where I discussed the advantages of industry over academic research, why it was non-trivial to start a business in Europe and where the Application Security industry is moving towards in the future.
While it was never my intention to start a business, I did because I saw too many companies struggling with the same problem; writing secure code is a challenge for most developers. We have an entire industry focused on finding security problems in code, and these problems are just piling up.
There are very few solutions that are actually focused on efficiently helping organizations and their development team that struggle with fixing the problems found, and even less on trying to prevent more problems being introduced in code. More and more, organizations are becoming aware of this vicious cycle and are realizing that their development team need to be trained on writing secure code from the beginning and they need to be equipped with the tools and processes to enable them.
If you want to know more about how Gary McGraw and myself see the industry moving forward, check out the the Silver Bullet podcast!
Show 139: Matias Madou discusses secure development training and software security testing research
https://www.synopsys.com/software-integrity/resources/podcasts/show-139.html
Resources to get you started
Women in Security are Winning: How the AWSN is Setting Up a New Generation of Security Superwomen
Secure-by-Design is the latest initiative on everyone’s lips, and the Australian government, collaborating with CISA at the highest levels of global governance, is guiding a higher standard of software quality and security from vendors.
SCW Trust Agent - Visibility and Control to Scale Developer Driven Security
SCW Trust Agent, introduced by Secure Code Warrior, offers security leaders the visibility and control needed to scale developer-driven security within organizations. By connecting to code repositories, it assesses code commit metadata, inspects developers, programming languages used, and shipment timestamps to determine developers' security knowledge.
Trust Agent by Secure Code Warrior
Discover SCW Trust Agent, an innovative solution designed to enhance security by aligning developer secure code knowledge and skills with the work they commit. It provides comprehensive visibility and controls across an organization's entire code repository, analyzing each commit against developers' secure code profiles. With SCW Trust Agent, organizations can strengthen their security posture, optimize development lifecycles, and scale developer-driven security.