Aaron Lord is a Sr. Director Analyst covering software engineering security, DevSecOps, supply chain security, API security, and vulnerability management.
Aaron's experience ranges from penetration testing web applications, performing architecture and design review, threat modeling, vulnerability management, bug bounty management, and security automation.
Vimeo, Application Security Engineer, 2 years
Workday, Application Security Engineer, 2 years
Zappos.com, Application Security Engineer, 6 years
Security of Applications and Data
Software Engineering Practices
Cybersecurity Leadership
Software Engineering Leadership
Build and Optimize Cybersecurity Programs
SANS GIAC WebApp Penetration testing
SANS SEC 540 Cloud Security and DevOps Automation
SANS SEC 560 Network Penetration Testing and Ethical Hacking
How to mitigate software supply chain risks as enterprises become more reliant on open-source components and third-party APIs.
How can software engineering leaders integrate security into the software development life cycle without stifling innovation.
How to select the right DevSecOps tools for secure software delivery.
How can software engineering leaders measure the maturity and impact of an application security program.
How can software engineering leaders improve security culture to improve secure coding practices.