How do you secure legacy apps? How do you start? Do you have a game plan? Or a framework? Where should we begin with older applications, who were not made with security in mind?

#AppSecThursday #TalkAppSecToMe

How can we prevent credential stuffing attacks on our apps? What are a couple of things we can do?

#AppSecThursday #TalkAppSecToMe

How do you handle AppSec if you have no security team? I realize this one is wide open, but there's so much to solve here!

#AppSecThursday #TalkAppSecToMe

What’s your go-to tip for educating developers about secure coding?

#AppSecThursday #TalkAppSecToMe

Share the most surprising vulnerability you've encountered in an app. Tell us a story!

#AppSecThursday #TalkAppSecToMe

What’s one lesson you learned the hard way about application security?

#AppSecThursday #TalkAppSecToMe

Developers: Describe your job in three emojis. 🤔🔒💻

#AppSecThursday #TalkAppSecToMe

What issues have you seen pop up when integrating security tooling into your CI/CD? And how did you solve them?

#AppSecThursday #TalkAppSecToMe

What’s the top priority in your application security program right now? (You can be vague to protect the innocent if you need to)

#AppSecThursday #TalkAppSecToMe

What AppSec tools are a must have in your stack? SAST? SCA? Linter? Name as many as you feel are 'must have'.

#AppSecThursday #TalkAppSecToMe