Security vs. QA – Who Secures Your Custom Apps?

 

Description

Security and QA are becoming more linked in modern app dev, but that connection is misunderstood in most organizations. We will be exploring how leading QA teams get involved to ensure high-security software and how App Sec pro’s leverage their QA teams. Paul Poh, a financial services CISO and currently a partner at Tixzy Consulting, will be on hand to share how he weaved security into QA and architecture practices in IT. We will also be sharing findings from the recent CAST Research Labs report on CWE compliance trends. So you can see where you stand relative to your industry.

 

Panelists:

Paul Poh

Paul Poh, Managing Partner - Tixzy Consulting

Paul Poh, CISSP, CISM, CRISC, CIPP/US, is a Managing Partner at Tixzy. He joined Tixzy as a partner in 2017 to lead the security and risk practice, where he serves as interim CISO in several client organizations. Prior to Tixzy, Paul was Chief Technology Officer for a leading venture-backed security ratings platform where he built a team to develop non-intrusive methods to detect and evaluate security issues facing any company world-wide. Prior to that Paul was head of Information Security and Software Architecture at a large account and payments processor, responsible for the protection of over a trillion dollars of managed accounts. He joined the account processor with the acquisition of a small highly successful Boston-based provider of advanced wealth management support and trade order management tools where he designed the company’s software as a service offering.

An early innovator, Paul was co-founder and partner for a managed security services provider. He fondly recalls those years where he designed a proprietary client-server solution for remote control of an open source intrusion detection appliance while simultaneously implementing a 24x7 operations plan. Paul still enjoys independent security research, and spends as much of his free time as possible, searching for security weaknesses on the Internet.

Lev Lesokhin

Lev Lesokhin, EVP, Strategy and Analytics, CAST

Lev Lesokhin is responsible for CAST's strategy, analytics, thought leadership and product marketing worldwide. He has a passion for making customers successful, building the ecosystem, and advancing the state of the art in business technology. Lev comes to CAST from SAP, where he was Director, Global SME Marketing. Prior to SAP, Lev was at the Corporate Executive Board as one of the leaders of the Applications Executive Council, where he worked with the heads of applications organizations at Fortune 1000 companies to identify best management practices.

Lev also served three years as a consultant at McKinsey & Company, dealing with issues of business strategy, IT management, metrics and outsourcing. He began his career at the MITRE Corporation before moving to the private sector, where he spent several years as a developer and project manager, and has managed large client relationships for a systems integrator. Lev holds a B.S. in Electrical Engineering from Rensselaer Polytechnic Institute, and an MBA from the MIT Sloan School of Management.

 

Watch The Recording