Go offline with the Player FM app!
Podcasts Worth a Listen
SPONSORED


1 When Killers Realize It's Over: Raw Police Interrogation Murderer Reaction Compilation 1:22:29
Secrets Management With Doppler's Brian Vallelunga
Manage episode 414125644 series 1601195
Episode Summary
In this episode of The Secure Developer we're joined by Brian Vallelunga, Founder and CEO of Doppler, to discuss the importance of secrets management in modern application development. Brian shares his journey in creating Doppler, a secrets manager designed for developers and DevOps teams, and highlights the challenges organizations face in managing sensitive data such as API keys, database credentials, and certificates. The conversation explores best practices for secure secret storage, the need for industry-wide adoption of secrets rotation, and the potential impact of AI on the future of secrets management and identity-based authentication.
Show Notes
In this insightful episode of The Secure Developer, we sit down with Brian Vallelunga, Founder and CEO of Doppler, to dive deep into the critical topic of secrets management in modern application development. Brian shares Doppler's unique founding story, which began as a crypto machine learning marketplace but pivoted to address the pressing need for effective secrets management solutions.
Throughout the conversation, Brian and Danny explore the challenges developers and organizations face when managing sensitive data, such as API keys, database credentials, and certificates. They discuss best practices for secure secret storage, emphasizing the importance of encryption, seamless integration with developer workflows, and creating a positive developer experience.
The discussion also touches on the industry's struggle with secrets rotation and the need for standardization across providers to enable effective rotation strategies. Brian and Danny consider the potential role of compliance requirements, such as SOC 2, in driving the adoption of robust secrets management practices.
Looking to the future, the pair explores the impact of artificial intelligence on secrets management and the potential shift towards identity-based authentication. They envision a world where AI agents dynamically provision infrastructure and manage the connections between various services, with secrets managers facilitating seamless authentication.
Tune in to this engaging episode to gain valuable insights into the evolving landscape of secrets management and discover how industry leaders like Snyk and Doppler are working to secure the future of application development.
Links
- Twilio
- Stripe
- Nullify
- Vercel
- Kubernetes
- Amazon Web Services
- GitHub Copilot
- Magic
- Snyk - The Developer Security Company
Follow Us
Follow Us
167 episodes
Manage episode 414125644 series 1601195
Episode Summary
In this episode of The Secure Developer we're joined by Brian Vallelunga, Founder and CEO of Doppler, to discuss the importance of secrets management in modern application development. Brian shares his journey in creating Doppler, a secrets manager designed for developers and DevOps teams, and highlights the challenges organizations face in managing sensitive data such as API keys, database credentials, and certificates. The conversation explores best practices for secure secret storage, the need for industry-wide adoption of secrets rotation, and the potential impact of AI on the future of secrets management and identity-based authentication.
Show Notes
In this insightful episode of The Secure Developer, we sit down with Brian Vallelunga, Founder and CEO of Doppler, to dive deep into the critical topic of secrets management in modern application development. Brian shares Doppler's unique founding story, which began as a crypto machine learning marketplace but pivoted to address the pressing need for effective secrets management solutions.
Throughout the conversation, Brian and Danny explore the challenges developers and organizations face when managing sensitive data, such as API keys, database credentials, and certificates. They discuss best practices for secure secret storage, emphasizing the importance of encryption, seamless integration with developer workflows, and creating a positive developer experience.
The discussion also touches on the industry's struggle with secrets rotation and the need for standardization across providers to enable effective rotation strategies. Brian and Danny consider the potential role of compliance requirements, such as SOC 2, in driving the adoption of robust secrets management practices.
Looking to the future, the pair explores the impact of artificial intelligence on secrets management and the potential shift towards identity-based authentication. They envision a world where AI agents dynamically provision infrastructure and manage the connections between various services, with secrets managers facilitating seamless authentication.
Tune in to this engaging episode to gain valuable insights into the evolving landscape of secrets management and discover how industry leaders like Snyk and Doppler are working to secure the future of application development.
Links
- Twilio
- Stripe
- Nullify
- Vercel
- Kubernetes
- Amazon Web Services
- GitHub Copilot
- Magic
- Snyk - The Developer Security Company
Follow Us
Follow Us
167 episodes
All episodes
×
1 Open Authorization In The World Of AI With Aaron Parecki 36:07

1 The Evolution Of Platform Engineering With Massdriver CEO Cory O’Daniel 40:01

1 The Future Of API Security With FireTail’s Jeremy Snyder 38:00

1 The Case For Steward Ownership And Open Source With Melanie Rieback 44:11

1 Authentication, Authorization, And The Future Of AI Security With Alex Salazar 38:36

1 Rethinking Secure Communication With Mrinal Wadhwa 40:32

1 The Future Of Security, Privacy And Control With Wayne Chang 39:22

1 Securing And Defending Like Brazilian Jiu-Jitsu With Jeremiah Grossman 36:57

1 The Development Of Security With David Mytton 34:23

1 Securing The Future: How AI Is Transforming Vulnerability Detection With Berkay Berabi 29:45

1 Revolutionizing Coding - The Future Of AI-Driven Development With Jeff Wang 34:50

1 Implementing A DevSecOps Program For Large Organizations With David Imhoff 40:29

1 The Evolution of Snyk, The Developer Security Company, With Guy Podjarny 50:56

1 The Intersection Of Integrity And Security With Guy Rosen 43:27

1 What AI Means For Cybersecurity With Sam Curry 53:34

1 The Five Pillars Of MLSecOps With Ian Swanson 1:00:02

1 Securing Supply Chains In C++, Java, And JavaScript With Liran Tal And Roy Ram 38:08

1 Responding To A Security Incident With Rob Zuber 46:40

1 Exploring Data Security In Social Media With Roland Cloutier 50:21


1 The Future Of Software Supply Chain Security 19:52

1 Tackling Software Supply Chain Security As An Organization 33:48

1 Software Supply Chain Security - Key Terms, Players, And Projects You Need To Know About 41:02

1 What Is Software Supply Chain Security And Why It's Important 30:38


1 Building Open Source Communities With Rishiraj Sharma 35:51

1 Malicious Packages And Malicious Intent With Liran Tal 41:20


1 Secrets Management With Doppler's Brian Vallelunga 26:15

1 Unravelling Trends In Data Security With Danny Allan 36:58

1 The Crucial Role Of Consolidated Platforms In DevSecOps With John Delmare 29:10


1 Inside The Matrix Of Container Security: A Deep Dive Into Container Breakout Vulnerabilities 51:00

1 Threat Modeling In The Age Of Artificial Intelligence With Laura Bell Main 45:15

1 Generative AI, Security, And Predictions For 2024 1:06:43

1 AI, Cybersecurity, And Data Governance With Henrik Smith 45:42


1 The Evolution Of Data, AI, And Security In Tech With Tomasz Tunguz 46:13

1 The Need For Diverse Perspectives In AI Security With Dr. Christina Liaghati 36:29

1 (Rewind) The Changing Landscape Of Security With Dev Akhawe 44:14

1 SAIF - Effective Risk Management And AI Security Standards With Royal Hansen 54:24

1 AI Safety, Security, And Play With David Haber 52:12
Welcome to Player FM!
Player FM is scanning the web for high-quality podcasts for you to enjoy right now. It's the best podcast app and works on Android, iPhone, and the web. Signup to sync subscriptions across devices.