The Application Security Podcast
The Application Security Podcast is a practitioner-led show for anyone building or securing modern software—and now AI-powered applications. Hosts Chris Romeo and Robert Hurlbut talk with the people shaping application security about AI and LLM security, threat modeling, secure development, OWASP, cloud, DevSecOps, security champions, and building programs that help engineering teams move faster and safer. With more than 300 episodes, the show turns real-world experience into practical guidance for developers, architects, AppSec professionals, and security leaders.
The Application Security Podcast
Dominique Righetto -- OWASP Secure Headers
Use Left/Right to seek, Home/End to jump to start or end. Hold shift to jump forward or backward.
Dominique Righetto is an AppSec enthusiast and OWASP projects contributor. Dominique joins us to discuss the OWASP Secure Headers project. We discuss headers at a high level and then dive into all the goodies you'll find within the project, from awareness, guidance, and a test suite that can be integrated into your CI/CD pipeline to test your security headers. We hope you enjoy this conversation with... We talk about headers at a high level and then dive into all the goodies you'll find within the project, from awareness, guidance, and a test suite that can be integrated into your CI/CD pipeline to test your security headers.
You are now listening to the Application Security Podcast, brought to you by Security Journey.
About Security Journey
Hey folks, welcome to another episode of the Application Security Podcast.
→ Learn more about Security Journey
Connect with Dominique Righetto:
→ OWASP Secure Headers Project
→ OWASP Cheat Sheet Series
Mentioned in this episode:
→ OWASP Secure Headers Project
→ OWASP Cheat Sheet Series
→ OWASP Top 10
→ Venom (OVH)
→ Content-Security-Policy (MDN)
Follow the Application Security Podcast:
➜ Home
➜ X
➜ LinkedIn
➜ YouTube
➜ Instagram
➜ Facebook
Chapters:
00:00 Meet Dominique Righetto: OWASP Secure Headers
02:13 I know I've seen your name attached to various things in
04:18 Okay. I'm just poking a little fun at the history of
07:58 Someday I hope to meet one of the 3 people that
12:36 Help us understand, if you could, an example. of, I have
14:21 Yeah, let's look at one of them specifically. So I'm looking
16:27 We talked about kind of the guidance side of this. What
20:35 Then the stats project, is this— so what would a developer
24:27 I know we were at our key takeaways, but I'm going
People on this episode
Podcasts we love
Check out these other fine podcasts recommended by us, not an algorithm.
The Security Table
Izar Tarandach, Matt Coles, and Chris Romeo