The Application Security Podcast
The Application Security Podcast is a practitioner-led show for anyone building or securing modern software—and now AI-powered applications. Hosts Chris Romeo and Robert Hurlbut talk with the people shaping application security about AI and LLM security, threat modeling, secure development, OWASP, cloud, DevSecOps, security champions, and building programs that help engineering teams move faster and safer. With more than 300 episodes, the show turns real-world experience into practical guidance for developers, architects, AppSec professionals, and security leaders.
The Application Security Podcast
Will Ratner -- Centralized container scanning
Use Left/Right to seek, Home/End to jump to start or end. Hold shift to jump forward or backward.
Will Ratner is a software security professional with extensive experience building and implementing security solutions across a myriad of industries including banking, media, construction, and information technology. In his current role at Atlassian, Will focuses on improving the vulnerability management process by building highly scalable and automated solutions for the enterprise. Will joins us to discuss a centralized approach he built for container scanning. We explore the challenges and lessons learned, building a scalable, enterprise-grade solution, and how to build something that developers will see value in. We hope you enjoy this conversation with... We also introduce the idea of container scanning and building secure images that are then used to generate containers.
Connect with Will Ratner:
→ Atlassian
→ Docker
Mentioned in this episode:
→ Atlassian
→ Docker
→ Kubernetes
→ Snyk
→ Go
→ Slack
Follow the Application Security Podcast:
➜ Home
➜ X
➜ LinkedIn
➜ YouTube
➜ Instagram
➜ Facebook
Chapters:
00:00 Meet Will Ratner: Centralized container scanning
01:31 Yeah, and as we do that, let's turn over to Will
04:38 Very cool. And so again, we were talking about container scanning
06:59 Yeah, I love— I love that we're talking about something that's
10:12 If only everyone would start from scratch with their base image
14:53 Everything in your— is this— yeah, this whole thing is open
20:31 Yeah, that's, yeah, that's interesting. It's just, it's a, it's a
22:57 Was the, what was the amount of time, Will
29:45 So yeah, we talked a lot about tickets in this perspective
32:30 You've mentioned vulnerability funnel a couple of times, and I have
34:42 You've got great metrics, I'm guessing, coming out of that because
37:55 Will, what kind of resources would you recommend
41:12 Yeah, definitely. So, Will, thank you so much for sharing this
People on this episode
Podcasts we love
Check out these other fine podcasts recommended by us, not an algorithm.
The Security Table
Izar Tarandach, Matt Coles, and Chris Romeo