Jan. 24, 2022, 6:08 p.m. | April Wright, Alyssa Miller, Brian Boettcher, and Bryan Brake

Brakeing Down Security Podcast www.brakeingsecurity.com

Alyssa Milller (@AlyssaM_InfoSec)
April Wright (@Aprilwright)

0. Open Source issues (quick discussion, because I value your opinions, and supply chain is important in the IoT world too.)
Log4j and OSS software management and profitability
Free as in beer, but you pay for the cup… (license costs $$, not the software). 
“If you make money using our software, you must buy a license” - not an end-user license

Open source conference at Whitehouse:
https://www.zdnet.com/article/log4j-after-white-house-meeting-google-calls-for-list-of-critical-open-source-projects/
https://www.wsj.com/articles/white-house-convenes-open-source-security-summit-amid-log4j-risks-11642119406
“For too long, the software community …

alyssa miller april april wright brakesec developer incident response infosec miller open source oss sustainability

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Information Security Engineers

@ D. E. Shaw Research | New York City

Security Officer Level 1 (L1)

@ NTT DATA | Virginia, United States of America

Alternance - Analyste VOC - Cybersécurité - Île-De-France

@ Sopra Steria | Courbevoie, France

Senior Security Researcher, SIEM

@ Huntress | Remote US or Remote CAN

Cyber Security Engineer Lead

@ ASSYSTEM | Bridgwater, United Kingdom