Skip to content

Cybersecurity Insights with Contrast Co-founder and CTO Jeff Williams | 11/18

    
Cybersecurity Insights with Contrast Co-founder and CTO Jeff Williams | 11/18

Insight #1

"Feds continue to push aggressive timelines for requiring app/API security “attestations” from software vendors.  OMB 22-18 is the latest and it requires all software vendors to publish a statement disclosing how they ensure their applications are secure by October 2023."
 

Insight #2

"Organizations are running into challenges deploying SBOMs as they discover that what’s in their code repos doesn’t match what’s in their running applications.  Focusing on libraries that actually load into memory and execute in production is the key to solving this problem."
 

Insight #3

"Did you know that an executable open source library in a binary repository like Maven Central doesn’t have to match the source code in a source code repository like GitHub?  There aren’t any checks and it could be completely different… just thought you should know 😊"
Jeff Williams, Co-Founder, Chief Technology Officer

Jeff Williams, Co-Founder, Chief Technology Officer

Jeff brings more than 20 years of security leadership experience as co-founder and Chief Technology Officer of Contrast Security. He recently authored the DZone DevSecOps, IAST, and RASP refcards and speaks frequently at conferences including JavaOne (Java Rockstar), BlackHat, QCon, RSA, OWASP, Velocity, and PivotalOne. Jeff is also a founder and major contributor to OWASP, where he served as Global Chairman for 9 years, and created the OWASP Top 10, OWASP Enterprise Security API, OWASP Application Security Verification Standard, XSS Prevention Cheat Sheet, and many more popular open source projects. Jeff has a BA from Virginia, an MA from George Mason, and a JD from Georgetown.