
← Scale to Zero - No Security Questions Left Unanswered11 Mar · 48 min
Product Security at Scale: Minimizing Friction & Defending AI Integrations | ft. Sana Talwar | Ep.106 | ScaleToZero Podcast
<p>In this episode of ScaleToZero Podcast, we sit down with a Product Security Engineer to discuss the delicate balance between robust security, user experience, and developer velocity.</p><p>From identifying red flags in security reviews to using AI for point-in-time vulnerability assessments, we cover the tactical moves that early security teams need to make today.</p><p>The landscape is shifting from "Security vs. Engineering" to "Security + Engineering." If you're an early security team looking to leverage AI to punch above your weight class, this episode is a must-listen.</p><p><br></p><p>YouTube: https://youtu.be/wv_1NZkv9bs</p><p>Cloudanix: https://www.cloudanix.com</p><p><br></p><p>00:00 Introduction</p><p>03:40 Developer-friendly Security in Practice</p><p>07:22 Minimizing Friction between Security and Engineering</p><p>09:15 Navigating the Trade-offs between Security and User Experience</p><p>11:32 Red Flags in Third-Party Security Reviews and Internal Security Reviews</p><p>19:00 Point-in-Time Vulnerability Assessments using AI</p><p>21:35 Managing Malicious Updates without Manual Reviews</p><p>24:55 Communicating Third-Party Security Risks to a Product Manager</p><p>28:50 Improving Product Security using AI for Early Security Teams</p><p>33:20 AI Performing Critical Security Job Functions</p><p>35:27 Patching AI Prompt Injection Attacks</p><p>41:05 AI Integration and Reshaping Security Landscape</p><p>46:04 Summary</p><p><br></p><p>#ProductSecurity #DevSecOps #AppSec #Cybersecurity #AISecurity #ProductManagement #DeveloperVelocity #TechLeadership #ScaleToZero</p>