Secrets of AppSec Champions

In this eye-opening episode, Reanna Schultz, an experienced Security Operations Center (SOC) team leader, pulls back the curtain on what makes a modern SOC truly effective. Drawing from her six-year journey through various cybersecurity roles, she reveals how SOCs serve as an organization's first line of defense against cyber threats. 

The discussion covers essential insights on building a SOC from scratch, the value of managed security service providers (MSSPs), and how AI is reshaping the threat landscape. Schultz emphasizes that successful SOCs aren't just about technical capabilities – they're about building transparent communication, fostering the right team culture, and maintaining strong relationships across the organization. 

Whether you're working in a smaller company considering your first SOC or an enterprise looking to enhance your security operations, this episode provides practical insights on evolving your security posture for 2025 and beyond.

Key topics with timestamps:
 00:00 Reanna Schultz: Leading Expertise in Security Operations
 
 06:29 Evaluating Security Alerts and Tribal Knowledge
 
 07:33 Identifying Security Gaps with the Pyramid of Pain
 
 13:23 Splunk: Central Big Data Platform for Security Analysis
 
 14:48 Detecting Compromises Through Network Traffic Visibility
 
 20:19 Enhancing Security: Utilizing Both MSSP and SOC
 
 21:06 Affordable Security Solutions: Exploring the MSSP Route
 
 26:31 Balancing Passion with Career Advancement Challenges
 
 30:35 Leading Effectively by Cultivating Passion and Growth
 
 32:21 Integrating Passions: Enhancing Cybersecurity Collaboration

Creators and Guests

Host
Chris Lindsey
Chris Lindsey is a seasoned speaker who has appeared at conferences, webinars, and private events. Currently building an online community and creating a podcast series, Chris draws on expertise from more than 15 years of direct security experience and over 35 years of experience leading teams in programming and software, solutions, and security architecture. For three years, Chris built and led an entire application security program that includes the implementation of mature AppSec programs, including oversight of security processes and procedures, SAST, DAST, CSA/OSA, compliance, training, developer communication, code reviews, application inventory gathering, and risk analysis.

What is Secrets of AppSec Champions?

Join host Chris Lindsey as he digs into the world of Application Security with experts from leading enterprises. Each episode is theme based, so it's more conversational and topic based instead of the general interview style. Our focus is growing your knowledge, providing useful tips and advice. With Chris' development background of 35 years, 15+ years of secure coding and 3+ years running an application security program for large enterprise, the conversations will be deep and provide a lot of good takeaway's that you can use almost immediately.