Event type: Conference

Join Phoenix Security for a compelling conversation with Rick Doten, VP, Healthplan CISO at Centene Corporation, as he shares a CISO’s perspective on navigating today’s complex vulnerability landscape. Discover how risk-based application and deployment remediation enables teams to focus on what truly matters, without falling into the trap of fixing everything. Rick will also cut through the noise on buzzwords like “reachability” and “root cause analysis,” revealing what’s real versus what’s marketing hype. Plus, gain insight into the practical use—and limitations—of AI in cybersecurity. Perfect for CISOs, AppSec professionals, and vulnerability management teams looking to align efforts, reduce risk, and evolve their security programs.
Francesco Cipollone
Phoenix Security is set to redefine Application Security Posture Management (ASPM) at OWASP Global AppSec EU 2025! From hands-on AppSec training (May 26-28) to high-impact security sessions (May 29-30), we’re diving deep into automated remediation, developer-driven security, and AI-powered risk prioritization. Join us in Barcelona to explore the future of application security!
Francesco Cipollone
Phoenix Security is set to redefine Application Security Posture Management (ASPM) at OWASP Global AppSec EU 2025! From hands-on AppSec training (May 26-28) to high-impact security sessions (May 29-30), we’re diving deep into automated remediation, developer-driven security, and AI-powered risk prioritization. Join us in Barcelona to explore the future of application security!
Francesco Cipollone
Financial cybersecurity is evolving—FS-ISAC EMEA Summit 2025 brings together Europe’s top security leaders to tackle threat intelligence, third-party risk, and application security in banking and fintech. Phoenix Security is driving AI-powered risk-based remediation and regulatory compliance solutions to fortify financial institutions against modern cyber threats. Don’t miss this exclusive industry event!
Francesco Cipollone
Attending VulnCon 2025? Phoenix Security invites you to explore a threat-centric approach and tackle vulnerabilities by category. After diving deep into the day’s sessions, join us for a fun and relaxed happy hour to share insights, compare notes, and enjoy great company. When: April 8, 2025 | 6:00–9:00 pm ET Where: Dram & Draught | 1 Glenwood Avenue, Suite 101, Raleigh, NC 27603 Why: Because focusing on threats is always easier with a cold 🍻 in hand!
Francesco Cipollone
Phoenix Security is leading the charge at VulnCon 2025, the premier event for vulnerability management professionals. With 40+ expert-led sessions, deep dives into risk-based remediation, and insights from CISA, MITRE, and ENISA, this event is a must-attend for security teams. Join us in Raleigh, NC, to explore automation, threat intelligence, and the future of vulnerability lifecycle management.
Francesco Cipollone
Struggling with vulnerability overload in your cloud and container environments? Join Phoenix Security’s Francesco Cipollone and Bazaarvoice’s Nate Sanders at VulnCon 2025 for a practitioner-led session packed with real use cases, actionable strategies, and sharp insights. This talk dives deep into risk-based vulnerability management, the power of reachability analysis, and how to unify fragmented data across modern infrastructures. Whether you’re a security leader or hands-on engineer, you’ll walk away with practical methods to scale your security workflows and focus on the vulnerabilities that truly matter.
Francesco Cipollone
Join us at OWASP NYC for an insightful event on ASPM, vulnerability management, and Reachability Analysis. Tired of drowning in security alerts? As AppSec and OpsSec merge into ProdSec, reachability analysis cuts through the noise by highlighting only exploitable vulnerabilities. This event explores five key types of reachability—covering code paths, libraries, and containerized environments—to help you focus on what truly matters and build a robust, future-proof defense strategy.
Francesco Cipollone
Join us on 17 September 2024 at Thrive, London for a comprehensive Application Security Posture Management (ASPM) event. Learn from industry experts, explore the latest trends in application security, and network with professionals over drinks and pizza. Gain insights into asset management, vulnerability prioritization, DevSecOps integration, and more. Don’t miss out on valuable takeaways and networking opportunities!
Francesco Cipollone

Resources

Listen to the latest Phoenix Security  podcast

Listen to the latest AppSec Phoenix podcast

Get Started with AppSec Phoenix

News

Read the latest AppSec Phoenix news

Blog

Read the latest Blogs

Events

Discover our events

Talks

Explore the talks

Whitepapers

Discover Whitepapers

News

Read the latest News

Videos

Discover video resources

Welcome to Peace of Mind

Trusted by more than 1000 users and 380 organizations

Dashboard
Derek

Derek Fisher

Head of product security at a global fintech

Derek Fisher – Head of product security at a global fintech. Speaker, instructor, and author in application security.

Derek is an award winning author of a children’s book series in cybersecurity as well as the author of “The Application Security Handbook.” He is a university instructor at Temple University where he teaches software development security to undergraduate and graduate students. He is a speaker on topics in the cybersecurity space and has led teams, large and small, at organizations in the healthcare and financial industries. He has built and matured information security teams as well as implemented organizational information security strategies to reduce the organizations risk.

Derek got his start in the hardware engineering space where he learned about designing circuits and building assemblies for commercial and military applications. He later pursued a computer science degree in order to advance a career in software development. This is where Derek was introduced to cybersecurity and soon caught the bug. He found a mentor to help him grow in cybersecurity and then pursued a graduate degree in the subject.

Since then Derek has worked in the product security space as an architect and leader. He has led teams to deliver more secure software in organizations from multiple industries. His focus has been to raise the security awareness of the engineering organization while maintaining a practice of secure code development, delivery, and operations.

In his role, Jeevan handles a range of tasks, from architecting security solutions to collaborating with Engineering Leadership to address security vulnerabilities at scale and embed security into the fabric of the organization.

Jeevan Singh

Jeevan Singh

Founder of Manicode Security

Jeevan Singh is the Director of Security Engineering at Rippling, with a background spanning various Engineering and Security leadership roles over the course of his career. He’s dedicated to the integration of security practices into software development, working to create a security-aware culture within organizations and imparting security best practices to the team.
In his role, Jeevan handles a range of tasks, from architecting security solutions to collaborating with Engineering Leadership to address security vulnerabilities at scale and embed security into the fabric of the organization.

James

James Berthoty

Founder of Latio Tech

James Berthoty has over ten years of experience across product and security domains. He founded Latio Tech to help companies find the right security tools for their needs without vendor bias.

christophe

Christophe Parisel

Senior Cloud Security Architect

Senior Cloud Security Architect

Chris

Chris Romeo

Co-Founder
Security Journey

Chris Romeo is a leading voice and thinker in application security, threat modeling, and security champions and the CEO of Devici and General Partner at Kerr Ventures. Chris hosts the award-winning “Application Security Podcast,” “The Security Table,” and “The Threat Modeling Podcast” and is a highly rated industry speaker and trainer, featured at the RSA Conference, the AppSec Village @ DefCon, OWASP Global AppSec, ISC2 Security Congress, InfoSec World and All Day DevOps. Chris founded Security Journey, a security education company, leading to an exit in 2022. Chris was the Chief Security Advocate at Cisco, spreading security knowledge through education and champion programs. Chris has twenty-six years of security experience, holding positions across the gamut, including application security, security engineering, incident response, and various Executive roles. Chris holds the CISSP and CSSLP certifications.

jim

Jim Manico

Founder of Manicode Security

Jim Manico is the founder of Manicode Security, where he trains software developers on secure coding and security engineering. Jim is also the founder of Brakeman Security, Inc. and an investor/advisor for Signal Sciences. He is the author of Iron-Clad Java: Building Secure Web Applications (McGraw-Hill), a frequent speaker on secure software practices, and a member of the JavaOne Rockstar speaker community. Jim is also a volunteer for and former board member of the OWASP foundation.

Join our Mailing list!

Get all the latest news, exclusive deals, and feature updates.

The IKIGAI concept
x  Powerful Protection for WordPress, from Shield Security
This Site Is Protected By
ShieldPRO