Secure SDLC: DevSecOps, OWASP, SB...
Secure SDLC: DevSecOps, OWASP, SBOM, SAST, and BOLA
Sec Guy by Sec Guy
S4 · E8
Sep 17, 2026
04:11
Episode notes

In a cloud-native world, your code is your infrastructure. If the code is hollow, the fortress falls. In this video, Sec Guy breaks down the Secure SDLC, explains how to use STRIDE for Threat Modeling, and details the difference between SAST (Whitebox) and DAST (Blackbox) testing. We also tackle the #1 API threat: BOLA (Broken Object Level Authorization).

🔥🔥New Security+ SYO-801 Study Guide Available today: secguy.org/security-study-guide 🔥🔥

[Exam Ready Route - FREE]

Pass your certification for $0.

✅ Training Videos & Practice Tests

✅ Sec Guy Mobile Lab (On-the-go training powered by AI voice)

✅ Discord Access (Study sessions & Industry networking)

👉 Start Here: https://secguy.org

[Job Ready Route - MEMBERSHIP]

 ... 
Keywords
Comptia
SecGuy
Infosec
Cybersecurity Training
IT Certification
Cyber
Tech Podcast
Security+ SY0-701