TY - JOUR T1 - Q&A. Should Startups Care about Application Security? JF - Technology Innovation Management Review Y1 - 2013 A1 - Sherif Koussa KW - application security KW - architecture KW - checklists KW - code reviews KW - cybersecurity KW - design KW - detection KW - prevention KW - software security KW - startups KW - training PB - Talent First Network CY - Ottawa VL - 3 UR - http://timreview.ca/article/706 IS - 7 U1 - Software Secured Sherif Koussa is Principal Application Security Consultant and founder of Software Secured, an application security firm. He has spent 14 years in the software development industry, with the last six years focused on testing application security, assessing security, and teaching developers to write secure code. He worked on the OWASP security teaching tool WebGoat 5.0, helped SANS launch their GSSP-JAVA and GSSP-NET programs, and wrote the blueprints of the Dev-544 and Dev-541 courses. In addition, he authored courseware for SANS SEC-540: VOIP Security. Sherif leads both the OWASP Ottawa Chapter and the Static Analysis Code Evaluation Criteria for WASC. He has performed security code reviews for three of the five largest banks in the United States. Before starting Software Secured, Sherif worked on architecting, designing, implementing, and leading large-scale software projects for Fortune 500 companies, including United Technologies, and other leading organizations such as Nortel Networks, March Healthcare, Carrier, Otis Elevators, and NEC Unified Communications. ER -