RiaMaria – Security + Software
Maria Mora is a Staff Application Security Engineer based out of San Francisco, California
About
Maria
Maria (they/them) is a Staff Application Security Engineer at SiriusXM, where they play a key role in establishing the Application Security program, generally on the technical implementation side. An avid fan of building, they are a self-proclaimed "Script Kitty", coming up with all sorts of scripts and automations to make work easier for everyone involved.They started out as a software engineer, but has since found themself very interested in information security, privacy, and data compliance. In previous roles, they have built websites, back-end systems, APIs, and their repertoire includes application security and data compliance tools.Aside from their day job, they love to sing karaoke as well as help make the world a better place.In another timeline, they are probably a psychologist, behavioral scientist, or astrophysicist.
Skills And
Interests
Security Awareness and Culture program development
Research and Development
Information Security, Application Security, Security Architecture
Language of Choice: Python
Previous Languages: Java, Groovy, PHP, Javascript, NodeJS, Golang
Compliance: PCI-DSS, GDPR, CCPA
Secure Software Development Lifecycle
Security Tool Integration and Adoption: SAST, SCA, Secrets Detection, Container Scanning, IaC Scanning, CSPM, ASPM
Systems design drafting and presentation
Third party vendor canvassing, proofs of concept, and assessments
Facilitating internal communications
Microservices, REST APIs, Web Applications, Serverless
AWS Technologies: Secrets Manager, Lambda, EC2, Step Functions, Cloudformation, Fargate, IAM, etc.
Psychology, Behavioral Economics
Herding Cats, Kindness
I am
Interested in speaking gigs
Currently at capacity for volunteer work (advisory-capacity calls available upon request)
Speaking Gigs
A Walkthrough: AppSec Tool Selection, Procurement, and Implementation, RSAC USA 2024
Lost In Space: How to Navigate Corporate Security as an Engineer, BSides SF 2023
Women Who Code Connect Digital 2020 - Python Testing With External Dependencies (github, slides)
Women Who Code Manila May 2020 TechUp Session - AppSec Fundamentals (slides)
Talk to Me
I would love to hear about speaking gigs and volunteer opportunities. I'm also down to share knowledge.