Tanya Janca | SheHacksPurple
@shehackspurple
Secure Code Trainer - Best-selling author of Alice and Bob Learn Secure Coding & Alice and Bob Learn Application Security. #AppSec she/her 🌻
Supply chain security is not just “check the package, ship the thing.” That is like locking your front door while leaving every window open and a snack out for the raccoons. Cute? Yes. Secure? Absolutely not. #episode4 Watch: https://twp.ai/E5CsTX Listen: https://twp.ai/4hsO5P
It’s #CyberMentoringMonday!!!! Are you looking for a professional mentor or to learn more about InfoSec? Are you experienced and willing to ‘give back’? Use this thread and hashtag to connect
I offer virtual keynotes, workshops, lunch-and-learns, and Security Champion Program sessions on topics including: 🤖 AI Security & Secure AI Development 🔐 Secure Coding 🎯 Threat Modeling 📦 Software Supply Chain Security 🛡️ OWASP Top 10 & Application Security tanya AT shehackspurple DOT ca 2/4
Announcement: I'm the keynote for Sikkerhetsfestivalen (Security Festival) 2026, in Lillehammer, Norway! August 24 - 26, 2,000 of us will take over that tiny town to learn, party, and connect! Check out the link below to learn more. :-D https://twp.ai/9OXpWX
Watch this video to hear key take aways, insights, and observations from my attendance at OWASP Global AppSec EU in Vienna, Austria, 2026. #OWASP #AppSec #aisecurity https://twp.ai/9OYPHz
Your software supply chain is not just “the code we wrote.” It is the tools, packages, pipelines, build systems, humans, shortcuts, and gremlins we let near production. Let’s secure the whole thing, not just the shiny repo. 💜 #episode4 Watch: https://twp.ai/E5CSeT Listen: https://twp.ai/4hryGL
Do you live in the Cowichan Valley or on Vancouver Island? Want to join us for #OpenHack?!?!?! Of course you do! Sign up for the meetup here: July 22: https://twp.ai/NSYTEX August 12: https://twp.ai/9OYjeL (I will be at this one)
I *may* have bought a new guitar. ☺️ It's new-to-me, and so pretty! Obviously I need a new amp now, right???
Does “Shift Left” still mean something? If so, what does it mean to you? If not, tell me what ruined it for you. #AppSecThursday #talkAppSectome
I’m excited for the next book stream 😊 For Chapter 5 of *Alice and Bob Learn Secure Coding*, I’ll be joined by Katie Paxton-Fear to cover technology-specific security practices and what secure coding looks like across different architectures and platforms. RSVP: https://twp.ai/4htEpR 1/2
I was on the Colorado Security Podcast with Frank Victory! https://twp.ai/4hrva8
Episode 4 of DevSec Station is LIVE! Supply Chain Is More Than Just Dependencies Listen on any podcast platform or watch here: https://twp.ai/4hroFD
Realistic attack example: no movie-hacker hoodie required. Sometimes the badness happens quietly, upstream, in a place everyone already trusts. And that is exactly why “but our code is fine” is not enough. #episode4 Watch: https://twp.ai/Ils7fY Listen: https://twp.ai/4hsO5M
What was the moment that made you take security seriously? Tell me. #AppSecThursday #talkAppSectome
📩 Send me a message or visit shehackspurple.ca to learn more about training, workshops, and speaking opportunities. tanya AT shehackspurple DOT ca #SecurityAwarenessMonth #AppSec #SecureCoding #ThreatModeling #AISecurity #CyberSecurity 4/4
I offer virtual keynotes, workshops, lunch-and-learns, and Security Champion Program sessions on topics including: 🤖 AI Security & Secure AI Development 🔐 Secure Coding 🎯 Threat Modeling 📦 Software Supply Chain Security 🛡️ OWASP Top 10 & Application Security tanya AT shehackspurple DOT ca 2/4
I was on Run As Radio podcast! How can sysadmins help software developers work securely and make more secure applications?We talked about the evolving security concerns around developers; black hats have targeted their privileged accounts and secrets! https://twp.ai/4hs1Gx
Starting any minute now (9:00 am PT): Chapter 4 of Alice and Bob Learn Secure Coding! Join Gaving Klondike and I for a great conversation and lesson! YouTube: https://twp.ai/WpqnuK LinkedIn: https://twp.ai/E5Bp84 Twitch: https://twp.ai/4hrKjw
I’m thrilled to be keynoting at Sikkerhetsfestivalen in Lillehammer, Norway, August 24–26! My talk is: "Threat Modeling Developer Behavior: The Psychology of Bad Code". 1/2
Watch this video to hear key take aways, insights, and observations from my attendance at OWASP Global AppSec EU in Vienna, Austria, 2026. #OWASP #AppSec #aisecurity https://twp.ai/9OYVSV
I'm giving a 2-day Secure Coding class at #OWASP #GlobalAppSec in San Franciso, Nov 3-4. Learn more here: https://twp.ai/4hs1IT
Thank you for having me for the fourth time Vienna! It's been great! Time to fly home to Canada. ✈️✈️✈️ 🇨🇦
Thank you #owasp for having me in Vienna for the always fantastic #owaspglobalappsec! #globalappsecvienna 💟
Vandana Verma, Jaya Baloo, Dan, Steve and Fredrik talk post-mythos vulnerability discovery at #owasp #globalappsecvienna.
"I don't need excuses, I need PRs!" Jim Manico at #globalappsecvienna