Richard Moore
Richard Moore
@richmoore.bsky.social
CISO at 10X Banking, F-Secure/MWR, Capita/Westpoint, Qt/KDE
Opinions are my own @richmoore@infosec.exchange @moore_rich
learn.microsoft.com/en-us/entra/... the planned change to package visibility has been cancelled. Yay! @nathanmcnulty.com
Understand access package visibility in the My Access portal - Microsoft Entra ID Governance
A conceptual article describing access package visibility in the My Access portal.
learn.microsoft.com
September 24, 2025 at 3:30 PM
@r00tveg.bsky.social could you drop me a shout or allow my DMs? Have a very off the wall music related question for you.
August 28, 2025 at 7:08 PM
@nathanmcnulty.com this change in access package visibility seems like a big step backwards in terms of usability. Are there any ways to reduce the impact of it on users as it will cause lots of support overhead? learn.microsoft.com/en-us/entra/...
Understand access package visibility in the My Access portal - Microsoft Entra ID Governance
A conceptual article describing access package visibility in the My Access portal.
learn.microsoft.com
July 21, 2025 at 6:14 PM
Reposted by Richard Moore
Good morning everyone. It is finally time for the party we've been planning for for the last ten years.

Happy birthday to us!
July 12, 2025 at 11:15 AM
And we're off, steelcon 2025 #steelcon
July 12, 2025 at 9:08 AM
Reposted by Richard Moore
While we've got your attention, we need more talks and especially workshops. If you'd like to present your work to your avid peers, submit it here.

docs.google.com/forms/d/e/1F...
March 27, 2025 at 3:04 PM
Reposted by Richard Moore
What advice would you give to someone just starting in Application Security?

#AppSecThursday #TalkAppSecToMe
February 6, 2025 at 4:01 PM
Very pleasantly surprised how easy it was to get my email domains up and running with fastmail. A pity you can't interact with the file storage via ash though.
December 22, 2024 at 5:13 PM
Reposted by Richard Moore
We are happy to introduce our latest tool "Supply Chain Firewall" 🎉 by @ikretz.bsky.social
The tool detects & prevents installation of malicious packages in local development environment.

Read more
securitylabs.datadoghq.com/articles/int...

And give it a try github.com/DataDog/supp...
Introducing Supply-Chain Firewall: Protecting Developers from Malicious Open Source Packages | Datadog Security Labs
Release of Supply-Chain Firewall, an open source tool for preventing the installation of malicious PyPI and npm packages
securitylabs.datadoghq.com
December 6, 2024 at 12:19 PM
I did a fireside chat about securing the use of GenerativeAI tools. Some insights we've found from implementing these controls. www.prompt.security/events/secur...
Securing AI in a High Stakes Environment: Insights from the FinServ and Healthcare Industries
www.prompt.security
November 27, 2024 at 11:16 AM
Autumn
November 24, 2024 at 9:54 PM
SYN
November 16, 2024 at 7:43 PM