Press & Media

In the media

Press mentions, expert quotes, webinar recordings, and authored articles on application security, DevSecOps, and AI in security testing.

Dark Reading Raconteur SecurityBrief BrightTalk ComputerWeekly
📣

Official PR Spokesperson — Veracode DACH

Julian is the designated application security spokesperson for Veracode in the German-speaking market — providing expert commentary, media interviews, and bylines to journalists and analysts covering cybersecurity, DevSecOps, and software supply chain security. Available for quick-turnaround expert quotes.

Dark Reading Feb 2026

Flaw-Finding AI Assistants Face Criticism for Speed, Accuracy

"Thirty years back, we did manual code reviews — that art died somehow. Now you can do this with an AI tool, allowing you to interact with the results, and maybe that's building a new industry for us again."
Dark Reading Apr 2026

Can Anthropic Keep Its Exploit-Writing AI Out of the Wrong Hands?

"Until independent researchers with access can run their own evaluations, healthy skepticism is the appropriate posture. The claims can't be tested, so they can't be fully trusted or refuted."
SecurityBrief AU Apr 2026

Anthropic Launches Glasswing AI Cyber Coalition with Partners

"What's really striking here is the pace. Project Glasswing is about connecting vulnerabilities into far more complex attack paths in a fraction of the time it used to take."
Raconteur Apr 2026

How Worried Should Businesses Be About Mythos?

"This doesn't rewrite what a good application security programme looks like. Governance, process and expertise to fix things properly remain essential — AI doesn't change that."
Machine.news Apr 2026

Worried About Mythos? The UK Government Has Written a Letter

"What's really striking here is the pace. Project Glasswing is about connecting vulnerabilities into far more complex attack paths in a fraction of the time it used to take."
SecurityBuzz Mar 2026

OpenAI Bets on AI Security With Promptfoo Acquisition

"AI-assisted code scanning can improve developer productivity, but it cannot replace the broader visibility, governance, and risk management required to secure modern software ecosystems."
Cobsolete.de May 2019

How Readable Are COBOL Programs, Really?

Expert commentary on legacy code maintainability — there were rarely records and manuals, which today makes troubleshooting much more difficult.

AP-Verlag May 2019

3 Tipps zum Welt-Passwort-Tag

Expert guidance on World Password Day — recommendations for complex password enforcement, two-factor authentication, and password hashing best practices. (German)

BrightTalk On-demand

Speed vs. Risk: Effective Software Security Doesn't Choose

How organisations can consolidate testing types to save time and money using a unified AppSec platform — covering cloud-based AppSec solutions and scaling security across multiple applications.

Northdoor On-demand

Speed vs. Risk: Effective Software Security Doesn't Choose

Scanning code at every stage of the software development lifecycle — how to implement a security-first approach without slowing down delivery teams.

BrightTalk On-demand

SAST, DAST, SCA … Is This Really Necessary?

Why multiple testing types are required for effective application security — data on fix rates for organisations that use multiple testing approaches vs. those that rely on just one.

BrightTalk On-demand

Making Applications and Docker Containers Secure with Veracode

Approaches that embrace the secure use of containers in CI/CD pipelines — covering container image scanning, base image risk, and how DevOps engineers can address the changing security landscape.

BrightTalk On-demand

How Accenture Clients Are Building Comprehensive AppSec Programs with Veracode

With Karel Kohout (Accenture) — the importance of integrations in modern software development, how to get the most out of GitHub and GitLab integrations, and how Accenture helps clients build mature AppSec programs.

BrightTalk On-demand

DevSecOps — 5 Principles of Securing DevOps

A practitioner's framework for integrating security into DevOps pipelines — covering the five foundational principles that separate organisations that talk about security from those that actually ship it.

CloudBees On-demand

Level Up GitHub Security Scanning with Veracode

Step-by-step integration of comprehensive software security scanning into GitHub workflows — how Veracode's capabilities make it an optimal choice for software scanning requirements in development environments.

BankInfoSecurity Nov 2020

Application Security Trends: The Necessity of Securing Software in Uncertain Times

How organisations adapted their AppSec posture through 2020's rapid digital transformation and cloud acceleration — and why securing the software supply chain became non-negotiable.

DataBreachToday EU Feb 2021

Navigating Data Breach & Compliance Requirements with Application Security

How application security programs help organisations meet data breach notification obligations and compliance frameworks — with a practical view of the tools and processes that matter most.

Julian is available to comment, provide background briefings, or be quoted on the following topics. Rapid turnaround for journalists on deadline.

Application Security Testing SAST & DAST tool evaluation Software Composition Analysis DevSecOps transformation AI in security testing Software supply chain risk AppSec program design Container & IaC security CISO priorities in AppSec Vibe coding & AI-generated code risks Log4Shell & CVE exploitation Secure SDLC Zero-day vulnerability management Developer-first security
Media Enquiries

Available for Press & Media

Available for expert commentary, interviews, and panel contributions on application security, DevSecOps, and AI in security testing. Quick turnaround for journalists on deadline.

Expert Quotes Background Briefings Podcast Interviews Written Commentary Bylines & Op-Eds Analyst Briefings
Media Contact →