<?xml version="1.0" encoding="UTF-8"?><urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9" xmlns:xhtml="http://www.w3.org/1999/xhtml" xmlns:image="http://www.google.com/schemas/sitemap-image/1.1" xmlns:video="http://www.google.com/schemas/sitemap-video/1.1"><url><loc>https://securitytable.ai/</loc></url><url><loc>https://securitytable.ai/12-factors-of-threat-modeling/</loc></url><url><loc>https://securitytable.ai/a-convergence-of-ai-in-the-world-of-cybersecurity/</loc></url><url><loc>https://securitytable.ai/a-show-about-nothing-that-turned-into-something/</loc></url><url><loc>https://securitytable.ai/about/</loc></url><url><loc>https://securitytable.ai/acronyms-abbreviations-and-a-slide-into-application-security/</loc></url><url><loc>https://securitytable.ai/adam-shostack-thinking-like-an-attacker-and-risk-management-in-the-capabilities/</loc></url><url><loc>https://securitytable.ai/ai-appsec-and-the-meaning-of-life-the-answer-is-42/</loc></url><url><loc>https://securitytable.ai/an-sbom-fable/</loc></url><url><loc>https://securitytable.ai/an-sbom-lifecycle/</loc></url><url><loc>https://securitytable.ai/application-security-product-security-and-what-do-we-call-this-thing-we-do/</loc></url><url><loc>https://securitytable.ai/appsec-resolutions/</loc></url><url><loc>https://securitytable.ai/appsec-vs-prodsec/</loc></url><url><loc>https://securitytable.ai/bug-bounty-theater-and-responsible-bug-bounty/</loc></url><url><loc>https://securitytable.ai/building-the-world-s-largest-threat-model-library/</loc></url><url><loc>https://securitytable.ai/can-ai-replace-security-teams-the-software-quality-debate/</loc></url><url><loc>https://securitytable.ai/capture-the-flag-or-not/</loc></url><url><loc>https://securitytable.ai/computing-has-trust-issues/</loc></url><url><loc>https://securitytable.ai/crystal-penguins-and-ai-chaos-what-could-go-wrong-in-2026/</loc></url><url><loc>https://securitytable.ai/cvss-4-0-unleashed-with-patrick-garrity/</loc></url><url><loc>https://securitytable.ai/debating-the-cisa-secure-by-design-pledge/</loc></url><url><loc>https://securitytable.ai/debating-the-priority-and-value-of-memory-safety/</loc></url><url><loc>https://securitytable.ai/decoding-mastro-ai-threat-modeling/</loc></url><url><loc>https://securitytable.ai/don-t-bury-the-model-t-why-stride-still-drives-in-an-ai-world/</loc></url><url><loc>https://securitytable.ai/don-t-forget-the-beauty-of-simplicity-exploring-shifts-in-software-development/</loc></url><url><loc>https://securitytable.ai/episodes/</loc></url><url><loc>https://securitytable.ai/everything-is-boring/</loc></url><url><loc>https://securitytable.ai/experts-want-to-excel/</loc></url><url><loc>https://securitytable.ai/find-your-conferences-and-watch-die-hard-and-the-princess-bride/</loc></url><url><loc>https://securitytable.ai/follow/</loc></url><url><loc>https://securitytable.ai/hovercrafts-and-the-evolution-of-appsec-in-2025/</loc></url><url><loc>https://securitytable.ai/how-i-learned-to-stop-worrying-and-love-the-ai/</loc></url><url><loc>https://securitytable.ai/imposter-syndrome/</loc></url><url><loc>https://securitytable.ai/innovations-in-threat-modeling/</loc></url><url><loc>https://securitytable.ai/is-it-necessary-not-everything-requires-an-llm/</loc></url><url><loc>https://securitytable.ai/is-spec-driven-development-already-dead/</loc></url><url><loc>https://securitytable.ai/jim-manico-threat-modeling-the-untold-story/</loc></url><url><loc>https://securitytable.ai/lack-of-reasonable-or-everything-that-is-wrong-with-security-requirements/</loc></url><url><loc>https://securitytable.ai/lastpass-and-the-security-of-security-products/</loc></url><url><loc>https://securitytable.ai/looking-back-looking-forward/</loc></url><url><loc>https://securitytable.ai/make-no-mistakes-inside-the-first-agentic-ransomware/</loc></url><url><loc>https://securitytable.ai/making-privacy-less-cringey/</loc></url><url><loc>https://securitytable.ai/mcp-something-could-go-wrong/</loc></url><url><loc>https://securitytable.ai/more-cowbell-security-and-speed-in-agile/</loc></url><url><loc>https://securitytable.ai/mostly-dead-or-mostly-back-the-zombie-resurrection-of-dast-in-an-ai-world/</loc></url><url><loc>https://securitytable.ai/nobody-s-going-to-mess-with-our-stride/</loc></url><url><loc>https://securitytable.ai/nsa-and-cisa-red-and-blue-teams-share-top-ten-cybersecurity-misconfigurations/</loc></url><url><loc>https://securitytable.ai/numb-to-data-breaches-and-how-it-impacts-security-of-the-average-feature/</loc></url><url><loc>https://securitytable.ai/open-source-puppies-and-beer/</loc></url><url><loc>https://securitytable.ai/philosophizing-cloud-security/</loc></url><url><loc>https://securitytable.ai/prioritizing-appsec-a-conversation-between-a-vp-of-eng-a-product-manager-and-a-security-pro/</loc></url><url><loc>https://securitytable.ai/privacy-and-the-creepiness-factor-of-collecting-data/</loc></url><url><loc>https://securitytable.ai/privacy-vs-security-complexity-at-the-crossroads/</loc></url><url><loc>https://securitytable.ai/privateering-the-cyber-seas-new-legislation-on-cybercrime/</loc></url><url><loc>https://securitytable.ai/realists-at-the-table-how-to-see-through-the-hype/</loc></url><url><loc>https://securitytable.ai/reasonable-software-security-do-we-really-need-dast/</loc></url><url><loc>https://securitytable.ai/rethinking-security-conferences-engagement-and-innovation/</loc></url><url><loc>https://securitytable.ai/secure-by-default-in-the-developer-toolset-and-devex/</loc></url><url><loc>https://securitytable.ai/secure-by-design/</loc></url><url><loc>https://securitytable.ai/security-champions-as-the-answer-to-engineering-hating-security/</loc></url><url><loc>https://securitytable.ai/security-guardrails-and-paved-roads/</loc></url><url><loc>https://securitytable.ai/security-posture-is-a-thing/</loc></url><url><loc>https://securitytable.ai/security-stories-jazz-and-stage-presence-with-brook-schoenfield/</loc></url><url><loc>https://securitytable.ai/security-talent-conclusion-from-the-candidates-viewpoint/</loc></url><url><loc>https://securitytable.ai/security-talent-shortage-fact-or-fiction/</loc></url><url><loc>https://securitytable.ai/security-tools-and-the-companies-that-make-them/</loc></url><url><loc>https://securitytable.ai/selling-fear-uncertainty-and-doubt/</loc></url><url><loc>https://securitytable.ai/should-appsec-be-part-of-the-development-team/</loc></url><url><loc>https://securitytable.ai/should-security-give-up-on-developers/</loc></url><url><loc>https://securitytable.ai/simple-product-security-requirements/</loc></url><url><loc>https://securitytable.ai/skillset-over-experience-rethinking-qualifications-in-cybersecurity/</loc></url><url><loc>https://securitytable.ai/software-bill-of-materials-what-is-it-good-for/</loc></url><url><loc>https://securitytable.ai/sqli-all-over-again/</loc></url><url><loc>https://securitytable.ai/the-agent-access-problem-when-ai-has-the-keys-who-s-really-in-control/</loc></url><url><loc>https://securitytable.ai/the-agentic-access-problem-when-ai-becomes-its-own-administrator/</loc></url><url><loc>https://securitytable.ai/the-cost-of-knowing-how-cybersecurity-professionals-view-innovation-differently/</loc></url><url><loc>https://securitytable.ai/the-cyber-trust-mark-debate/</loc></url><url><loc>https://securitytable.ai/the-debate-is-the-cia-triad-truly-dead/</loc></url><url><loc>https://securitytable.ai/the-department-of-no/</loc></url><url><loc>https://securitytable.ai/the-end-of-bug-bounty-as-we-know-it/</loc></url><url><loc>https://securitytable.ai/the-evolution-problem-after-100-episodes-what-s-changed-and-what-hasn-t/</loc></url><url><loc>https://securitytable.ai/the-final-take-on-the-national-cybersecurity-strategy-software-liability-and-privacy/</loc></url><url><loc>https://securitytable.ai/the-future-role-of-security-and-shifting-off-the-table/</loc></url><url><loc>https://securitytable.ai/the-hamster-wheel-of-scan-and-fix/</loc></url><url><loc>https://securitytable.ai/the-human-in-the-loop-illusion-why-ai-approvals-are-failing-security/</loc></url><url><loc>https://securitytable.ai/the-illusion-of-secure-software/</loc></url><url><loc>https://securitytable.ai/the-impact-of-prompt-injection-and-hackaprompt_ai-in-the-age-of-security/</loc></url><url><loc>https://securitytable.ai/the-intersection-of-hardware-and-software-security/</loc></url><url><loc>https://securitytable.ai/the-invisible-code-problem-when-you-can-t-see-the-attack-can-you-stop-it/</loc></url><url><loc>https://securitytable.ai/the-moltbook-dilemma-what-happens-when-ai-agents-start-networking/</loc></url><url><loc>https://securitytable.ai/the-mythos-problem-when-ai-finds-every-vulnerability/</loc></url><url><loc>https://securitytable.ai/the-return-on-investment-of-threat-modeling/</loc></url><url><loc>https://securitytable.ai/the-roller-coaster-of-risk-a-threat-modeler-s-perspective/</loc></url><url><loc>https://securitytable.ai/the-stages-of-grief-in-incident-response/</loc></url><url><loc>https://securitytable.ai/the-stride-controversy-evolution-vs-extinction-in-security-models/</loc></url><url><loc>https://securitytable.ai/the-tool-creep-problem-when-more-security-means-less-security/</loc></url><url><loc>https://securitytable.ai/the-us-national-cybersecurity-strategy-introduction-part-one/</loc></url><url><loc>https://securitytable.ai/the-us-national-cybersecurity-strategy-pillars-one-and-two/</loc></url><url><loc>https://securitytable.ai/the-walking-dead-of-security-when-ai-resurrects-the-build-vs-buy-debate/</loc></url><url><loc>https://securitytable.ai/threat-modeling-capabilities/</loc></url><url><loc>https://securitytable.ai/threat-modeling-conference/</loc></url><url><loc>https://securitytable.ai/threat-modeling-or-threat-intelligence-are-they-the-same/</loc></url><url><loc>https://securitytable.ai/to-ssh-or-not/</loc></url><url><loc>https://securitytable.ai/topics/</loc></url><url><loc>https://securitytable.ai/topics/ai-agents/</loc></url><url><loc>https://securitytable.ai/topics/prompt-injection/</loc></url><url><loc>https://securitytable.ai/topics/secure-development/</loc></url><url><loc>https://securitytable.ai/topics/threat-modeling/</loc></url><url><loc>https://securitytable.ai/traversing-the-conference-circuit-highlights-and-insights/</loc></url><url><loc>https://securitytable.ai/vibe-coding-can-you-put-your-trust-in-the-machine/</loc></url><url><loc>https://securitytable.ai/vibe-coding-what-could-possibly-go-wrong/</loc></url><url><loc>https://securitytable.ai/vibe-startups-ai-problems-and-matt-s-precious-computer/</loc></url><url><loc>https://securitytable.ai/villainy-open-source-and-the-software-supply-chain/</loc></url><url><loc>https://securitytable.ai/we-don-t-know-what-we-don-t-know/</loc></url><url><loc>https://securitytable.ai/we-ll-be-here-until-we-become-obsolete/</loc></url><url><loc>https://securitytable.ai/what-if-ai-never-happened-the-appsec-reality-check/</loc></url><url><loc>https://securitytable.ai/when-ai-controls-the-hardware/</loc></url><url><loc>https://securitytable.ai/when-ai-escapes-the-sandbox/</loc></url><url><loc>https://securitytable.ai/when-code-no-longer-matters/</loc></url><url><loc>https://securitytable.ai/why-100x-isn-t-the-answer/</loc></url><url><loc>https://securitytable.ai/why-ai-cheats-to-win/</loc></url><url><loc>https://securitytable.ai/why-developers-will-take-charge-of-security-tests-in-prod/</loc></url><url><loc>https://securitytable.ai/why-do-engineers-hate-security/</loc></url><url><loc>https://securitytable.ai/xz-and-the-trouble-with-covert-identities-in-open-source/</loc></url></urlset>