Skip to Main Content

Scott White

Director of Software Security

EXPERIENCE
Scott White is the Director of Software Security for TrustedSec. He joined TrustedSec’s founder, David Kennedy, after years of working together in both global corporate and consulting environments. Scott’s expertise in application security and penetration testing stems from his years of experience ranging from help desk support and system administration to web development and penetration testing.

Scott has been called upon not only academically but also professionally by the FBI and the United States Secret Service as a subject matter expert. Scott has developed several application security programs for large international organizations. As the global application security team lead for a Fortune 1000 company, Scott performed several hundred web application security assessments, including both dynamic and static code analysis, dynamic testing, and reverse engineering. He was instrumental in developing the entire process, from secure design to developer education and awareness, secure coding practices, and to final approval reviews for production.

BOOKS

  • “Metasploit: The Penetration Tester’s Guide” - Technical Editor
  • “The Basics of Web Hacking” - Technical Editor

EDUCATION & CERTIFICATIONS

  • Bachelor of Science, Computer Science, Ohio Northern University (with distinction)
  • Master of Science, Network Security, University of Advancing Technology (Summa Cum Laude)

INDUSTRY CONTRIBUTIONS

  • DerbyCon - CTF Founder & Organizer, Trainer
  • Defcon 16 speaker
  • Numerous publications and presentations to local and national organizations such as OWASP, ISSA, FBI InfraGard, ISACA, AZSPF, SWSPF, etc.

Featured Blogs And Resources

Discover the blogs, analysis, webinars, and podcasts by this consultant and their team.

Podcasts February 09 2026

Security Noise - LLM = Love Language Model?!

In this episode of Security Noise podcast, we are discussing the crossover of AI into our romantic lives. How are LLMs used to social engineer or catfish…

Read about this article
Podcasts December 05 2025

Security Noise - Hacker Family Feud

Our security experts compete to see which team can guess the most popular answers to cybersecurity industry questions on this episode of the TrustedSec…

Read about this article
Blog April 22 2025

How Far Should You Let Penetration Testers Go?

How far should you let penetration testers go once they have a finding or foothold on a penetration test of your organization?As far as they can!The goal is to…

Read about this article
Blog March 18 2025

Are Attackers "Passing Through" Your Azure App Proxy?

TL;DR - Azure app proxy pre-authentication set to Passthrough may unintentionally expose private network resources.Microsoft’s Azure app proxy allows for…

Read about this article
Webinars June 19 2024

Ask Me Anything: Software Security

While many are confident in the security of their software, absolute protection is never guaranteed. Attackers' toolkits are growing, and those who don't keep…

Read about this article
Podcasts September 15 2023

Security Noise - Episode 6.8

Geoff Walton and Skyler Tuter discuss the past, present, and future of AppSec with security experts Joe Sullivan, Philip DuBois, and Scott White, exploring…

Read about this article
Podcasts June 30 2023

Security Noise - Episode 6.4

Episode IV: More Scary Stories

Read about this article
Podcasts January 06 2023

TrustedSec Security Podcast - Episode 5.16

Episode - 5.16 - LastPass the Last Time Honest (Well Maybe)

Read about this article
Podcasts September 27 2022

TrustedSec Security Podcast - Episode 5.11

Episode - 5.11 - Word Clouds, Password Clouds

Read about this article
Podcasts September 24 2021

TrustedSec Security Podcast - Episode 4.20

Episode - 4.20 - How the Sausage is Made

Read about this article

Empower your business through better security design.

Talk directly with our experienced advisory consultants to learn how we can help.