What exactly makes AppSec training effective, and how does this differ from traditional types of educational resources developers are exposed to?