Главная
Study mode:
on
1
Intro
2
My Story
3
Context
4
Basic ToDo List
5
Confidence
6
The Cadence
7
Static Analysis
8
Application Inventory
9
Champions Program
10
Open Source
11
Threat Modeling
12
Whats Wrong
13
Metrics
14
App Appointment Tool
15
Runtime Intelligence
16
Core Security
17
Portfolio
18
What To Focus On
19
Homework
20
Build a champions program
21
Give back
22
One rule
23
Attack Surface Analyzer
24
ThirdParty Library Analyzer
25
Visualization
Description:
Learn from a two-year journey of building an application security program from scratch in a small-medium sized company with no prior security infrastructure. Gain valuable insights into successful strategies, pitfalls to avoid, and practical goal-setting techniques. Explore topics such as static analysis, application inventory, champions programs, open source management, threat modeling, metrics, and runtime intelligence. Discover how to prioritize focus areas, implement core security measures, and manage your security portfolio effectively. Benefit from real-world experiences, common-sense perspectives, and actionable advice for starting and improving your own AppSec program.

Building an AppSec Program from the Ground Up - An Honest Retrospective

LASCON
Add to list
0:00 / 0:00