Главная
Study mode:
on
1
Intro
2
Agile and DevOps
3
How to scale security
4
Overview
5
Static vs Dynamic Analysis
6
Types of Static Analysis
7
Good Hooks
8
Start a Conversation
9
Dependencies
10
Running arbitrary checks
11
Should I buy a static analysis tool
12
Calculating the ROI
13
Dynamic Analysis
14
Security Baselines
15
Unit Tests
16
Background
17
What we did
18
Doing this well
19
Infrastructure best practices
20
Detecting attacks
21
Questions
Description:
Explore current research and best practices in SecDevOps through this 51-minute conference talk from APPSEC Cali 2018. Delve into topics such as scaling security, static and dynamic analysis, security baselines, and infrastructure best practices. Learn how to calculate ROI for static analysis tools, implement effective hooks, and detect attacks. Gain insights from Clint Gibler, Research Director at NCC Group, as he shares his expertise on integrating security into Agile and DevOps processes. Discover practical approaches to dependency management, unit testing, and fostering security conversations within development teams.

SecDevOps - Current Research and Best Practices

OWASP Foundation
Add to list
0:00 / 0:00