How long does it take to discover software vulnerabilities
6
Static application security testing tools
7
Human factors
8
Software engineering
9
Research methods
10
DARPA
11
Retrospective
12
Timecards
13
Concurrent Analysis
14
The Question
15
Predictors
16
Dramatic Pause
17
Colocation vs Distributed Teams
18
Human Circadian Rhythm
19
Unfocused Contribution
20
Number Of Developers
21
The bystander effect
22
Not all research agrees
23
Developer experience
24
Minor contributors
25
Day job
26
Interactive churn
27
Lessons from other domains
28
Fatigue
29
Death
30
Culture
31
Conclusion
Description:
Explore a comprehensive analysis of factors influencing secure code development in this 43-minute OWASP Foundation conference talk. Delve into software vulnerabilities, static application security testing tools, and human factors affecting code security. Examine research methods, including DARPA studies, and investigate the impact of team dynamics, developer experience, and work environments on code quality. Learn about the effects of circadian rhythms, unfocused contributions, and team size on security outcomes. Discover insights from other domains, such as fatigue and cultural influences, to gain a holistic understanding of secure coding practices and team performance.
Do Certain Types of Developers or Teams Write More Secure Code?