Главная
Study mode:
on
1
Introduction
2
Application Security Problem Overview
3
Problem 1 Benevolent Security Team
4
Problem 2 Silos
5
The GL
6
Chase to Perfection
7
Prioritize
8
Security team
9
Security tools
10
Security terminology
11
Appstack tools
12
Production bias
13
Not awesome
14
Bugs in production
15
Getting started
16
Security tests
17
Mobius
18
Engineers
Description:
Explore the challenges developers face with application security and learn effective strategies to improve DevSecOps practices in this 27-minute OWASP Foundation conference talk. Delve into Scott Gerlach's experiences building DevSecOps practices and tools at major companies like GoDaddy, SendGrid, and Twilio. Gain insights into specific obstacles hindering developers in AppSec and discover practical solutions to overcome them. Examine topics such as the role of security teams, breaking down silos, prioritizing security measures, and integrating security tools into the development process. Understand the importance of addressing security terminology, production bias, and the impact of bugs in production. Learn how to initiate security testing and foster a culture of continuous improvement in application security. Whether you're a seasoned professional or new to DevSecOps, acquire valuable knowledge to enhance your organization's approach to application security.

Topics of Interest: Developers Struggle with Application Security and How to Make It Better

OWASP Foundation
Add to list
0:00 / 0:00