Главная
Study mode:
on
1
Intro
2
Silver Lining
3
Handcrafting
4
Spinal Tap
5
Work Hallelujah
6
Workflow
7
Flow
8
Workflows
9
Custom but fast
10
AppSec Pipeline
11
Knapsack Pipeline
12
Reusable Path
13
AppSec QA
14
Optimizing AppSec
15
App Types
16
Risk System
17
Automated Tools
18
Threadfixes
19
Work in progress
20
Assessments
21
Team Dashboard
22
Application Repository
23
Application Status
24
Defect Dojo
25
Upstream and downstream information
26
Python Bob
27
Checkmarks
28
Experimentation
29
The Curve
30
Manual Assessment
31
Oh Snap Sec Pipeline
32
Tool Integrations
33
Absolute Pipeline Toolbox
Description:
Explore strategies for scaling up application security programs in large organizations with limited resources. Learn how to leverage DevOps, Agile, and CI/CD principles to create an AppSec Pipeline that iteratively improves security over time. Gain insights from real-world experiences at Rackspace and Pearson, covering key principles for speeding up and scaling AppSec programs. Discover practical examples of implementing these practices, including early integration, technical debt reduction, and customized workflows. Understand how to optimize AppSec efforts based on application types, risk systems, and automated tools. Explore concepts like the Knapsack Pipeline, reusable paths, and AppSec QA to enhance efficiency. Learn about integrating assessments, team dashboards, and defect management into your AppSec pipeline. Gain valuable knowledge on experimentation, manual assessments, and tool integrations to create a comprehensive AppSec strategy for your organization.

Taking AppSec to 11: Pipelines, DevOps and Making Things Better

OWASP Foundation
Add to list
0:00 / 0:00