Explore a conference talk from APPSEC Cali 2018 that delves into innovative approaches for addressing application security challenges. Learn how security practitioners can effectively influence development processes, bridge gaps between training and coding, and implement timely interventions to prevent security flaws. Discover strategies for working collaboratively with developers, testers, and architects to reduce security debt and prevent the recurrence of well-known vulnerabilities. Gain insights from Izar Tarandach, Lead Product Security Architect at Autodesk Inc., as he shares observations from multiple development teams, feedback from peers, and results from pilot tests. Examine topics such as threat modeling, secure development practices, just-in-time learning, and the use of checklists to improve security outcomes. Understand the importance of adapting security practices to match the pace of modern development and the challenges faced by security professionals in today's rapidly evolving technology landscape.
Read more
The Best Flaw Didn't Make It Into Production - Addressing Security Gaps in Development