Главная
Study mode:
on
1
Introduction
2
Johns background
3
Family
4
What is SDLC
5
Goal of a Knapsack Program
6
Knapsack Program Components
7
Executive Sponsorship
8
Develop a Hammer
9
Know Your Baseline
10
Maturity
11
Build the bridge
12
Eat your own policy
13
Application portfolio
14
What do we expect
15
Testing
16
What is secure
17
What defines secure
18
Authorization
19
Architecture Reference
20
Training and Awareness
21
Chris Romeo
22
Security activities
23
Security integration strategies
24
Maturity path
25
Waterfall SDLC example
26
Scale
27
Continuous Improvement
28
Know Your Tools
29
Benchmark OS
30
Integration Model
31
Continuous Integration Model
32
The Future of DevOps
33
Distribution
34
Team Expansion
35
Vulnerability Analysis
36
Best Practices
37
Summary
38
Questions
Description:
Explore the critical components of a successful Secure Development Program in this AppSecUSA 2015 conference talk. Delve into the integration of security practices with various development lifecycles, including Waterfall, Agile, and DevOps. Learn how to effectively allocate limited resources, establish security requirements early in the development process, and create a comprehensive application security strategy. Discover practical insights from both public and private sector experiences, and understand how a robust Secure Development Program can justify its existence while supporting risk management initiatives. Gain valuable knowledge on balancing security needs with development speed, implementing proactive security measures, and fostering a security-conscious culture within your organization.

Why Secure Development Programs Are Essential for Application Security

OWASP Foundation
Add to list