Главная
Study mode:
on
1
Intro
2
About me
3
Objectives
4
Security breaches
5
Cost of fixing vulnerabilities
6
Penetration testing
7
Bring in security elements into your life cycle
8
Defining stories
9
Modeling
10
Design Encoding Principles
11
Testing Strategy
12
Code Reviews
13
Putting it all together
14
Balancing Act
15
Risk Assessment
Description:
Explore a comprehensive approach to integrating application security into Agile software development in this 27-minute OWASP Foundation talk by Bhushan B Gupta. Learn how to create security-related personas, develop stories with acceptance criteria, prioritize threats using the STRIDE method, and implement security measures throughout the software development life cycle. Discover techniques for shifting security left, including code review, static and dynamic code analysis, and penetration testing. Gain insights on building secure web applications, creating effective test plans, and utilizing tools to achieve high-confidence security. Understand the importance of balancing security with other development priorities and conducting risk assessments to create more robust and secure applications.

OWASP Standard Classification - Achieving Security by Shifting Left in Agile

OWASP Foundation
Add to list