Главная
Study mode:
on
1
Intro
2
An InfoSec Perspective on Developers
3
The Curmudgeon
4
Don't Be a Jerk; Perhaps Try Some Empathy
5
Get Your Mind Right
6
Empathy and Compassion
7
If His Holiness the Dalai Lama Isn't Tough Enough
8
Understand Developer Tools
9
What Can We Do With ThreadFix?
10
How Do Developers Manage their workload?
11
Mapping Vulnerabilities to Defects
12
Demo: Defect Tracker Integration
13
Where Do Developers Actually Spend Their Time?
14
IDE Plug Ins
15
How Do Developers Know Their Software Works?
16
Get Security Testing Included In Builds
17
ThreadFix Jenkins Plugin
18
Taking Advantage of Selenium Tests
19
SecDevOps with ThreadFix
20
What Metrics Do Developers Track?
21
SonarQube Integration
22
Questions / Contact Information
Description:
Explore a comprehensive guide to development tools from a security professional's perspective in this 52-minute conference talk from HouSecCon 6. Gain insights into understanding developers' mindsets, fostering empathy, and effectively integrating security practices into the development process. Learn about ThreadFix and its applications, defect tracking, IDE plug-ins, and incorporating security testing into builds. Discover how to leverage Selenium tests, implement SecDevOps practices, and utilize SonarQube for metrics tracking. Enhance your ability to bridge the gap between security and development teams while improving overall software security.

SecDevOps - A Security Pro's Guide to Development Tools

Add to list
00:00
-04:25