AppSec Policies in a DevOps World

Logo
Presented by

Pejman Pourmousa, VP, Services at Veracode

About this talk

Securing code during development increases speed to market and reduces cost – but developers can resist security testing if it’s disruptive to their workflow. That’s why planning your application security program with developer tools and processes in mind often means the difference between success and failure. This session will help you understand how, where, and when application security fits into a modern development organization. Key Takeaways: •Learn how to make security invisible, automate security checkpoints and integrate with popular tools like IDEs, ticketing, bug tracking, and build systems. •Scan as early as possible in the Software Lifecycle, as early as when code is written in an IDE. •How to proactively approach open source code your developers are using.
Related topics:

More from this channel

Upcoming talks (0)
On-demand talks (396)
Subscribers (31056)
Veracode is intelligent software security. The Veracode Software Security Platform continuously finds flaws and vulnerabilities at every stage of the modern software development lifecycle. Prompted by powerful AI trained by trillions of lines of code, Veracode customers fix flaws faster with high accuracy. Trusted by security teams, developers, and business leaders from thousands of the world’s leading organizations, Veracode is the pioneer, continuing to redefine what intelligent software security means. Learn more at www.veracode.com