How to adapt the SDLC for DevSecOps

Logo
Presented by

Zane Lackey, Chief Security Officer, Signal Sciences

About this talk

The standard approach for web application security over the last decade and beyond has focused heavily on slow gatekeeping controls like static analysis and dynamic scanning. However, these controls was originally designed in a world of Waterfall development and their heavy weight nature often cause more problems than they solve in today's world of agile, DevOps, and CI/CD. This session will share practical lessons learned at Etsy on the most effective application security techniques in today's increasingly rapid world of application creation and delivery.
Related topics:

More from this channel

Upcoming talks (0)
On-demand talks (107)
Subscribers (21189)
(ISC)² Security Congress channel contains digital content of activities at (ISC)2's Flagship conference event. You'll find keynotes, sessions and related items.