Application Security Specialist @TaptuIT. Co-organiser of @SecTalks_ADL and @heapsgooddev. Advocate for all things Application Security and DevSecOps.
In order to build secure products, we need to begin security testing from the very beginning of the development lifecycle, and test continuously throughout the product’s lifespan. Relying only on security testing just prior to a software release increases the likelihood of costly, systemic security flaws, and relies too heavily on the skill of a given penetration tester or code reviewer to find all vulnerabilities in a product before it is released into production.
In this talk, Jakob speaks about how you can leverage DevOps tooling and processes to integrate security testing into your pipeline to apply multiple layers of checks and balances to each line of code from commit to production.
Putting the Sec in DevSecOps | Adelaide .NET User Group | March 2019 |
---|---|---|
Web Dev Security Flaws 101 | Front-End Developers Adelaide | November 2018 |