Artwork

محتوای ارائه شده توسط Tromzo. تمام محتوای پادکست شامل قسمت‌ها، گرافیک‌ها و توضیحات پادکست مستقیماً توسط Tromzo یا شریک پلتفرم پادکست آن‌ها آپلود و ارائه می‌شوند. اگر فکر می‌کنید شخصی بدون اجازه شما از اثر دارای حق نسخه‌برداری شما استفاده می‌کند، می‌توانید روندی که در اینجا شرح داده شده است را دنبال کنید.https://fa.player.fm/legal
Player FM - برنامه پادکست
با برنامه Player FM !

EP 50 — DryRun Security’s James Wickett on Aligning Incentives and Speaking the Same Language with Developers and Security

31:08
 
اشتراک گذاری
 

Manage episode 382699857 series 3330694
محتوای ارائه شده توسط Tromzo. تمام محتوای پادکست شامل قسمت‌ها، گرافیک‌ها و توضیحات پادکست مستقیماً توسط Tromzo یا شریک پلتفرم پادکست آن‌ها آپلود و ارائه می‌شوند. اگر فکر می‌کنید شخصی بدون اجازه شما از اثر دارای حق نسخه‌برداری شما استفاده می‌کند، می‌توانید روندی که در اینجا شرح داده شده است را دنبال کنید.https://fa.player.fm/legal

In this special episode of the Future of Application Security, recorded at the Developers & Security are Friends Day, Eric speaks with James Wickett, co-founder and CEO of DryRun Security, a company that provides security products for developers. They discuss the misaligned incentives between developers and security and how teams can learn how to speak the same language to increase value. They also talk about how the SLIDE Model helps with context analysis, why you should focus less on control and more on context and composition in your security, and how organizations can close their knowledge gaps.

Topics discussed:

  • Some of the frictions between security and developers, including how incentives are often misaligned and how each team has a different focus.
  • How to talk the same language so that security and developers can build relationships that bring value to their organizations.
  • What the SLIDE Model is and how it can help you better understand the context of your security actions and your priorities.
  • How organizations can fill in their knowledge gaps and why it's key to return to first principles in a world of automation and tooling.
  • How security impacts an organization through control, composition, and context, and why organizations should lessen their dependence on control.
  • How security is like barbeque, and why Oklahoma is a great analogy for a DevSec model.
  continue reading

60 قسمت

Artwork
iconاشتراک گذاری
 
Manage episode 382699857 series 3330694
محتوای ارائه شده توسط Tromzo. تمام محتوای پادکست شامل قسمت‌ها، گرافیک‌ها و توضیحات پادکست مستقیماً توسط Tromzo یا شریک پلتفرم پادکست آن‌ها آپلود و ارائه می‌شوند. اگر فکر می‌کنید شخصی بدون اجازه شما از اثر دارای حق نسخه‌برداری شما استفاده می‌کند، می‌توانید روندی که در اینجا شرح داده شده است را دنبال کنید.https://fa.player.fm/legal

In this special episode of the Future of Application Security, recorded at the Developers & Security are Friends Day, Eric speaks with James Wickett, co-founder and CEO of DryRun Security, a company that provides security products for developers. They discuss the misaligned incentives between developers and security and how teams can learn how to speak the same language to increase value. They also talk about how the SLIDE Model helps with context analysis, why you should focus less on control and more on context and composition in your security, and how organizations can close their knowledge gaps.

Topics discussed:

  • Some of the frictions between security and developers, including how incentives are often misaligned and how each team has a different focus.
  • How to talk the same language so that security and developers can build relationships that bring value to their organizations.
  • What the SLIDE Model is and how it can help you better understand the context of your security actions and your priorities.
  • How organizations can fill in their knowledge gaps and why it's key to return to first principles in a world of automation and tooling.
  • How security impacts an organization through control, composition, and context, and why organizations should lessen their dependence on control.
  • How security is like barbeque, and why Oklahoma is a great analogy for a DevSec model.
  continue reading

60 قسمت

همه قسمت ها

×
 
Loading …

به Player FM خوش آمدید!

Player FM در سراسر وب را برای یافتن پادکست های با کیفیت اسکن می کند تا همین الان لذت ببرید. این بهترین برنامه ی پادکست است که در اندروید، آیفون و وب کار می کند. ثبت نام کنید تا اشتراک های شما در بین دستگاه های مختلف همگام سازی شود.

 

راهنمای مرجع سریع