From the course: DevSecOps: Tips for Success

Unlock the full course today

Join today to access over 22,600 courses taught by industry experts or purchase this course individually.

Focus on experiments that learn

Focus on experiments that learn

From the course: DevSecOps: Tips for Success

Start my 1-month free trial

Focus on experiments that learn

- [Instructor] On my bookshelf at home and on my computer, I have lots of books and pdfs full of rules, guidance, and best practices. These security standards, bodies of knowledge, and hardening guides come from security organizations like ISC squared and OWASP. They represent what I like to call security advice. As an industry, we've been inundated with this advice. It tells us how to operate and secure our systems, and the advice is not actually bad. In fact, most of it is really helpful for security professionals, as it can be a great road map and a place to start. The trouble is the sheer magnitude of it can be very daunting to the uninitiated, and we often take this advice and apply it just carte blanche to the systems and applications without discerning what we actually need. My advice in this tip is to find ways to learn about what security your system has rather than just applying the latest Top 10 List to it.…

Contents