From the course: DevSecOps: Tips for Success
Unlock the full course today
Join today to access over 22,600 courses taught by industry experts or purchase this course individually.
Focus on experiments that learn
From the course: DevSecOps: Tips for Success
Focus on experiments that learn
- [Instructor] On my bookshelf at home and on my computer, I have lots of books and pdfs full of rules, guidance, and best practices. These security standards, bodies of knowledge, and hardening guides come from security organizations like ISC squared and OWASP. They represent what I like to call security advice. As an industry, we've been inundated with this advice. It tells us how to operate and secure our systems, and the advice is not actually bad. In fact, most of it is really helpful for security professionals, as it can be a great road map and a place to start. The trouble is the sheer magnitude of it can be very daunting to the uninitiated, and we often take this advice and apply it just carte blanche to the systems and applications without discerning what we actually need. My advice in this tip is to find ways to learn about what security your system has rather than just applying the latest Top 10 List to it.…
Contents
-
-
-
-
Be a maker for DevSecOps4m 37s
-
(Locked)
Use developer tactics for security5m 9s
-
(Locked)
Focus on experiments that learn3m 31s
-
(Locked)
Apply security automation for DevSecOps joy4m 46s
-
(Locked)
Learn from safety experts4m 22s
-
(Locked)
Add in chaos for better security results4m 31s
-
(Locked)
Build a sharing culture for security4m 9s
-
(Locked)
Bring auditors to the DevSecOps party3m 24s
-
(Locked)
Find a rugged path for software4m 13s
-
(Locked)
The MEASURE for DevSecOps4m 47s
-
-