Head of Cyber Architecture for Banking & International Citi Group, United States
Did you know that only 22% of developers understand security policies? And 52% of this rare group find security "stifling"?
The realm of secure software has been heavily focused on vulnerabilities, mitigation and technologies, often forgetting the most crucial piece: The Developer.
The relationship between the developer and the security team is crucial for creating secure software. Repairing and building this relationship requires a rewiring of the software security team's focus from "security first" to "developer first."
This presentation talks about the WHY of building this relationship and takes a deep dive into the HOW by addressing education, tools and processes.
Software security practitioners and leaders will take away new insights and concrete steps on being empathetic allies, respected partners and trusted aides of the developer.
Learning Objectives:
Change:
- your perspective around "secure software" development and appreciate that it begins and ends with people.
- the relationship with developers from indifference/antagonism to ally/partner/friend.
- your focus from security-first to developer-first.
Evangelize your leadership and get management buy-in by demonstrating WHY developer-security relationships are crucial for secure software development, shortened time-to-market of business deliverables, risk reduction, and better compliance.
Understand the HOW, and go ahead and BUILD a developer-first, developer-focussed security program which delivers results by applying the holy tech trinity of education, tools and processes.