[Owasp-dotnet] My presentation at OWASP AppSec Brazil: "Making Security Invisible by Becoming the Developer's Best Friends"

2 views
Skip to first unread message

dinis cruz

unread,
Oct 13, 2011, 10:37:00 PM10/13/11
to owasp-...@lists.owasp.org, owasp-...@lists.owasp.org, owasp-o2...@lists.owasp.org, OWASP .NET
Hi, here is the presentation I delivered last week at OWASP's AppSec Brazil conference: OWASP Brazil - Making Security Invisible by Becoming the Developer's Best Friends

I think I was able to capture how security tends to be seen by developers, how it is currently a TAX on the SDL and how we need to move Application Security into the 'application visibility' space so that we add value to the entire SDL (and create a positive model where the developers want to engage with us)

After you read the presentation, check out this video which I recorded also in Brazil: A developer's rant about security professionals  (he was one of the developers that was at the audience which really related to the problem of receiving security guidance from security 'consultants' that don't understand his app). 

The demos showed how O2 allowed this world to exist :)

Let me know what you think of it.

Dinis Cruz

Blog: http://diniscruz.blogspot.com
Twitter: http://twitter.com/DinisCruz
Web: http://www.owasp.org/index.php/O2

Dennis Groves

unread,
Oct 14, 2011, 1:13:15 AM10/14/11
to dinis cruz, OWASP .NET, owasp-...@lists.owasp.org, owasp-...@lists.owasp.org, owasp-o2...@lists.owasp.org
Absolutely Awesome! 

(sorry, if you got this twice - I used the 'wrong email address' the first time...)

_______________________________________________
Owasp-london mailing list
Owasp-...@lists.owasp.org
https://lists.owasp.org/mailman/listinfo/owasp-london


Reply all
Reply to author
Forward
0 new messages