It's like DevOps, but your security team is a lot happier
Alistair Chapman
Â
agc93
Â
agc93
Cloud Security Engineer
.NET MVP
Red Hatter
Walking, talking case of impostor syndrome
(likely going to be abandoned about 5 minutes in)
aka why is this so hard
Keep InfoSec informed
Make the most of tooling
Make the most of tooling
This took less than a minute to find!
First line of defence
First chance to f*** it up
The big one
The best code can't save you here
Metrics aren't just for performance
"Well, that's definitely bad"
Learn from incidents
Is it hard? Yes
Will it improve how you deliver software? Yes
or is it SecDevOps? DevOpsSec?
@agc93
(essentially everywhere)
Â
https://blog.agchapman.com/
https://github.com/agc93/