Kevin Lewis
Real-World Security for Busy Developers
#1about 9 minutes
Why developers must take ownership of application security
The growing responsibility for security falls on developers due to the high cost of breaches and the scarcity of dedicated security specialists.
#2about 3 minutes
Prevent leaked secrets with push protection and scanning
GitHub's push protection blocks credentials from being committed, while secret scanning finds existing keys across your entire repository history.
#3about 9 minutes
Write and review secure code using AI-powered tools
Use GitHub Copilot for security education and code reviews, while CodeQL automatically finds vulnerabilities that Copilot Autofix can then resolve.
#4about 5 minutes
Manage vulnerable dependencies in your software supply chain
Use dependency review to check for vulnerabilities and license compliance in pull requests, and let Dependabot proactively create fixes for you.
#5about 1 minute
Drive security fixes with organization-wide campaigns
Security campaigns allow teams to prioritize and track the remediation of specific vulnerabilities across all repositories in an organization.
#6about 3 minutes
How security tools integrate into the developer workflow
A summary of how tools like push protection, code scanning, and Dependabot fit seamlessly into each stage of development from the IDE to production.
Related jobs
Jobs that call for the skills explored in this talk.
Featured Partners
Related Videos
How GitHub secures open source
Joseph Katsioloudes
Simple Steps to Kill DevSec without Giving Up on Security
Isaac Evans
Why Security-First Development Helps You Ship Better Software Faster
Michael Wildpaner
Supply Chain Security and the Real World: Lessons From Incidents
Adrian Mouat
You click, you lose: a practical look at VSCode's security
Thomas Chauchefoin & Paul Gerste
Stop Committing Your Secrets - GIt Hooks To The Rescue!
Dwayne McDaniel
Secure Code Superstars: Empowering Developers and Surpassing Security Challenges Together
Stefania Chaplin
Programming secure C#/.NET Applications: Dos & Don'ts
Sebastian Leuer
From learning to earning
Jobs that call for the skills explored in this talk.
Software Development Engineer-Security Automation, AWS Security OpRes
Amazon
Canton de Courbevoie-1, France
Java
Linux
NoSQL
Python
TypeScript
+2
Software Security Lead, DevSecOps, .NET, C#, Microsoft Stack, Remote
Carrington Recruitment Solutions Limited
Charing Cross, United Kingdom
Remote
€85K
Senior
.NET
Azure
Fullstack Engineer (Secure)
Sysdig
Municipality of Madrid, Spain
Intermediate
React
Unit Testing
Microservices
Software Architecture
Software Engineer in Test (QA automation)
GitGuardian
Paris, France
Remote
Senior
Azure
Python
Cypress
CircleCI
+5




