Stefania Chaplin
Secure Code Superstars: Empowering Developers and Surpassing Security Challenges Together
#1about 3 minutes
Understanding the recurring bug cycle and its impact
Recurring vulnerabilities like SQL injection create a cycle of context switching and developer burnout that goes beyond the OWASP Top 10.
#2about 3 minutes
Breaking down silos between developers, security, and operations
Misaligned KPIs and communication gaps between developers, security, and operations teams can be bridged by creating a culture of security champions.
#3about 6 minutes
Integrating security tools into the developer workflow
Empower developers with free OWASP tools like Zap and dependency checkers, and integrate automated scanning and just-in-time training directly into the CI/CD pipeline.
#4about 2 minutes
Sharpening the saw with personal well-being and learning
Applying the "sharpen the saw" principle through continuous learning and maintaining personal balance helps prevent burnout and improves developer flow.
#5about 2 minutes
Key strategies for building a secure code culture
Build a stronger security posture by prioritizing time to learn, addressing technical debt, adopting an empathetic approach, and using OWASP resources.
#6about 1 minute
Transitioning from a developer to a security role
To move from development to security, start internal conversations, join a security champion program, and explore your company's specific security priorities.
#7about 1 minute
Finding resources for continuous security learning
Beyond the OWASP Top 10, developers can learn security through internal hackathons, online platforms, community meetups, and exploring red team versus blue team concepts.
Related jobs
Jobs that call for the skills explored in this talk.
Featured Partners
Related Videos
Building Security Champions
Tanya Janca
Don't Be A Naive Developer: How To Avoid Basic Cybersecurity Mistakes
Tino Sokic
Simple Steps to Kill DevSec without Giving Up on Security
Isaac Evans
Real-World Security for Busy Developers
Kevin Lewis
Unleashing the Power of Developers: Why Cybersecurity is the Missing Piece?!?
Tino Sokic
Why Security-First Development Helps You Ship Better Software Faster
Michael Wildpaner
Security Pitfalls for Software Engineers
Jasmin Azemović
What The Hack is Web App Sec?
Jackie
From learning to earning
Jobs that call for the skills explored in this talk.
Software Development Engineer-Security Automation, AWS Security OpRes
Amazon
Canton de Courbevoie-1, France
Java
Linux
NoSQL
Python
TypeScript
+2
Software Security Lead, DevSecOps, .NET, C#, Microsoft Stack, Remote
Carrington Recruitment Solutions Limited
Charing Cross, United Kingdom
Remote
€85K
Senior
.NET
Azure
Development Security Operations (DevSecOps) Engineer
pawaTech
Municipality of Madrid, Spain
GIT
Linux
Kubernetes
Continuous Integration
Cybermenaces des produits, quelles activités et stratégies adopter pour permettre au product security officer d'y faire face?
Wavestone
Canton of Courbevoie-2, France





