WeAreDevelopers LIVE • Feb 24, 2022

Climate vs. Weather: How Do We Sustainably Make Software More Secure?

Code isn't regulated like physical infrastructure, but should it be? Learn how early threat modeling and high-confidence automation can secure your applications without killing delivery velocity.

Pause
Mute Enter Fullscreen
#1 about 4 min

Primary obstacles to achieving high software quality

Balancing initial development velocity against project budgets and deadlines frequently compromises structural security and testing.

#2 about 4 min

Addressing the lack of security in academic education

Integrating secure system development lifecycles into standard computer science curricula helps build foundational industry skills.

#3 about 11 min

Building multidisciplinary teams and integrating secure code reviews

Leveraging specialized team members and interactive code reviews offers a sustainable alternative to expecting uniform security expertise.

#4 about 5 min

Mandating software engineering regulations and security standards

Implementing government regulations and official industry standards could establish necessary accountability for software stability.

#5 about 8 min

Defining fundamental starting points for software application security

Commencing projects with strict security requirements and creative threat modeling prevents architectural flaws early.

#6 about 11 min

Implementing pragmatic security automation and analysis tools

Configuring linters and static analysis tools with custom rules reduces noise and builds maintainable testing pipelines.

#7 about 7 min

Envisioning idealistic improvements for software development workflows

Experts suggest mandatory security phases, reduced dependencies, and centralized knowledge bases as ideal industry transformations.

#8 about 5 min

Finding personal fulfillment in the cybersecurity industry

Protecting organizations and continuously exchanging innovative engineering solutions creates a highly rewarding professional environment.

Matching moments

2:05 min

Making security a foundational feature in software development

Eileen Uchitelle Eileen Uchitelle +1 · Coffee With Developers

3:58 min

Identifying bottlenecks in traditional software security approaches

Nazneen Rupawalla · World Congress 2022

7:16 min

Addressing developer adoption and future software security risks

Anna Fritsch-Weninger · LIVE

2:08 min

Balancing engineering scale with limited application security resources

Michael Wildpaner Michael Wildpaner · World Congress 2025

4:58 min

Scaling security teams through developer advocates

Tanya Janca · World Congress 2021

2:30 min

Bridging the gap between developers and security tools

Bozidar Spirovski Bozidar Spirovski +1 · Coffee With Developers

Upcoming sessions on this topic

Open session

World Congress 2026 North America

September 24, 2026 · 14:50–15:20

Stage 1

The Era of Machine-Driven Defense is Here: Headless Security

Loris Degioanni

Founder & CTO of Sysdig

Loris Degioanni
Open session

World Congress 2026 North America

September 24, 2026 · 16:00–18:00

Stage 13

Practical Threat Modeling for Software Developers

Mudassir Syed

Lead Security Software Engineer

Mudassir Syed
Open session

World Congress 2026 North America

September 25, 2026 · 15:00–17:00

Stage 12

Secure development from pull request to production with GitHub

Sam Jarvinen

Senior Solutions Engineer, GitHub

Sam Jarvinen
Open session

World Congress 2026 North America

September 25, 2026 · 09:00–09:30

Stage 4

Don’t kill my Vibes - Simple Steps to Stay Secure when Vibe Coding

Isaac Evans

Founder & CEO of Semgrep

Isaac Evans
Open session

World Congress 2026 North America

September 24, 2026 · 16:10–16:40

Stage 7

Your Threat Model Is Lying to You: Why Modeling the Design Isn’t Enough in 2026

Farshad Abasi

CEO/Founder, Eureka DevSecOps + Forward Security

Farshad Abasi
Open session

World Congress 2026 North America

September 25, 2026 · 09:40–10:10

Stage 5

Secure-by-Inclusion: Preventing Accessibility Barriers from Becoming Security Vulnerabilities

Radostina (Ina) Tsvetkova

Norwegian Directorate of Labour and Welfare (NAV), Senior Advisor in Digital Accessibility and Inclusive Design

Radostina (Ina) Tsvetkova