WeAreDevelopers LIVE Feb 24, 2022

Climate vs. Weather: How Do We Sustainably Make Software More Secure?

Code isn't regulated like physical infrastructure, but should it be? Learn how early threat modeling and high-confidence automation can secure your applications without killing delivery velocity.

Pause
Mute Enter Fullscreen
#1 about 4 min

Primary obstacles to achieving high software quality

Balancing initial development velocity against project budgets and deadlines frequently compromises structural security and testing.

#2 about 4 min

Addressing the lack of security in academic education

Integrating secure system development lifecycles into standard computer science curricula helps build foundational industry skills.

#3 about 11 min

Building multidisciplinary teams and integrating secure code reviews

Leveraging specialized team members and interactive code reviews offers a sustainable alternative to expecting uniform security expertise.

#4 about 5 min

Mandating software engineering regulations and security standards

Implementing government regulations and official industry standards could establish necessary accountability for software stability.

#5 about 8 min

Defining fundamental starting points for software application security

Commencing projects with strict security requirements and creative threat modeling prevents architectural flaws early.

#6 about 11 min

Implementing pragmatic security automation and analysis tools

Configuring linters and static analysis tools with custom rules reduces noise and builds maintainable testing pipelines.

#7 about 7 min

Envisioning idealistic improvements for software development workflows

Experts suggest mandatory security phases, reduced dependencies, and centralized knowledge bases as ideal industry transformations.

#8 about 5 min

Finding personal fulfillment in the cybersecurity industry

Protecting organizations and continuously exchanging innovative engineering solutions creates a highly rewarding professional environment.

Matching moments

2:05 min

Making security a foundational feature in software development

Eileen Uchitelle Eileen Uchitelle +1 · Coffee With Developers

3:58 min

Identifying bottlenecks in traditional software security approaches

Nazneen Rupawalla · WWC 2022

7:16 min

Addressing developer adoption and future software security risks

Anna Fritsch-Weninger · LIVE

2:08 min

Balancing engineering scale with limited application security resources

Michael Wildpaner Michael Wildpaner · WWC 2025

4:58 min

Scaling security teams through developer advocates

Tanya Janca · WWC 2021

2:30 min

Bridging the gap between developers and security tools

Bozidar Spirovski Bozidar Spirovski +1 · Coffee With Developers

Upcoming sessions on this topic

Open session

World Congress 2026 North America

Practical Threat Modeling for Software Developers

Mudassir Syed

Lead Security Software Engineer

Mudassir Syed
Open session

World Congress 2026 North America

Don’t kill my Vibes - Simple Steps to Stay Secure when Vibe Coding

Isaac Evans

Co-founder & CEO of Semgrep

Isaac Evans
Open session

World Congress 2026 North America

Your Threat Model Is Lying to You: Why Modeling the Design Isn’t Enough in 2026

Farshad Abasi

CEO/Founder, Eureka DevSecOps + Forward Security

Farshad Abasi
Open session

World Congress 2026 North America

Secure-by-Inclusion: Preventing Accessibility Barriers from Becoming Security Vulnerabilities

Radostina (Ina) Tsvetkova

Norwegian Directorate of Labour and Welfare (NAV), Senior Advisor in Digital Accessibility and Inclusive Design

Radostina (Ina) Tsvetkova
Open session

World Congress 2026 North America

On the Public Clock: Open-Source Defense When You're Not in the Club

Nicholas Muy

VP Engineering Platform and Security at Scrut.io

Nicholas Muy
Open session

World Congress 2026 North America

Red Teaming Your LLM App -- A Hands-On Threat Model You Can Reuse

Saloni Garg

Senior ML Engineer at Adobe

Saloni Garg