Friday 

Room 3 

15:00 - 16:00 

(UTC+11

Talk (60 min)

So Long Secure Coding - Practical Steps for Securing the entire SDLC

If you haven't started to shift left yet, you're late. I mean, the whole world has been shifting application security left for about five years... especially in the wake of DevSecOps.

Security

But have we? Have we really?

Let's look at the data, however, from the language we use, the practices we recommend, the posts we make and the frameworks we share. We are still stuck in a world focused on "secure code" when in reality, the code itself is only part of the picture when protecting our data, systems and people.

This talk will examine why we focus on secure code and how we can move towards secure development. Laura will provide practical actions you can take throughout your SDLC, from initial ideas to ongoing systems maintenance and support that you can apply today, whether as an individual team member or across a more complex project.

Let's say goodbye to our dreams of secure code and embrace the idea of secure systems development.

Laura Bell

Laura Bell Main is recognized as a global leader in developing secure software. As the CEO of SafeStack, a leading secure development education platform, she helps software development leaders worldwide engage their entire team in cyber security. She is the co-author of "Agile Application Security" (O’Reilly Media) and "Security for Everyone" (Holloway).

Her work has been featured in many international publications, including WIRED and MIT Tech Review. She has presented at BlackHat USA, and RenderATL, as well as leading international software development and cyber security conferences.