From the course: Building an Application Security Program
Unlock this course with a free trial
Join today to access over 25,500 courses taught by industry experts.
Understanding the development process
From the course: Building an Application Security Program
Understanding the development process
- [Instructor] Before we can build an application security program, we need to understand how developers work. It really helps if we understand how they build and release software. So let's talk about a few different methodologies devs teams can use. Organizations develop software differently. Some organizations have been around a long time, so they tend to be more siloed or they tend to have longer processes in place and haven't adapted to a more modern development lifecycle. Others were born in the cloud, born into Agile, and so DevSecOps is a natural progression for them and they move very fast. It's important to understand how your dev team works. Every dev team works differently. In order to be effective in building an application security program, you need to understand how your dev team works. You want to integrate into their process. It's also important to note that larger organizations may have multiple methods.…