Does Agile Make Us Less Secure?

Does Agile Make Us Less Secure?

GOTO Conferences via YouTube Direct link

Product Owner/Service Manager is in control

34 of 41

34 of 41

Product Owner/Service Manager is in control

Class Central Classrooms beta

YouTube playlists curated by Class Central.

Classroom Contents

Does Agile Make Us Less Secure?

Automatically move to the next video in the Classroom when playback concludes

  1. 1 Intro
  2. 2 What is agile?
  3. 3 Individuals and Interactions over process and tools
  4. 4 Working software over comprehensive documentation
  5. 5 Customer collaboration over contract negotiation
  6. 6 Responding to change over following a plan
  7. 7 A process for assuring the preservation of confidentiality, integrity and availability of information
  8. 8 Criminal users on the internet
  9. 9 Platform Capitalism
  10. 10 Advanced Persistent Threats
  11. 11 Change control
  12. 12 Complexity theory
  13. 13 Simple Systems - A bike
  14. 14 Complicated systems - A car
  15. 15 Complex Systems - Traffic
  16. 16 Microservices and security
  17. 17 "Software that can fit in my head" James Lewis
  18. 18 Small systems focused on one business domain
  19. 19 Business based
  20. 20 Contracts for communication
  21. 21 Simple services with clear boundaries
  22. 22 Security must be an enabler for the team
  23. 23 The unit of delivery is the team
  24. 24 The unit of decision making is the team
  25. 25 Appoint a suitably senior and empowered decision maker
  26. 26 Workshop with whole team
  27. 27 Misuse cases
  28. 28 Applying ISO 27001 controls in agile
  29. 29 4 mechanisms: Avoid, Mitigate, Transfer, Accept
  30. 30 6 Controls: Deter, Prevent, Correct, Recover, Detect, Compensate
  31. 31 Record decisions against stories
  32. 32 Record deferred security debt
  33. 33 Security bugs are not evenly distributed
  34. 34 Product Owner/Service Manager is in control
  35. 35 Regular releases reduces risk
  36. 36 Infrastructure as testable code
  37. 37 Dealing with patches
  38. 38 One Government service released code once every 6 months
  39. 39 1 day = 4 years of practice
  40. 40 Summary
  41. 41 Agile doesn't make us less secure

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.