Overview
Syllabus
Introduction
Tactical Approach
Lightweight
Agile
Operational Excellence
Code Yellow
Authority Buyin
Application Assessments
Office Hours
Service Catalog
Product Review
Internal Assessments
Assessment Pitfalls
Missing the Big Picture
Application Incident Response
Critical Bugs
Handling Incoming Reports
Case Study Changing Faces
Bug Reporting
Push Code Fast
Cleanup
Taste Study
What We Found
Bug Severity Table
Communication
Example Email
Setting Expectations
Collaboration
Bug Bounty Programs
Case Study
How did we get to our program
Our private bug bounty program
Signaltonoise ratio
Impact on business
Signal to noise ratio
Key takeaways
Technology
Taught by
Black Hat