Explore the concept of security culture in software development through this 36-minute conference talk by Wolfgang Goerlich at Converge 2015. Delve into the challenges of maintaining security in an era of ubiquitous computing and learn about the Security Culture Framework and Security Maturity Model. Discover practical approaches to sharing findings, addressing false positives, and understanding the "Truck Factor" concept, including its application to Bitcoin. Gain insights on determining exploit potential and strategies for shipping secure code. Enhance your understanding of integrating security practices into the development process for more robust software creation.
Overview
Syllabus
Introduction
What is the problem
Steady state of bad
ubiquity computed
Security Culture Framework
Security Maturity Model
Cookbooks
Sharing Findings
False positives
The Truck Factor
Bitcoin as a Truck Factor
Is it Exploitable
Shipping Good Code
Conclusion
Taught by
Wolfgang Goerlich