Upgrade to Pro — share decks privately, control downloads, hide ads and more …

INTERFACE by apidays 2023 - The New Developer D...

INTERFACE by apidays 2023 - The New Developer Dance, Grace Francisco, Pangea

INTERFACE by apidays 2023
APIs for a “Smart” economy. Embedding AI to deliver Smart APIs and turn into an exponential organization
June 28 & 29, 2023

The New Developer Dance
Grace Francisco, Chief Marketing Officer at Pangea

------

Check out our conferences at https://www.apidays.global/

Do you want to sponsor or talk at one of our conferences?
https://apidays.typeform.com/to/ILJeAaV8

Learn more on APIscene, the global media made by the community for the community:
https://www.apiscene.io

Explore the API ecosystem with the API Landscape:
https://apilandscape.apiscene.io/

apidays

July 11, 2023
Tweet

More Decks by apidays

Other Decks in Programming

Transcript

  1. Hi, I’m Grace Francisco Started my career as a software

    engineer at Lotus for IBM Became a developer evangelist for first-ever offering of Microsoft enterprise developer suite. Led developer relations for a variety of different companies across enterprise, fintech, consumer and gaming industries CMO and Head of DevRel for first Security Platform as a Service (SPaaS) for developers
  2. The New Developer Dance Production SHIFT LEFT OF LEFT =

    CODE! Security! Design Development Integration Testing Staging Security! Security! SHIFT LEFT = MONITORING AND TESTING
  3. How many of you have had to deal with a

    security issue? Padlocks ©2023 Grace Francisco @gracefr @pangeacyber
  4. How many of you submitted code that might not be

    secure? Church ©2023 Grace Francisco @gracefr @pangeacyber
  5. Do you think that you leave vulnerabilities in your code?

    48% Yes 33% No 33% It depends on the project 67% of developers admit to shipping code with vulnerabilities Source: Secure Code Warrior - The challenges (and opportunities)to improve software security (2023)
  6. It’s not going to happen to me! Hackers are getting

    faster at exploiting zero-day flaws.
  7. Ransomware trends With the ransomware being contained to a third

    of Yum! Brands UK outlets and the downtime being limited to 1 day – Yum! Brands have done relatively well recovering. The average amount of downtime for organizations when hit by Ransomware is approximately 24 days. Although the unnamed threat actors stole the company’s data, Yum! believes that at this stage, there is no evidence that customer databases were stolen.” “ MORTEN GAMMELGARD EVP, EMEA at BullWall
  8. According to ChatGPT In 2021, it is likely that there

    were thousands of different cybersecurity solutions available to detect software flaws. These solutions could include vulnerability scanners, intrusion detection systems, network security solutions, and more.” “
  9. Cybersecurity & Infrastructure Security Agency Consumer safety must be front

    and center in all phases of technology product lifecycle–with security designed in from the beginning.” “ JEN EASTERLY Director, Cybersecurity & Infrastructure Security Agency
  10. Secure by Design Principles Companies, of course, are working towards

    building secure products, but [are they] really thinking about how they take true ownership of the security outcomes of their customers,” Bob Lord, senior technical advisor at CISA, told Cybersecurity Dive in an interview. “It’s a mindset change that will need to trickle down throughout the entire organization.” “ Source: https://www.cybersecuritydive.com/news/software-debate-cisa-security/647698/
  11. Consider this • Educate and continuously learn - use solutions

    like Secure Code Warrior • Lead the Culture Shift ◦ Make security top of mind for you and your fellow devs ◦ “Security is Safety” - Jen Easterly ◦ Learn through every retro and incident response ◦ Women are especially suited for this
  12. Consider this • Use solutions throughout the development cycle but

    especially the beginning ◦ Design with security in mind ◦ Start with practice in code ◦ Meet developers where they are with solutions like Pangea which enables security functionality in code through API calls
  13. Start Delivering Secure User Experiences • Pangea.cloud is free to

    start • Join us on our Slack channel for any q’s
  14. Remember to Dance! Shift Left, Shift Left, Slide Right 80s

    ©2023 Grace Francisco @gracefr @pangeacyber
  15. The New Developer Dance Shift Left Continuously monitor and test

    for threats Shift Left of Left Secure by Design Secure by Default Slide Right Coding Groove 80s ©2023 Grace Francisco @gracefr @pangeacyber