Upgrade to Pro
— share decks privately, control downloads, hide ads and more …
Speaker Deck
Features
Speaker Deck
PRO
Sign in
Sign up for free
Search
Search
Security survival skills (for the adventurous d...
Search
Laura Bell
April 24, 2015
Technology
0
100
Security survival skills (for the adventurous developer)
Laura Bell
April 24, 2015
Tweet
Share
More Decks by Laura Bell
See All by Laura Bell
DIY security for the amateur superhero
ladynerd
0
240
Hackcon 11 - Protecting our people
ladynerd
0
220
Security in a container based world
ladynerd
0
140
Securing Microservice Architectures
ladynerd
2
340
Better Connected
ladynerd
0
57
Continuous Security
ladynerd
3
1.1k
Automated Human Vulnerability Scanning with AVA
ladynerd
3
2.6k
Blindsided by security
ladynerd
0
81
Practical tools for privacy audit
ladynerd
0
170
Other Decks in Technology
See All in Technology
30分でわかるデータ分析者のためのディメンショナルモデリング #datatechjp / 20250120
kazaneya
PRO
22
4.9k
月間60万ユーザーを抱える 個人開発サービス「Walica」の 技術スタック変遷
miyachin
1
130
OPENLOGI Company Profile
hr01
0
58k
SpiderPlus & Co. エンジニア向け会社紹介資料
spiderplus_cb
0
860
The future we create with our own MVV
matsukurou
0
2k
AWS re:Invent 2024 recap in 20min / JAWSUG 千葉 2025.1.14
shimy
1
100
今年一年で頑張ること / What I will do my best this year
pauli
1
220
生成AI × 旅行 LLMを活用した旅行プラン生成・チャットボット
kominet_ava
0
150
「隙間家具OSS」に至る道/Fujiwara Tech Conference 2025
fujiwara3
6
6.3k
Alignment and Autonomy in Cybozu - 300人の開発組織でアラインメントと自律性を両立させるアジャイルな組織運営 / RSGT2025
ama_ch
1
2.3k
データ基盤におけるIaCの重要性とその運用
mtpooh
3
380
いま現場PMのあなたが、 経営と向き合うPMになるために 必要なこと、腹をくくること
hiro93n
9
7.3k
Featured
See All Featured
How to Create Impact in a Changing Tech Landscape [PerfNow 2023]
tammyeverts
49
2.2k
10 Git Anti Patterns You Should be Aware of
lemiorhan
PRO
656
59k
RailsConf 2023
tenderlove
29
970
What’s in a name? Adding method to the madness
productmarketing
PRO
22
3.2k
Building a Modern Day E-commerce SEO Strategy
aleyda
38
7k
Imperfection Machines: The Place of Print at Facebook
scottboms
267
13k
VelocityConf: Rendering Performance Case Studies
addyosmani
327
24k
Practical Tips for Bootstrapping Information Extraction Pipelines
honnibal
PRO
10
860
The Success of Rails: Ensuring Growth for the Next 100 Years
eileencodes
44
7k
Why You Should Never Use an ORM
jnunemaker
PRO
54
9.1k
Designing for humans not robots
tammielis
250
25k
A Tale of Four Properties
chriscoyier
157
23k
Transcript
Security skills for the adventurous developer Laura Bell F O
U N D E R & L E A D C O N S U LTA N T S A F E S TAC K @ l a d y _ n e rd l a u r a @ s a fe s t a c k . i o
the world is a terrible place
the internet is a festering pool of toxic waste
None
somebody probably wants to do bad things to your computer
the security situation is beyond hope
None
we can build amazing things
None
None
None
doing this securely is hard
QQ
good adventures are supposed to be challenging
so stop waiting for someone to hand you these skills
on a plate
this is your adventure
let’s get started
prepare for the (inevitable) sequel protect your treasure build amazing
machines always have an escape route watch your back take the road well travelled prepare yourself plan your route (but keep it flexible)
prepare yourself
security starts with education
security is a team sport
plan your route (but keep it flexible)
design before implementation
examine all the options
security requires compromises
take the road well travelled
follow in someone else’s footsteps
know where to look for direction
expose yourself to scrutiny
build amazing machines
build amazing machines
security needs a robot army
immutable architectures help security
watch your back
know everything there is to know
use clever tools to build clever things
Watch for expensive distractions
more alarms and no surprises
security is the long game
watch for spies
always have an escape route
have a backup (plan)
be prepared to action it
store your backups securely
protect your treasure
know the value of what you have around you
vs. vs. value is relative
secure data starts with secure storage
so about those passwords?
secure systems need gatekeepers
prepare for the (inevitable) sequel
celebrate your successes
learn from your mistakes
prepare for the next adventure
the world is a terrible place
secure your own adventure
questions? Laura Bell F O U N D E R
& L E A D C O N S U LTA N T S A F E S TAC K @ l a d y _ n e rd l a u r a @ s a fe s t a c k . i o