Upgrade to Pro
— share decks privately, control downloads, hide ads and more …
Speaker Deck
Features
Speaker Deck
PRO
Sign in
Sign up for free
Search
Search
Shifting Left Securely
Search
Matt Stratton
April 28, 2016
Technology
0
200
Shifting Left Securely
Matt Stratton
April 28, 2016
Tweet
Share
More Decks by Matt Stratton
See All by Matt Stratton
Talk Selection As Mockumentary Film Editing
mattstratton
0
56
How Do You Infect Your Organization With Humane Ops?
mattstratton
0
150
Incidents and Accidents
mattstratton
0
180
Everything Is A Product - How To Apply Product Management Practices to Technology Services
mattstratton
0
840
The Handwaver's Guide to Contributing To Open Source - ChefConf 2017
mattstratton
0
570
Shifting Left Securely - DevOpsDays Denver 2017 Edition
mattstratton
0
890
Making Infrastructure S'mores With Chef (ThatConference edition)
mattstratton
0
560
Making Infrastructure S'mores With Chef (KC DevOps edition)
mattstratton
0
79
The Five Love Languages of DevOps
mattstratton
2
160
Other Decks in Technology
See All in Technology
事業価値と Engineering
recruitengineers
PRO
1
190
AIが住民向けコンシェルジュに?Amazon Connectと生成AIで実現する自治体AIエージェント!
yuyeah
0
260
「守る」から「進化させる」セキュリティへ ~AWS re:Inforce 2025参加報告~ / AWS re:Inforce 2025 Participation Report
yuj1osm
1
110
認知戦の理解と、市民としての対抗策
hogehuga
0
310
Devinを使ったモバイルアプリ開発 / Mobile app development with Devin
yanzm
0
180
Figma + Storybook + PlaywrightのMCPを使ったフロントエンド開発
yug1224
4
210
モバイルアプリ研修
recruitengineers
PRO
2
220
Oracle Base Database Service:サービス概要のご紹介
oracle4engineer
PRO
2
20k
Evolution on AI Agent and Beyond - AGI への道のりと、シンギュラリティの3つのシナリオ
masayamoriofficial
0
170
Preferred Networks (PFN) とLLM Post-Training チームの紹介 / 第4回 関東Kaggler会 スポンサーセッション
pfn
PRO
1
180
自治体職員がガバクラの AWS 閉域ネットワークを理解するのにやって良かった個人検証環境
takeda_h
2
380
人と組織に偏重したEMへのアンチテーゼ──なぜ、EMに設計力が必要なのか/An antithesis to the overemphasis of people and organizations in EM
dskst
5
600
Featured
See All Featured
The Success of Rails: Ensuring Growth for the Next 100 Years
eileencodes
46
7.6k
The Psychology of Web Performance [Beyond Tellerrand 2023]
tammyeverts
49
3k
Unsuck your backbone
ammeep
671
58k
A better future with KSS
kneath
239
17k
YesSQL, Process and Tooling at Scale
rocio
173
14k
What’s in a name? Adding method to the madness
productmarketing
PRO
23
3.6k
JavaScript: Past, Present, and Future - NDC Porto 2020
reverentgeek
50
5.5k
Why Our Code Smells
bkeepers
PRO
338
57k
A designer walks into a library…
pauljervisheath
207
24k
10 Git Anti Patterns You Should be Aware of
lemiorhan
PRO
656
61k
Building Applications with DynamoDB
mza
96
6.6k
Building Flexible Design Systems
yeseniaperezcruz
328
39k
Transcript
SHIFTING LEFT SECURELY
WHOAMI
QUALITY AND INNOVATION HISTORICALLY, A TRADEOFF
None
None
None
None
None
None
None
None
None
VERSIONED MODULARIZED TESTED
HOW DOES THIS HELP ME WITH SECURITY?
None
None
None
None
TO REVIEW > Treat your pipeline as code > Trust
(but verify) your domain experts > Share the cooking > Use your production audit tests in your pipeline > Did I mention test?
QUESTIONS?
RESOURCES > Sidney Dekker - Field Guide to Human Error
> github.com/mattstratton/shift-left-securely > twitter.com/mattstratton > speakerdeck.com/mattstratton > arresteddevops.com