This presentation was recorded at GOTOpia February 2021. #GOTOcon #GOTOpia http://gotopia.eu Seth Vargo - Engineer at Google ABSTRACT Join Seth on this interactive journey where you’ll learn best practices (and best anti-practices) for building and managing a secure software system. You’ll leave with concrete tips for improving your security posture, fun stories from the field, and ways to make security scalable and approachable for your entire organization. In this talk, you'll learn: • How to build and manage a secure software system • How to improve your security posture • How to make security easy to use for your organization [...] TIMECODES 00:00 Intro 02:10 Past 06:40 Use version control 12:24 Make it easy and codified 16:24 Invest in automation 20:00 Participate early and often 21:44 Scale sub-linearly with stakeholders 24:46 Leverage cryptographic signatures 28:31 Don't fall into the binary trap 30:33 Embrace mistakes as learning opportunities 33:41 Summary Download slides and read the full abstract here: https://gotopia.eu/february-2021/sessions/1676/embarking-on-your-security-journey RECOMMENDED BOOKS Aaron Parecki • OAuth 2.0 Simplified • https://amzn.to/2A3IMOf Aaron Parecki • OAuth 2.0 Servers • https://amzn.to/3ecHEsz Aaron Parecki • The Little Book of OAuth 2.0 RFCs • https://amzn.to/3i7qnlC Erdal Ozkaya • Cybersecurity: The Beginner's Guide • https://amzn.to/2T6OIj3 Richer & Sanso • OAuth 2 in Action • https://amzn.to/3hXiAH6 Wilson & Hingnikar • Demystifying OAuth 2.0, OpenID Connect, and SAML 2.0 • https://amzn.to/2U8iLY2 https://twitter.com/GOTOcon https://www.linkedin.com/company/goto- https://www.facebook.com/GOTOConferences #Security #SecureSoftware #SecureSoftwareSystem #RiskManagement #VersionControl #Automation #EmbraceMistakes Looking for a unique learning experience? Attend the next GOTO conference near you! Get your ticket at https://gotopia.tech SUBSCRIBE TO OUR CHANNEL - new videos posted almost daily. https://www.youtube.com/user/GotoConferences/?sub_confirmation=1
Get notified about new features and conference additions.