• Email
  • Like
  • Save
  • Private Content
  • Embed
 

Secure SDLC in the Real World: Pitfalls Discovered and Treasure Collected Along the Way

by

  • 509 views

:: History :: ...

:: History ::
Security BSides DFW 2011 - November 5, 2011 (Philip J Beyer) - http://lanyrd.com/skymf

:: Summary ::
I will present the difficulties and successes involved with realigning the development lifecycle at TEA using OpenSAMM.

:: Abstract ::
In "Pitfall!", a player must maneuver Pitfall Harry through a maze-like jungle to stay alive. Along the way, he must negotiate numerous hazards, try to recover treasure, and do it all in a limited time. Implementing OWASP's OpenSAMM in a large organization is kinda like playing that classic game. It's a little dangerous, requires vision, planning, and precision, and promises rewards. Like many of its size and with its mandate, the Texas Education Agency already has an SDLC. Enter Pitfall Phil. In an effort to build a stronger program, Pitfall Phil shifted the focus of TEA's application security program to align with OpenSAMM. I will present the hazards he discovered and the treasure he found while playing the game.

Accessibility

Categories

Upload Details

Uploaded via SlideShare as Adobe PDF

Usage Rights

© All Rights Reserved

Flagged as inappropriate Flag as inappropriate
Flag as inappropriate

Select your reason for flagging this presentation as inappropriate. If needed, use the feedback form to let us know more details.

Cancel

1 Embed 32

http://lanyrd.com 32

Statistics

Likes
1
Downloads
2
Comments
0
Embed Views
32
Views on SlideShare
477
Total Views
509
Post Comment
Edit your comment

Secure SDLC in the Real World: Pitfalls Discovered and Treasure Collected Along the Way Secure SDLC in the Real World: Pitfalls Discovered and Treasure Collected Along the Way Presentation Transcript