Agile Application Security - Rich Smith, Michael Brunton-Spall, Laura Bell, Jim Bird

Agile Application Security

Enabling Security in a Continuous Delivery Pipeline
Buch | Softcover
376 Seiten
2017
O'Reilly Media (Verlag)
978-1-4919-3884-3 (ISBN)
53,95 inkl. MwSt
Agile continues to be the most adopted software development methodology among organizations worldwide, but it generally hasn't integrated well with traditional security management techniques. And most security professionals aren't up to speed in their understanding and experience of agile development.

To help bridge the divide between these two worlds, this practical guide introduces several security tools and techniques adapted specifically to integrate with agile development.

Written by security experts and agile veterans, this book begins by introducing security principles to agile practitioners, and agile principles to security practitioners. The authors also reveal problems they encountered in their own experiences with agile security, and how they worked to solve them.

You'll learn how to:
  • Add security practices to each stage of your existing development lifecycle
  • Integrate security with planning, requirements, design, and at the code level
  • Include security testing as part of your team's effort to deliver working software in each release
  • Implement regulatory compliance in an agile or DevOps environment
  • Build an effective security program through a culture of empathy, openness, transparency, and collaboration

Laura Bell is the founder and lead consultant for SafeStack, a security training, development, and consultancy firm. Laura is a software developer and penetration tester specializing in the management of information and application security risk within start-up and agile organizations. Over the past decade she has held a range of security and development roles and experienced first-hand the challenges of developing performant, scalable and secure systems. Historically the security function of an organization has been separate from the technical innovators, however Laura educates clients and audiences that in modern business this no longer works. Developers and implementers want to be empowered to understand their own security risk and address it.

Michael Brunton-Spall is the lead security architect for Government Technology, Government Digital Service, a service in the Cabinet Office of the UK Government. He helps set and assess security standards and advises on building secure services within government. He works as a consulting architect with a variety of government departments, helping them understand and implement Agile, DevOps, service operation and modern web architectures. Previously Michael has worked in the news industry, the gaming industry, the finance industry and the gambling industry.

Rich Smith, Director of Security Engineering at Etsy, leads a fearless band of cyber-guardians in defending Etsy's members, sellers, and knitted goods from the evils of the Interwebs. Prior to his role at Etsy, Rich co-founded Syndis, Iceland s premier technical security consultancy, where he continues to be an advisor and board member.

Erscheinungsdatum
Verlagsort Sebastopol
Sprache englisch
Maße 181 x 232 mm
Gewicht 670 g
Einbandart kartoniert
Themenwelt Informatik Netzwerke Sicherheit / Firewall
Informatik Software Entwicklung Agile Software Entwicklung
Schlagworte Agile software development • Agile Softwareentwicklung • security • Sicherheit
ISBN-10 1-4919-3884-6 / 1491938846
ISBN-13 978-1-4919-3884-3 / 9781491938843
Zustand Neuware
Haben Sie eine Frage zum Produkt?
Wie bewerten Sie den Artikel?
Bitte geben Sie Ihre Bewertung ein:
Bitte geben Sie Daten ein:
Mehr entdecken
aus dem Bereich
Das Lehrbuch für Konzepte, Prinzipien, Mechanismen, Architekturen und …

von Norbert Pohlmann

Buch | Softcover (2022)
Springer Vieweg (Verlag)
34,99