
Robyn Lundin -- Planning & organizing a penetration test as an AppSec team
The Application Security Podcast
00:00
SDL DLC
I've heard so many stories about people. They pay all this money to do a pen test and then the pen test are completely destroys the thing they built on the first day. I think one of the somewhat neglected parts of the DLC can be developer education, making sure that that your devs can kind of Threat model themselves. Those are three really good starts for picking out your low hanging fruit.
Transcript
Play full episode