DevSecOps, Compliance GRC, and the Future of Application Security - Francesco Cipollone - ASW #177
Dec 13, 2021
34:49
forum Ask episode
view_agenda Chapters
auto_awesome Transcript
info_circle Episode notes
DevSecOps has been traditionally very people centric. It is hard to measure software security and the landscape is becoming increasingly more complex with container, cloud, and infrastructure. Driving an appsec program at scale is often an art that only few can master and the majority of organizations remain uncovered from an appsec perspective. Measuring DevSecOps and evolving risk-based vulnerability management is a must. Bringing along risk people and GRC has traditionally been challenging.