A good discussion today covering two different articles, the first covers CISA's list of product security "bad practices", questioning whether it provides real value or is just content marketing. Then the discussion moves onto an article about Shift Left. The group debates whether it is truly more expensive to fix design flaws versus implementation bugs, noting the difficulty of quantifying the cost difference. They argue that the focus should be on providing proper training and incentives for developers to build secure software, rather than just adding more security tools.
Podden och tillhörande omslagsbild på den här sidan tillhör Izar Tarandach, Matt Coles, and Chris Romeo. Innehållet i podden är skapat av Izar Tarandach, Matt Coles, and Chris Romeo och inte av, eller tillsammans med, Poddtoppen.