Artwork

เนื้อหาจัดทำโดย Richard Seidl | Software Development & Testing Expert, Richard Seidl | Software Development, and Testing Expert เนื้อหาพอดแคสต์ทั้งหมด รวมถึงตอน กราฟิก และคำอธิบายพอดแคสต์ได้รับการอัปโหลดและจัดหาให้โดยตรงจาก Richard Seidl | Software Development & Testing Expert, Richard Seidl | Software Development, and Testing Expert หรือพันธมิตรแพลตฟอร์มพอดแคสต์ของพวกเขา หากคุณเชื่อว่ามีบุคคลอื่นใช้งานที่มีลิขสิทธิ์ของคุณโดยไม่ได้รับอนุญาต คุณสามารถปฏิบัติตามขั้นตอนที่แสดงไว้ที่นี่ https://th.player.fm/legal
Player FM - แอป Podcast
ออฟไลน์ด้วยแอป Player FM !

Stop Inventing Your Own Encryption - Eoin Woods

21:13
 
แบ่งปัน
 

Manage episode 499193905 series 3682604
เนื้อหาจัดทำโดย Richard Seidl | Software Development & Testing Expert, Richard Seidl | Software Development, and Testing Expert เนื้อหาพอดแคสต์ทั้งหมด รวมถึงตอน กราฟิก และคำอธิบายพอดแคสต์ได้รับการอัปโหลดและจัดหาให้โดยตรงจาก Richard Seidl | Software Development & Testing Expert, Richard Seidl | Software Development, and Testing Expert หรือพันธมิตรแพลตฟอร์มพอดแคสต์ของพวกเขา หากคุณเชื่อว่ามีบุคคลอื่นใช้งานที่มีลิขสิทธิ์ของคุณโดยไม่ได้รับอนุญาต คุณสามารถปฏิบัติตามขั้นตอนที่แสดงไว้ที่นี่ https://th.player.fm/legal
Making Security a First-Class Citizen

"Avoid custom security solutions whenever possible - they often lead to vulnerabilities." - Eoin Woods

In this episode I talk with Eoin Woods about integrating security from the start of software development. Eoin, an expert in software architecture, explains why security often gets overlooked until the last minute. We explore why engineers find security daunting and discuss making it a standard part of development. Eoin shares design principles like defense in depth and cautions against custom security solutions.

Eoin Woods is an independent consultant in the fields of software architecture, green software and software engineering. He is formerly the CTO of Endava, where he was responsible for software engineering and capability development for over 10,000 delivery staff across the world. Prior to Endava he has developed databases, created security software and designed way too many systems to move money around. Outside his day job he is interested in software architecture, software security and sustainable (or "green") software. He is a regular conference speaker, has co-authored three books on software architecture and was the recipient of the 2018 Linda Northrup Award for Software Architecture, from the Software Engineering Institute at CMU

Highlights:

  • Security should be integrated from the start of software development.
  • Engineers often find security overwhelming and ignore it until too late.
  • Design principles like defense in depth simplify security.
  • Avoiding custom security solutions is crucial.
  • Open and closed source tools each have benefits and challenges.
  continue reading

บท

1. Introduction (00:00:00)

2. Effective Security Design Principles (00:04:16)

3. Abuser Stories in Threat Modeling (00:09:41)

4. Network Security and Zero-Day Risks (00:11:55)

5. Prioritizing Performance Over Security (00:16:07)

6. Auditing and Security Oversights (00:16:58)

7. Security Insights for Project Development (00:20:24)

22 ตอน

Artwork
iconแบ่งปัน
 
Manage episode 499193905 series 3682604
เนื้อหาจัดทำโดย Richard Seidl | Software Development & Testing Expert, Richard Seidl | Software Development, and Testing Expert เนื้อหาพอดแคสต์ทั้งหมด รวมถึงตอน กราฟิก และคำอธิบายพอดแคสต์ได้รับการอัปโหลดและจัดหาให้โดยตรงจาก Richard Seidl | Software Development & Testing Expert, Richard Seidl | Software Development, and Testing Expert หรือพันธมิตรแพลตฟอร์มพอดแคสต์ของพวกเขา หากคุณเชื่อว่ามีบุคคลอื่นใช้งานที่มีลิขสิทธิ์ของคุณโดยไม่ได้รับอนุญาต คุณสามารถปฏิบัติตามขั้นตอนที่แสดงไว้ที่นี่ https://th.player.fm/legal
Making Security a First-Class Citizen

"Avoid custom security solutions whenever possible - they often lead to vulnerabilities." - Eoin Woods

In this episode I talk with Eoin Woods about integrating security from the start of software development. Eoin, an expert in software architecture, explains why security often gets overlooked until the last minute. We explore why engineers find security daunting and discuss making it a standard part of development. Eoin shares design principles like defense in depth and cautions against custom security solutions.

Eoin Woods is an independent consultant in the fields of software architecture, green software and software engineering. He is formerly the CTO of Endava, where he was responsible for software engineering and capability development for over 10,000 delivery staff across the world. Prior to Endava he has developed databases, created security software and designed way too many systems to move money around. Outside his day job he is interested in software architecture, software security and sustainable (or "green") software. He is a regular conference speaker, has co-authored three books on software architecture and was the recipient of the 2018 Linda Northrup Award for Software Architecture, from the Software Engineering Institute at CMU

Highlights:

  • Security should be integrated from the start of software development.
  • Engineers often find security overwhelming and ignore it until too late.
  • Design principles like defense in depth simplify security.
  • Avoiding custom security solutions is crucial.
  • Open and closed source tools each have benefits and challenges.
  continue reading

บท

1. Introduction (00:00:00)

2. Effective Security Design Principles (00:04:16)

3. Abuser Stories in Threat Modeling (00:09:41)

4. Network Security and Zero-Day Risks (00:11:55)

5. Prioritizing Performance Over Security (00:16:07)

6. Auditing and Security Oversights (00:16:58)

7. Security Insights for Project Development (00:20:24)

22 ตอน

ทุกตอน

×
 
Loading …

ขอต้อนรับสู่ Player FM!

Player FM กำลังหาเว็บ

 

คู่มืออ้างอิงด่วน

ฟังรายการนี้ในขณะที่คุณสำรวจ
เล่น