Navigating DevOps Security journey at Scale using OWASP SAMM 2.0

0 minutes de lecture

| Talk |

Hardik Parekh, Senior Director, Head of Product & Application Security, Owasp Samm

OWASP SAMM is the prime maturity model for software assurance that provides an effective and measurable way for all types of organizations to analyze and improve their software security posture. There are many elements to the equation: company risk profile, organizational structure, different stakeholders, technology stacks, tools and processes, and so forth. Implementing software assurance will have a significant impact on the organization. Yet, trying to achieve this without a good framework is most likely leading to just marginal and unsustainable improvements.

In this SnykCon talk Hardik Parekh reviews the new release of the SAMM model and demonstrates it to measure the maturity of an example DevOps team and how you can create a roadmap of activities.

Thirsty for more? Check out Snyk's DevSecOps Hub for resources and tips you can implement:

Up Next

Host Like Your Planet Depended On It

The cloud, machine learning, cryptocurrencies. We all know data centers use a lot of power. We’re not a million miles from the aviation industry. So, what are we doing about it?

Poursuivre la lecture
Patch Logo SegmentPatch Logo SegmentPatch Logo SegmentPatch Logo SegmentPatch Logo SegmentPatch Logo SegmentPatch Logo SegmentPatch Logo SegmentPatch Logo SegmentPatch Logo SegmentPatch Logo SegmentPatch Logo SegmentPatch Logo Segment

Snyk est une plateforme de sécurité des développeurs. S’intégrant directement aux outils, workflows et pipelines de développement, Snyk facilite la détection, la priorisation et la correction des failles de sécurité dans le code, les dépendances, les conteneurs et l’infrastructure en tant que code (IaC). Soutenu par une intelligence applicative et sécuritaire de pointe, Snyk intègre l'expertise de la sécurité au sein des outils de chaque développeur.

Démarrez gratuitementRéservez une démo en ligne

© 2024 Snyk Limited
Enregistré en Angleterre et au Pays de Galles

logo-devseccon