YoVDO

Turbo Eureka

Offered By: NDC Conferences via YouTube

Tags

NDC Conferences Courses DevOps Courses Security Compliance Courses Compliance Management Courses

Course Description

Overview

Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
Explore how a leading financial software provider extended DevOps principles to prepare for ISO27001 security certification in this NDC Security 2023 conference talk. Learn about Stacc's journey to align multiple companies, teams, and tech stacks with a common security standard. Discover how DevOps practices helped avoid a "one-platform-to-rule-them-all" approach, the lessons learned along the way, and ongoing challenges. Gain insights into merging security, regulations, and compliance with DevOps culture, addressing software supply chain risks, insider threats, and qualification processes. Understand the impact of audits, software development lifecycle adjustments, and the balance between smart developers and compliance requirements. Walk away with key takeaways on successfully integrating security practices into existing DevOps workflows.

Syllabus

Introduction
About Stack
About Mike Long
How can we merge these two worlds
Knight Capital
Audits
Knight Capital Report
Software Process
Software development culture
Smart developers
Compliance and security
Provenance
Mitigation
Software Supply Chain
Insider Threat
Qualification
Work stuff gets delayed
Back to the story
Another security control
Software development lifecycle
Back to Stack
Key takeaways


Taught by

NDC Conferences

Related Courses

Introduction to Cybersecurity
SecurityScoreCard via Udacity
IBM Cybersecurity Fundamentals
IBM via edX
Preparing to Manage Security and Privacy Risk with NIST's Risk Management Framework
Pluralsight
Configuring Microsoft Azure Active Directory Privileged Identity Management
Pluralsight
Office 365: Plan for Exchange Online and Skype for Business Online (Office 365/Microsoft 365)
LinkedIn Learning