Agile Security for Modern Threats

No ratings

Presented at BSidesAtlanta 2019 by

"Agility isn’t a concept reserved for development teams pushing code into production every couple of hours. We as security professionals need to be agile too, something we have traditionally not done well. Our challenge is the fact that not only do we need to support the development team's goals, but everyone else’s goals as well. Even if change weren’t inevitable, our jobs would still be an uphill battle. Sprinkle in some evolving threats and a dash of new technologies, and we have a recipe for what seems like a lost cause. Talent shortages, budgetary restrictions, and opposing goals create an environment that pits us against other business units, and a continued perspective based on worst case scenarios aren’t doing us any favors. Whether you're a CISO or a penetration tester, we need a significant upgrade to our approach if we hope to enjoy success addressing the challenges velocity and scale bring our way. This presentation is about shifting our perceptions and embracing opportunities in unexpected places. We can’t be successful in a vacuum and with the right mixture of agility and collaboration, security teams can adapt along with the pace of business. Let’s stop being the group of “no” and start being the group of “how” setting ourselves up for the best opportunity for success. Join the conversation and be part of securing the future."