Building Real Software
Developing and Maintaining Secure and Reliable Software in the Real World
Tuesday, June 26, 2012
Different ways of looking at security bugs
›
When a development team first starts to take application security seriously, they'll end up with a list (probably a long list) of securi...
Thursday, June 21, 2012
Sooner or Later: Deliver Early or Minimize Waste
›
There’s an obvious but important tension in Lean/Agile development around when to make decisions. Between the fundamental Agile position tha...
9 comments:
Thursday, June 14, 2012
Where do Security Requirements come from?
›
One of the problems in building a secure application is that it’s not always clear what the security requirements are and where they are sup...
Friday, June 8, 2012
Are Agile plans Better because they are Feature-Based?
›
In Agile Estimating and Planning , Mike Cohn quotes Jim Highsmith on why Agile projects are better: “One of the things I keep telling peop...
1 comment:
Tuesday, June 5, 2012
Agile Estimating: Story Points and Decay
›
I’m re-reading Mike Cohn’s Agile Estimating and Planning . It's the best book I've found on this and worth reading, even if he gets ...
1 comment:
Monday, June 4, 2012
Continuous Deployment and Security: Ask the Expert Nick Galbreath
›
Another excellent interview in the "Ask the Expert" series on AppSec, with Nick Galbreath at Etsy, who looks at how teams can foll...
Wednesday, May 23, 2012
The pursuit of protection: How much testing is “enough”?
›
I’m definitely not a testing expert. I’m a manager who wants to know when the software that we are building is finished, safe and ready to s...
3 comments:
‹
›
Home
View web version