Conway’s Law and DevSecOps: How communication affects security
Reported today on TheNextWeb
For the full article visit: https://thenextweb.com/podium/2020/01/23/conways-law-and-devsecops-how-communication-affects-security/
Conway's Law and DevSecOps: How communication affects security
New communication models could mean new ways of doing security
Conway's Law describes how companies develop software. Broadly speaking, it means that software projects tend to be designed and delivered based on the same approach that a company takes to communicating internally. Conway's Law is quoted as:
Any organization that designs a system (defined more broadly here than just information systems) will inevitably produce a design whose structure is a copy of the organization's communication structure.
Today, we have seen DevOps and DevSecOps get adopted more readily in organizations. So will security teams find that their own approaches to keeping their companies secure will be affected by company communications models too?
Conway's Law … is it more of a guideline today?
The first element to consider here is how Conway's Law measures up today. Is it still true as it was in the past, and if so, why?
The first point to consider is how many different ty