DevOpsDays Boston 2017- Iterative Security... by Tom McLaughlin

Channel:
Subscribers:
42,400
Published on ● Video Link: https://www.youtube.com/watch?v=UutS_8lpA-w



Duration: 33:04
73 views
0


DevOpsDays Boston 2017- Iterative Security: Security when you're not ready for the difficult stuff by Tom McLaughlin

Many of the poor security stances we see are the result of security paralysis. We’re presented with two options, being insecure or being secure, with little understanding of how to get from one state to another. With APTs, 0-days, logoed vulnerabilities that make us think we’re all gonna die, and the difficulties understanding these and other security subjects… Many of us choose to just work on other areas of our environment that need our attention because it’s not like there’s not enough work to do. Why bother investing your time and effort into something you don’t feel you can do well?

But security isn’t a single state. It’s an iterative process that adapts to your needs and risk profile. This session will take people through the process of going from bad to better today in a way that they can then reapply to improve again tomorrow. We’ll walk through the security topics that we obsess about and contrast them with the ways many organizations are actually breached. From there we’ll evaluate our risks, analyze our constraints, and finally apply this mode of thinking to make a bad situation better even if still not perfect.

You won’t walk away from this with the knowledge to prevent a breach from a determined state sponsored adversary. But you will walk away with an understanding of evaluating your risks and needs, evaluating paths forward, and finally performing action to make forward progress that you can apply to a nagging security issue in your environment.




Other Videos By Confreaks


2017-11-03Keep Ruby Weird 2017- Learning to see by Ben Scofield
2017-11-03Keep Ruby Weird 2017- Dungeons & Collaboration... by Rolen Le
2017-11-03Keep Ruby Weird 2017- An Atypical 'Performance' Talk by Chris Arcand
2017-11-03Keep Ruby Weird 2017- Algorithms to live by and why should we care by Elle Meredith
2017-11-02DevOpsDays Boston 2017- Developer-first Workflows on Kubernetes by Richard Li
2017-11-02DevOpsDays Boston 2017- Why your next QA job might be in Ops by Ed Rousseau
2017-11-02DevOpsDays Boston 2017- Service Mesh: What, Why, And How? by Flynn
2017-11-02DevOpsDays Boston 2017- Why You Need to Stop Using 'THE' Staging Server by Chloe Condon
2017-11-02DevOpsDays Boston 2017- Open Sourcing Your Infrastructure by Tobias Macey
2017-11-02DevOpsDays Boston 2017- How to make a Unicorn... by Franklin Mosley
2017-11-02DevOpsDays Boston 2017- Iterative Security... by Tom McLaughlin
2017-11-02DevOpsDays Boston 2017- Terrible Ideas In Lambda by Corey Quinn
2017-11-02DevOpsDays Boston 2017- Real-World Kubernetes For DevOps by Phil Lombardi
2017-11-02DevOpsDays Boston 2017- Your Emotional API by John Sawers
2017-11-02DevOpsDays Boston 2017- Crayons, Glue, and Stickers by Adam Kaufman
2017-11-02DevOpsDays Boston 2017- With Great Power Comes Great Responsibility... by Michael Sacks
2017-11-02DevOpsDays Boston 2017- Don’t be a bystander, be an Incident Commander! by Rachael Byrne
2017-10-23RubyConf 2008 - Writing Code That Doesn't Suck. Yehuda Katz
2017-10-20DevOpsDays Boston 2017- Lost Art of Troubleshooting by Leon Fayer
2017-10-20DevOpsDays Boston 2017 - SRE: Lessons from a Parallel Universe by David Blank-Edelman
2017-10-20DevOpsDays Boston 2017 - There is No Root Cause... by Matthew Boeckman