Teaser | The Real Limit of Automation: Problem Detection vs Problem Solving

Channel:
Subscribers:
4,690
Published on ● Video Link: https://www.youtube.com/watch?v=pXmGF8BCoNI



Duration: 0:00
9 views
0


The latest episode of Redefining CyberSecurity on ITSPmagazine featured a thought-provoking discussion about integrating human factors into secure software development. Host Sean Martin was joined by Dr. Kelsey Fulton, Assistant Professor at the Colorado School of Mines, and Julie Haney, a computer scientist at the National Institute of Standards and Technology. The conversation explored how human-centered approaches can strengthen secure software practices and address challenges in the development process.

A Human-Centered Approach to Security

Dr. Fulton shared how her research focuses on the human factors that impact secure software development. Her journey began during her graduate studies at the University of Maryland, where she was introduced to the intersection of human behavior and security in a course that sparked her interest. Her projects, such as investigating the transition from C to Rust programming languages, underscore the complexity of embedding security into the software development lifecycle.

The Current State of Secure Development

One key takeaway from the discussion was the tension between functionality and security in software development. Developers often prioritize getting a product to market quickly, leading to decisions that sideline security considerations. Dr. Fulton noted that while developers typically have good intentions, they often lack the resources, tools, and organizational support necessary to incorporate security effectively.

She highlighted the need for a “security by design” approach, which integrates security practices from the earliest stages of development. Embedding security specialists within development teams can create a cultural shift where security becomes a shared responsibility rather than an afterthought.

Challenges in Adoption and Education

Dr. Fulton’s research reveals significant obstacles to adopting secure practices, including the complexity of tools and the lack of comprehensive education for developers. Even advanced tools like static analyzers and fuzzers are underutilized. A major barrier is developers’ perception that security is not their responsibility, compounded by tight deadlines and organizational pressures.

Additionally, her research into Rust adoption at companies illuminated technical and organizational challenges. Resistance often stems from the cost and complexity of transitioning existing systems, despite Rust’s promise of enhanced security and memory safety.

The Future of Human-Centered Security

Looking ahead, Dr. Fulton emphasized the importance of addressing how developers trust and interact with tools like large language models (LLMs) for code generation. Her team is exploring ways to enhance these tools, ensuring they provide secure code suggestions and help developers recognize vulnerabilities.

The episode concluded with a call to action for organizations to support research in this area and cultivate a security-first culture. Dr. Fulton underscored the potential of collaborative efforts between researchers, developers, and companies to improve security outcomes.

By focusing on human factors and fostering supportive environments, organizations can significantly advance secure software development practices.

____________________________

Guests:

Dr. Kelsey Fulton, Assistant Professor of Computer Science at the Colorado School of Mines

Website | https://cs.mines.edu/project/fulton-kelsey/

Julie Haney, Computer scientist and Human-Centered Cybersecurity Program Lead, National Institute of Standards and Technology [@NISTcyber]

On LinkedIn | https://www.linkedin.com/in/julie-haney-037449119/

____________________________

Host: Sean Martin, Co-Founder at ITSPmagazine [@ITSPmagazine] and Host of Redefining CyberSecurity Podcast [@RedefiningCyber]

On ITSPmagazine | https://www.itspmagazine.com/sean-martin

____________________________

View This Show's Sponsors

Imperva | https://itspm.ag/imperva277117988

LevelBlue | https://itspm.ag/levelblue266f6c

ThreatLocker | https://itspm.ag/threatlocker-r974

___________________________

Watch this and other videos on ITSPmagazine's YouTube Channel

Redefining CyberSecurity Podcast with Sean Martin, CISSP playlist:

📺    • Redefining CyberSecurity Podcast | To...  

ITSPmagazine YouTube Channel:

📺    / @itspmagazine  

Be sure to share and subscribe!

___________________________

Resources

Kelsey Fulton Biography: https://kfulton121.github.io/

___________________________

To see and hear more Redefining CyberSecurity content on ITSPmagazine, visit:

https://www.itspmagazine.com/redefining-cybersecurity-podcast

Are you interested in sponsoring this show with an ad placement in the podcast?

Learn More 👉 https://itspm.ag/podadplc




Other Videos By ITSPmagazine


2025-01-07Elevate Your Leadership: Unlock Your True Potential! | A Conversation with Debra Benton | The Sou...
2025-01-07Elevate Your Leadership: Unlock Your True Potential! | A Conversation with Debra Benton | The Sou...
2025-01-01Are Red Dwarf Star Systems Habitable? | Stories From Space Podcast With Matthew S Williams
2025-01-01Are Red Dwarf Star Systems Habitable? | Stories From Space Podcast With Matthew S Williams
2024-12-23CES 2025: Exploring Tech Innovation and Human-Centric Trends with Brian Comiskey, Senior Director...
2024-12-23CES 2025: Exploring Tech Innovation and Human-Centric Trends with Brian Comiskey, Senior Director...
2024-12-23Teaser | CES 2025: Exploring Tech Innovation and Human-Centric Trends with Brian Comiskey
2024-12-23CES 2025: Exploring Tech Innovation and Human-Centric Trends with Brian Comiskey
2024-12-23CES 2025: Exploring Tech Innovation and Human-Centric Trends with Brian Comiskey, Senior Director...
2024-12-20Teaser | The Challenge of Proving the Value of Security
2024-12-20Teaser | The Real Limit of Automation: Problem Detection vs Problem Solving
2024-12-20From Code to Confidence: The Role of Human Factors in Secure Software Development | Human-Centere...
2024-12-20From Code to Confidence: The Role of Human Factors in Secure Software Development | Human-Centere...
2024-12-20From Code to Confidence: The Role of Human Factors in Secure Software Development
2024-12-19Teaser | Why Crawling Security Approaches Fail Miserably
2024-12-18Simplifying Cybersecurity for IT Service Providers: A New Era of Cyber Protection for SMBs
2024-12-18Teaser | Dream Big: Flexible Solutions Without the Risk!
2024-12-18Simplifying Cybersecurity for IT Service Providers: A New Era of Cyber Protection for Small and M...
2024-12-18Simplifying Cybersecurity for IT Service Providers: A New Era of Cyber Protection for Small and M...
2024-12-17Will AI End Evolution? Exploring the Next Stage of Society with JJ Jerome, Author of Evolution Ended
2024-12-17The Real Problem of Humanity | Redefining Society and Technology Teaser