On Improving Security with Steve Wilson | HackerNoon

  • 📰 hackernoon
  • ⏱ Reading Time:
  • 47 sec. here
  • 2 min. at publisher
  • 📊 Quality Score:
  • News: 22%
  • Publisher: 51%

United States Headlines News

United States Latest News,United States Headlines

'On Improving Security with Steve Wilson' by sloggingapp slogging slackblogging

In my previous role, I got into a situation where a team of hundreds of engineers got completely derailed by a security team running a bad "code scanning" product. It generated huge amounts of technical debt for us , but led to almost no improvements in our security posture. It slipped schedules and created huge frustration.

Not only must security teams deal with common vulnerabilities and exposures , or risks associated with open-source libraries, but serverless environments also introduce threats driven by broken access control, particularly when developers need to add permissions to support the necessary functionality. In this situation, the developer is often instructed by the security team to select from a list of predefined permissions that provides more privileged access than is necessary.

Similarly, DevSecOps teams should also be mindful of “sprawl” within serverless functions. Functions can have multiple versions, in different regions and on multiple accounts, making it hard for management and security teams to understand the overall size of the serverless inventory at the organization level. To address this, they will need strong asset management controls relevant to both cloud infrastructure and serverless.

 

Thank you for your comment. Your comment will be published after being reviewed.
Please try again later.
We have summarized this news so that you can read it quickly. If you are interested in the news, you can read the full text here. Read more:

 /  🏆 532. in US

United States Latest News, United States Headlines

Similar News:You can also read news stories similar to this one that we have collected from other news sources.

Trump-picked FBI director 'will be prosecuted and imprisoned': Steve BannonThe former Trump administration official called Christopher Wray 'one of many criminals in leadership' in a social media post on Saturday. want to see me without a bra? Just incredible that Americans still vote for these Repubgants…. Steve, go to JAIL!!!
Source: Newsweek - 🏆 468. / 52 Read more »

2022 election: Q&A with Steve Padilla, California State Senate District 18 candidateSteve Padilla is one of two candidates running for a seat in the California State Senate District 18.
Source: sdut - 🏆 5. / 95 Read more »

Loki: Tom Hiddleston Reveals Owen Wilson Improvised Key SceneLoki star TomHiddleston talks about how OwenWilson improvised keys scene in the second episode of the MarvelStudios series.
Source: ComicBook - 🏆 65. / 68 Read more »

Steve Breen's cartoon caption contest for April 29, 2022Steve Breen's cartoon caption contest for April 29, 2022 [Opinion]
Source: sdut - 🏆 5. / 95 Read more »

Happy 1-Year Podiversary, Hackers! | HackerNoon'Happy 1-Year Podiversary, Hackers!' by amymtom hackernoonpodcast podcast
Source: hackernoon - 🏆 532. / 51 Read more »

Exploring Social AR with Aladin Ben | HackerNoonHackernoon got an exclusive interview with Aladin Ben, Meekey founder, at the Non-fungible Conference, who shared insights on his experience with NFTs and AR.
Source: hackernoon - 🏆 532. / 51 Read more »