Session Name: First steps away from YOLO-driven development: get started today with free, open-source tools
You know that it’s important to build security checks into your build pipeline, but how do you get started? The biggest source of low-hanging fruit is security vulnerabilities introduced by project dependencies. There are many free and open-source (FOSS) tools that scan your application’s dependencies for known vulnerabilities, and which can be quickly integrated into a typical development environment.
This talk will focus on CLI tools that can be run within a development environment, and will include at least one live demo using a vulnerability scanning tool with a real-world project.
Brittany is a web application developer with experience building web solutions in various industries, including academia, oil and gas, equity compensation, and DevSecOps. She published her first website when she was twelve years old, and has loved web development ever since.