logo

Episode 253: DevSecOps Worst Practices With Tanya Janca of We Hack Purple

ID: 534b541c-78c6-5c3a-8417-e91d1fa385db

STIX ID: report--534b541c-78c6-5c3a-8417-e91d1fa385db

Feed Name: Security Ledger

Date Published: 2023-10-04

Date Updated: 2026-04-26

Author: Paul Roberts

...
...

An interview with Tanya Janca (We Hack Purple / Semgrep) discussing the DevSecOps divide and recurring application-security failures such as poorly tuned tooling that breaks builds, security test results not integrated into developer workflows, resource-hogging scans, and supply-chain concerns; the transcript emphasizes secure SDLC practices, developer education, and the need for organizations to contribute to open-source security rather than describing any specific incident.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.