Why shift left alone can't manage your software risk
ID: 6f6e155f-2095-5caf-80f9-5ae40dd17ecf
STIX ID: report--6f6e155f-2095-5caf-80f9-5ae40dd17ecf
Feed Name: ReversingLabs Blog
Date Published: 2024-12-02
Date Updated: 2026-04-29
Author: [email protected] (Carolynn van Arsdale)
The report summarizes discussions from the Elephant in AppSec Conference on the state of application security, emphasizing that while “shift left” remains valuable, it is insufficient alone. Speakers advocate a comprehensive, lifecycle-wide strategy (“shift everywhere”), promote secure coding responsibility among developers, call for measurable improvements aligned with Secure by Design, and critique legacy AppSec tools for lacking holistic, system-level assurance. The piece focuses on culture, accountability, and risk management rather than specific threats or incidents.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
