Skip to content

SecurityEssentials/Workshops

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

6 Commits
 
 

Repository files navigation

Developer Security Essentials Package

This package contains the materials for a facilitator to deliver the Developer Security Essentials package of three workshops to help developers improve their security and privacy decision-making. These materials combine all the three previous package versions: The Agile App Security Game, the Face-to-face version and the Online version of the Developer Security Essentials workshops.

This project is a placeholder to allow Github to host the release package for all to download.

Developer Security Essentials comprises three interactive workshops for client software developer teams. Developed with government funding by researchers from Lancaster University and UCL, the package is rigorously proven both to improve the teams' secure software development, and to promote good decision-making about security and privacy to give the organisations who do it a competitive advantage. The workshops are also good fun for the participants. The three workshops, of 1-1.5 hours each, are heavily interactive and engaging for the participating teams, using a range of sophisticated techniques to work either in person or through remote access:

  1. An interactive game teaches that security is unthreatening and approachable;
  2. An ideation ‘Threat Assessment’ session uncovers the security and privacy needs of participants’ current work; and
  3. An analysis session identifies the business value for product management of the most important security and privacy enhancements.

The workshops work best run by software development experts — we recommend training — and no security expertise is required.

See the Developer Security Essentials web page for more details.

Download the package here.

Copyright (c) 2021 Charles Weir. Released under the CC-BY-ND 4.0 licence.