<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:dc="http://purl.org/dc/elements/1.1/">
  <channel>
    <title>DEV Community: Laura Bell</title>
    <description>The latest articles on DEV Community by Laura Bell (@ladynerd).</description>
    <link>https://dev.to/ladynerd</link>
    <image>
      <url>https://media2.dev.to/dynamic/image/width=90,height=90,fit=cover,gravity=auto,format=auto/https:%2F%2Fdev-to-uploads.s3.amazonaws.com%2Fuploads%2Fuser%2Fprofile_image%2F975732%2F08333bc1-7858-4a4f-b06b-5cbec4d39b11.png</url>
      <title>DEV Community: Laura Bell</title>
      <link>https://dev.to/ladynerd</link>
    </image>
    <atom:link rel="self" type="application/rss+xml" href="https://dev.to/feed/ladynerd"/>
    <language>en</language>
    <item>
      <title>Free newsletter for secure development leaders &lt;3</title>
      <dc:creator>Laura Bell</dc:creator>
      <pubDate>Thu, 22 Feb 2024 23:06:10 +0000</pubDate>
      <link>https://dev.to/ladynerd/free-newsletter-for-secure-development-leaders-3-2l95</link>
      <guid>https://dev.to/ladynerd/free-newsletter-for-secure-development-leaders-3-2l95</guid>
      <description>&lt;p&gt;The latest edition of Secure Development Leaders is out now and shares three essential ingredients for building security culture in your development team.&lt;br&gt;
Highlights:&lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;The importance of education (and why that's not about technology but motivation)&lt;/li&gt;
&lt;li&gt;Why education without empowerment is bad for your security&lt;/li&gt;
&lt;li&gt;The role of accountability (and acknowledgment).&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;It also includes top things you may have missed in #appsec this week.&lt;/p&gt;

&lt;p&gt;[&lt;a href="https://www.secdevleaders.com/p/three-essential-ingredients-secure-development-culture"&gt;https://www.secdevleaders.com/p/three-essential-ingredients-secure-development-culture&lt;/a&gt;]&lt;/p&gt;

&lt;p&gt;If you find this useful, subscribe! It's free [&lt;a href="https://www.secdevleaders.com"&gt;https://www.secdevleaders.com&lt;/a&gt;]&lt;/p&gt;

</description>
      <category>security</category>
      <category>leadership</category>
      <category>news</category>
      <category>softwareengineering</category>
    </item>
    <item>
      <title>Bring AppSec to your software in just 1 hour per sprint</title>
      <dc:creator>Laura Bell</dc:creator>
      <pubDate>Sun, 27 Aug 2023 21:38:00 +0000</pubDate>
      <link>https://dev.to/ladynerd/bring-appsec-to-your-software-in-just-1-hour-per-sprint-5bd7</link>
      <guid>https://dev.to/ladynerd/bring-appsec-to-your-software-in-just-1-hour-per-sprint-5bd7</guid>
      <description>&lt;blockquote&gt;
&lt;p&gt;Are you a smaller team who wants to get started in #appsec but don't know where to begin?&lt;br&gt;
Have you tried before but lost momentum?&lt;/p&gt;
&lt;/blockquote&gt;

&lt;p&gt;I'm running a &lt;strong&gt;free appsec program - One Hour App Sec&lt;/strong&gt;, for all teams worldwide and would love for you to join. We aim to help teams everywhere do 1 hour of application security every sprint.&lt;/p&gt;

&lt;p&gt;Every 2 weeks we send you:&lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;&lt;p&gt;Tips and tutorials to build security foundations for your projects&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;Templates to get you started&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;Videos and watch-alongs to see how things work&lt;/p&gt;&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;You can sign up and find out more (including links to previous sprints) at  &lt;a href="https://safestack.io/one-hour-appsec/"&gt;https://safestack.io/one-hour-appsec/&lt;/a&gt;&lt;/p&gt;

&lt;p&gt;No cost, no tricks or gimmicks :)&lt;/p&gt;

</description>
      <category>tutorial</category>
      <category>security</category>
      <category>learning</category>
    </item>
    <item>
      <title>[question] Could security ever be considered a true part of software quality?</title>
      <dc:creator>Laura Bell</dc:creator>
      <pubDate>Thu, 02 Feb 2023 00:08:13 +0000</pubDate>
      <link>https://dev.to/ladynerd/question-could-security-ever-be-considered-a-true-part-of-software-quality-34ng</link>
      <guid>https://dev.to/ladynerd/question-could-security-ever-be-considered-a-true-part-of-software-quality-34ng</guid>
      <description>&lt;p&gt;As a reformed software developer who now lives in the space between software creation and security I spend a lot of time thinking about &lt;em&gt;why&lt;/em&gt; security is often considered separately to other elements of quality in our software. I wrote a longer post about this at &lt;a href="https://safestack.io/blog/software-security-and-quality" rel="noopener noreferrer"&gt;Should software security be part of quality?&lt;/a&gt;&lt;/p&gt;

&lt;p&gt;For example: &lt;br&gt;
In a peer review of a pull request we will automatically look for things like poorly structured or performing code but for many teams, security review happens later (sometimes by another team entirely.&lt;/p&gt;

&lt;p&gt;I'd love some thoughts from the dev.to community - &lt;/p&gt;

&lt;p&gt;&lt;strong&gt;&amp;gt; How can we make security part of our 'ilities' and an essential part of our software process?&lt;/strong&gt;&lt;br&gt;
(without needing specialists or expensive tools).&lt;/p&gt;

</description>
      <category>vibecoding</category>
    </item>
  </channel>
</rss>
