Code Story
The Haunted House of APIs - The Haunted Web of APIs with Richard Bird
Richard Bird
It goes back to the beginnings, which is security teams had no responsibilities or obligations to observe, manage, or secure APIs to begin with. When you look at organizations today, API creation definitely doesn't belong to security. It belongs to DevOps. When you look at remediation, say a vulnerable API that was found in testing, security people aren't developers anymore.
0
💬
0
Comments
Log in to comment.
There are no comments yet.