Secure Agile Development

This paper, written by the independent security analyst group Securosis, is for security professionals who want to understand Agile development and the issues developers face, so both teams can work together better. Security teams are sharply focused on bringing security to applications and meeting compliance requirements in the delivery of these applications and services. On the other hand, the #1 job for software developers is to deliver code faster and more efficiently, with security placing a distance second. Both security professionals and developers may be tasked with security, but finding the best way to embed security into the software development lifecycle (SDLC) is not an easy challenge.

