
DevSecOps Evangelism Won't Save Us
We put significant effort into building out our QA pipelines to support regular software releases, yet we continuously hit roadblocks when we try to reconcile functional quality with security requirements.
I write about the intersection of technology and governance to help leaders navigate complexity.
Live Last read · last published · next check

We put significant effort into building out our QA pipelines to support regular software releases, yet we continuously hit roadblocks when we try to reconcile functional quality with security requirements.

There is an old industry cartoon where a development manager stands before a room of engineers and says: “I’ll go up and find out what they need.

I’ve spent a lot of my career looking at the friction between how we want to work and how we actually deliver, and I have noticed a recurring issue that has nothing to do with the quality of the applications we build.

I keep hearing the same dismissal from technical leaders and executives when the topic of AI in the development cycle comes up.

If there is one mantra that has defined the last decade of tech, it is “move fast and break things.” And looking at the Australian ecosystem right now, we are certainly moving fast.

Why the “Integrity Crisis” is the Real Story of OWASP 2025

Your security strategy is only as good as your inventory, and right now, most of us are flying blind.