I want to write really insecure code today | Sonatype Blog

"I Want to Write Really Insecure Code Today"

May 07, 2013
By Derek Weeks

2 minute read time

This is the last in my series of blog posts on my favorite quotes from the Security at the Speed of Development webinar with Wendy Nather, Research Director, Security for 451 Research and Ryan Berg, Sonatype CSO.

When asked how organizations can hire good security talent in today's competitive marketplace, Wendy noted:

Ryan went on to explain:

And Ryan commented on how management must be committed to security:

We believe Ryan is correct. Developers want to write secure code, but they lack tools that help them do this without causing development delays. Today's security tools aren't designed for developers, and they aren't designed to support agile, component-based development approaches. The Sonatype CLM was designed to address this issue.

For more information about the CLM, check out the product tour.

Make sure you read Wendy's research Mission Impossible: securing the open source software supply chain with Sonatype.

Written by Derek Weeks
Derek serves as vice president and DevOps advocate at Sonatype and is the co-founder of All Day DevOps, an online community of 65,000 IT professionals.