Modern Application Security

Collin Greene
Mar 10, 2015 · 9 min read
  • Is never “finished”
  • Is not understood by anyone end to end

Finding bugs

Bug finding is what makes a security team special.

Fixing bugs

As a security engineer you should be capable of fixing all security bugs yourself. You wont always do this but be sure to lay out what a clear fix looks life.

Prevent bugs

Software is written by people and people screw up sometimes. Lots of preventing bugs is around shepherding folks towards better code. There are a few ways to do this.


Automate everything you can.


The goal is to fix as much insecurity as possible and the methods are not purely technical.


We can’t catch em all but hopefully some of these tactics, tools and ideas will prove useful.

Thanks to Ryan McGeehan

    Collin Greene

    Written by

