Rene Bader talks code security and testingPenetration testing, ethical hacking and writing secure code are not new concepts, they’ve been around for decades. Despite this, the rate at which code vulnerabilities are reported continues to increase. Enterprise Times asked Rene Bader, Manager for Critical Business Applications & Big Data, NTT Ltd why this was.

Bader believes that one of the problems is that software is getting increasingly complex. This, in turn, makes effective testing more complex. Bader sees the arrival of DevSecOps as a significant step towards resolving this. It enables companies to spot bugs earlier in the development cycle and this makes remediation faster, easier and results in massive cost reduction per issue.

There is also a need for the business and IT to work more closely together on this. The introduction of low code and no code environments is moving some software development out of IT. This means that there has to be a wider understanding of testing and test processes.

Bader also says that companies building their own apps must balance perfect software with business need. This is all about risk assessment. Is it OK to have a piece of software with some cosmetic bugs and just one or two functional issues? Can the business survive with more functional issues if the remediation process is fast enough and the bugs do not expose personal data?

To hear more of what Bader had to say listen to the podcast.

Where can I get it?

obtain it, for Android devices from play.google.com/music/podcasts

use the Enterprise Times page on Stitcher

use the Enterprise Times page on Podchaser

listen to the Enterprise Times channel on Soundcloud

listen to the podcast (below) or download the podcast to your local device and then listen there

Previous articlePeople Centric ERP vendor Unit4 gets new CPO
Next articleShoptech looks for global growth
Ian Murphy
Ian Murphy is an enterprise technology journalist, podcaster, editor and industry analyst with more than 40 years' experience covering enterprise IT, cybersecurity, networking, cloud and artificial intelligence. His career combines hands-on technology experience with long-term industry analysis and journalism. In the 1980s, Ian authored an industry report on expert systems, an early application of artificial intelligence, and founded an IT training company delivering accredited training on enterprise software. He later became a Microsoft Certified Trainer, helping professionals understand and apply business technologies. Alongside his work as a freelance journalist and analyst, Ian developed software, deployed enterprise networks and managed software and technical support teams. That practical experience informs his writing, providing insight into not only what technologies promise, but how they are implemented and used in real enterprise environments. Ian has written thousands of articles, produced industry research, hosted podcasts and interviewed technology leaders across enterprise software, infrastructure, cybersecurity and AI. His work focuses on helping CIOs, IT leaders and technology professionals understand the opportunities, challenges and real-world impact of emerging technologies.

LEAVE A REPLY

Please enter your comment!
Please enter your name here