About this talk
In this talk, Maik Wojcieszak discusses the business value of security by presenting a quantitative approach to measure risk and prioritize fixes within the DevOps framework. He emphasizes how security vulnerabilities can significantly impact development processes and advocates for integrating security into DevOps practices, coining the term DevSecOps. The speaker introduces Monte Carlo Simulation as a tool for continuous monitoring of potential losses, allowing stakeholders to collaboratively prioritize security issues more effectively. This approach aims to bridge the communication gap created by complex security terminology, enabling teams to make informed decisions and foster an environment of continuous improvement.