Dev Interrupted

How Marketing Ruined Shift Left | Semgrep’s Tanya Janca


Listen Later

When it comes to securing software, most developers feel like they're playing catch-up instead of setting the rules.

Tanya Janca (SheHacksPurple), author of "Alice and Bob Learn Secure Coding," brings her 28 years of IT and security expertise—spanning counter-terrorism to enterprise training—to Dev Interrupted. She unpacks the common pitfalls teams face when security is treated as an afterthought, highlighting the developer frustration of being held accountable for security without the tools or knowledge needed to succeed.

Explore how transforming security from a final gate into an ongoing practice saves money, reduces conflict, and builds better software through clear requirements and true developer empowerment. Tanya provides concrete advice for developers and leaders on creating internal knowledge libraries, fostering continuous learning habits, and critically evaluating AI-generated code to ensure it meets security standards. 

Speaking of AI's growing role, we're curious how it's reshaping workflows across the industry. Share your own experiences with AI adoption by taking our quick survey to discover your spot on the adoption graph (and what you can do to level up).

Check out:

  • Beyond Copilot: Gaining the AI Advantage
  • Survey: Discover Your AI Collaboration Style

Follow the hosts:

  • Follow Ben
  • Follow Andrew

Follow today's guest(s):

  • Website: SheHacksPurple
  • LinkedIn: Tanya Janca
  • Book: Alice and Bob Learn Secure Coding

Referenced in today's show:

  • Shopify CEO says staffers need to prove jobs can’t be done by AI before asking for more headcount
  • Anthropic flips the script on AI in education: Claude’s Le

OFFERS

  • Start Free Trial: Get started with LinearB's AI productivity platform for free.
  • Book a Demo: Learn how you can ship faster, improve DevEx, and lead with confidence in the AI era.

LEARN ABOUT LINEARB

  • AI Code Reviews: Automate reviews to catch bugs, security risks, and performance issues before they hit production.
  • AI & Productivity Insights: Go beyond DORA with AI-powered recommendations and dashboards to measure and improve performance.
  • AI-Powered Workflow Automations: Use AI-generated PR descriptions, smart routing, and other automations to reduce developer toil.
  • MCP Server: Interact with your engineering data using natural language to build custom reports and get answers on the fly.
...more
View all episodesView all episodes
Download on the App Store

Dev InterruptedBy LinearB

  • 4.8
  • 4.8
  • 4.8
  • 4.8
  • 4.8

4.8

146 ratings


More shows like Dev Interrupted

View all
This American Life by This American Life

This American Life

91,297 Listeners

Freakonomics Radio by Freakonomics Radio + Stitcher

Freakonomics Radio

32,246 Listeners

Marketplace by Marketplace

Marketplace

8,801 Listeners

Odd Lots by Bloomberg

Odd Lots

1,993 Listeners

The Changelog: Software Development, Open Source by Changelog Media

The Changelog: Software Development, Open Source

288 Listeners

Pivot by New York Magazine

Pivot

9,724 Listeners

The a16z Show by Andreessen Horowitz

The a16z Show

1,105 Listeners

Decoder with Nilay Patel by The Verge

Decoder with Nilay Patel

3,141 Listeners

Software Engineering Daily by Software Engineering Daily

Software Engineering Daily

626 Listeners

The Daily by The New York Times

The Daily

113,121 Listeners

Y Combinator Startup Podcast by Y Combinator

Y Combinator Startup Podcast

233 Listeners

Syntax - Tasty Web Development Treats by Wes Bos & Scott Tolinski - Full Stack JavaScript Web Developers

Syntax - Tasty Web Development Treats

985 Listeners

Practical AI by Practical AI LLC

Practical AI

212 Listeners

Big Technology Podcast by Alex Kantrowitz

Big Technology Podcast

512 Listeners

Hard Fork by The New York Times

Hard Fork

5,576 Listeners