More Goto tech episodes

Security & Developer Experience: Can We Have Both?  Abby Bangser, Adrian Mouat & Holly Cummins thumbnail

Security & Developer Experience: Can We Have Both? Abby Bangser, Adrian Mouat & Holly Cummins

Published 10 Mar 2026

Duration: 2614

Balancing security and developer productivity requires integrating security early in development and adopting proactive defensive coding measures.

Episode Description

This interview was recorded at GOTO Copenhagen 2025. https://gotocph.com Abby Bangser - Platform Engineering Insights from Syntasso delivering Kratix...

Overview

The podcast explores the challenges of balancing robust security with developer productivity, highlighting how security is often viewed as a hindrance rather than a priority. It uses real-world examples, such as NPM breaches and the Jaguar Land Rover ransomware incident, to illustrate the financial and operational risks of neglecting security. The discussion emphasizes the need for integrating security early in development processes, adopting proactive defensive coding practices, and addressing the lack of clear standards for defining quality and security in software engineering. It also touches on the absence of professional accreditation in the field and the role of platform engineering in enabling secure, autonomous workflows.

The conversation further examines the limitations of fear-based security approaches, advocating instead for gamification and training to improve security awareness among developers. It stresses the importance of fostering a collaborative culture where security is treated as a shared responsibility rather than a restrictive measure. Finally, the podcast addresses the complexities of managing open-source and supply chain vulnerabilities, underscoring the need for systemic changes to make security a seamless and integral part of the development lifecycle.

Recent Episodes of Goto tech

31 Mar 2026 Platform Engineering Ajay Chankramath & Nic Cheneweth

Platform engineering challenges are addressed through product-centric internal development, standardized "golden paths," control planes abstracting cloud infrastructure for self-service, developer ownership of pipelines, Kubernetes-driven self-healing systems, balancing AI's infrastructure benefits with reliability risks, domain-specific design, clear team boundaries, and the critical role of human oversight in automation.

20 Mar 2026 Learn C++ by Example Frances Buontempo & Matt Godbolt

Modern C++ innovations like the spaceship operator, coroutines, and structure bindings are explored through practical examples, interactive learning, and tools like Compiler Explorer, emphasizing the balance between low-level control, high-level abstractions, and educational challenges in mastering advanced concepts.

More Goto tech episodes