I believe that agile methods of development and operation can lead to more securely designed and operated systems than is possible via non agile methods. But doing so requires work and thought. Agile methodologies however have generally been said to be incompatible with traditional security governance and risk management structures. Something needs to change and […]