Trying to run safely with scissors - security and devops in banking?

Vidar Drageide

Lightning talk - in English

Since the beginning of time (2000) we have strived to deliver the best online banking experience in norway.
That includes ensuring that our customers personal information and money are kept safe and secure, and ensuring that Sbanken continues to be "trygg som banken".

In this talk I will rush through the recent history of information security in sbanken and how we strive to keep security up with a development process
that have gone from a few major releases a year to multiple releases a day and also how we seem to stumble every now and then.

I will touch upon some of our key learning points on this journey and how we try to change our security organization to match the development speed.