You're Doing Shift-Left Wrong
Blog post from Permit.io
The concept of "Shift-Left" in software development, particularly in security, involves integrating security measures early in the development process, but it often leads to increased workload for developers without improving application security meaningfully. Instead of relying heavily on measurement tools, the article advocates for a more intrinsic approach to security by designing applications to be secure from the start, especially in the realm of authorization, where there is a lack of unified industry standards. It underscores the importance of creating autonomous authorization systems that focus on policy authorship, auditability, and autonomy without embedding policies directly into application code. The article specifically highlights AWS Cedar as a tool that can facilitate this process by offering a model-agnostic, easy-to-read policy language that allows developers to decouple authorization logic from application code while maintaining robust audit trails, thereby reducing friction and enhancing security effectiveness. The piece concludes by emphasizing the shift from mere measurement to meaningful impact, suggesting that tools like AWS Cedar can help developers better implement authorization systems that align with the "Shift-Left" trend.
| Trend | Post Mentions | Total Month Mentions | Posts | Companies | MoM |
|---|---|---|---|---|---|
| Developer Experience | 2 | 285 | 131 | 68 | -10% |
| Vector Search | 1 | 1,500 | 202 | 67 | -14% |
Use this post, company, and trend context to find content marketing opportunities, perform competitive analysis, or address product feature gaps via the Plushcap MCP server or the Plushcap API.