ABSTRACT

This chapter aims to explore ways to bootstrap an awareness program that leads development team members into role-specific training to gain the right knowledge, skills, and abilities to succeed as defensive development teams. Gamification of learning has entered the field and includes the use of cyber ranges and computer-based learning delivered in a game-like environment. Application security, security education, training, and awareness Programs are an all-encompassing and difficult problem to address and solve and require dedication, effort, patience, and time to build an effective program. Awareness drives interest and curiosity and places people on the path to wanting to learn more. Although prevention is always better than remediating problems and rework, programmers are typically faced with learning their applications are insecure long after they’ve released them to production and to the malicious users who are pervasive throughout the Internet. Learning programs come in all shapes and sizes.