🌻 Director (Security) @github, Intel Nut, Dad, History Geek, Beer Dork | Opinions my own. | infosec.exchange/@swannysec

Joined January 2015
57 Photos and videos
🚀 @github's work to better secure the first link in the software supply chain with 2FA was a three-year journey and I am thrilled to have led an amazing team to bring it to life. We made a ton of progress in 2023, but there's more to come. github.blog/2024-04-24-secur…
3
161
If you're interested in learning more about how we're securing the software supply chain by bringing 2FA to millions of developers @github, grab a free virtual pass and check out our panel at #GitHubUniverse. githubuniverse.com/?utm_sour…
1
2
538
ICYMI - This was a great chat about enrolling millions of @github users in 2FA, how user experience matters for security, and why culture _is_ a security control.
This tweet is unavailable
2
226
Talking 2FA at scale at @github as a means of protecting the software supply chain, starting with the developer. Thanks @MichaelNovinson!
This tweet is unavailable
3
486
If security isn't usable, it isn't security at all! Really enjoyed my conversation with @iainthomson, cheers!
Shifting to multi-factor auth is hard to do, but GitHub recommends the long game dlvr.it/StTBms
1
2
10
1,095
This is what happens when the former incident responder coordinates your 2FA rollout 😂 Thanks @lilyhnewman, it was great speaking with you!
GitHub's gentle, deliberate journey to being total hardasses about mandating two-factor wired.com/story/github-two-f…
3
557
.@OptumRx Messing up the delivery of a potentially lifesaving medication that is time sensitive twice, and then asking a customer to wait a few more days so you can pinch your pennies is unacceptable. #incompetent #inhumane #corporategreed #awfulheathcare
1
1
2,114
This work has been my focus since September of 2021. It's challenging and deeply impactful work I share it with a wonderful team of product, engineering, security, support, comms, and marketing folks who made the roadmap that led us here possible.
On March 13, we officially begin rolling out our requirement for all developers who contribute code on GitHub.com to enable 2FA by the end of 2023 ✨ Learn about the process & how you can help secure the software supply chain with 2FA: github.blog/2023-03-09-raisi…
2
10
3,300
Huge thanks to the team of folks at GitHub doing amazing work to make this possible, it's my privilege to work with fantastic, dedicated professionals who care deeply about security every day.
1
@swannysec@infosec.exchange retweeted
I’m hiring! GitHub is looking for a Senior Docs Manager to help one of our three core teams of technical writers thrive in our friendly and well established crossfunctional org. boards.greenhouse.io/github/…

3
66
140
Interesting in leading detection, response, and platform moderation capabilities at web scale? Join us! boards.greenhouse.io/github/…

1
2
I didn't have "defend democracy" on my work goals list when I joined GitHub, but I've had a number of real opportunities to do so in my time here. Grateful to our fantastic CELA/Policy teams for their leading work in this space.
21 Sep 2022
Communities are key to steering digital transformation and maintaining societal infrastructure. That's why we work with like-minded organizations, governments, and civil society to make digital technologies work for democracy and human rights. github.blog/2022-09-21-why-w…
1
6
Confirming that this brings me happiness. We appreciate you!
Folks at @github care so much about your security that they get very happy when we turn on 2FA on our accounts. If you haven't done it yet, go and bring them some happiness 🎊🎊 #Security #MFA
4
@swannysec@infosec.exchange retweeted
Use the Force of MFA for good: cisa.gov/MFA #MayTheFourth #StarWars
4
64
155
Myles is my partner in anti-crime for this project and I'm excited to hit a home run with him and the rest of the amazing team of engineers, product professionals, comms folks, security practitioners, and field and support teams @github.
Helping to lead this initiative is a highlight of my career. As stewards of the Open Source ecosystem it is critical that GitHub does what is within our powers to secure the software supply chain. As the blog states "securing the software supply chain begins with the developer"
5