Every time a manager says automation is the most important thing to focus on, another youtuber gets permanently demonetized for white noise that their mic picks up mid-video.
The obsession of automation in security upsets me. Because most of the time, the automation ends up facing other teams. "We should automatically ticket these vulnerabilities to this service team"

No, we should verify them and then ticket if necessary
The obsession with automation in security, to me, basically just shouts "Your time is less valuable than ours." Internal automation is great, but your connection to the rest of the company should be considerate of their time.
Worse yet is automation systems that don't have an automatic way for the consumer of said automation to mark things as non applicable and/or prevent the same ticket(s) from being filed against them again in the future.
Automation without mindful oversight is worse than no automation, imo.
I might be the only person in tech who *doesn't* believe that more tech and more automation are the solutions to every problem that plagues us.
It just makes me grumpy because I think the bias towards automation further exacerbates the problems with automation bias (the propensity for people to favor decisions from automation over decisions without automation).
You can follow @0xdade.
Tip: mention @twtextapp on a Twitter thread with the keyword “unroll” to get a link to it.

Latest Threads Unrolled:

By continuing to use the site, you are consenting to the use of cookies as explained in our Cookie Policy to improve your experience.