🐱 WHOA! Who am I and why subscribe to this channel?
Salute,
My name is Ilya Shmakov, I am 30 years old.
It so happens that I have more than 8 years of experience in information security for product development, design and implementation of code delivery security and specialize in CI/CD security and information security risk analysis. There are successful cases and failures that allow you to share useful and real practical experience. I have an uncontrollable desire to tell other people something interesting and help them learn not only from their mistakes, but also receive working tools to solve their cases.
I am developing several serious directions:
- in findevsecops.ru a map of open-source tools, including solutions from import-substituting vendors
- in findevsecops.ru the certification procedure according to GOST 56939-2024
- I conduct pilots on SAST tools of Russian vendors according to GOST 71207
- I teach students useful practical knowledge at PS10 MSTU. N. E. Bauman
- I teach a course on secure development at inseca.tech
- prepared the first DevSecOps hackathon in the Russian Federation and am preparing a new one for 2026
- as AppSec Teamlead I develop the business direction of providing services (capabilities) within LANIT and build effective processes with real results
In practice, several dozen projects have been implemented, as well as a large number of tested hypotheses, which also include errors.
What is this channel about?
My blog has the goal of sharing experience, practice, mistakes and problems that we encounter every day, as well as methods of how we got them and how we can solve them.
Most often I publish something about:
AppSec and DevSecOps. I openly share technical aspects (uncut) without restrictions, where I talk about the internals, how “it” works (and why it hasn’t been eaten up yet?).
PMI. Project management and Why do we need it?), how I manage, how results are achieved, how not to burn resources and grow your people, and why exactly such approaches. We also look at cases from the perspective of business risks and whether they are reasonable (effective? expedient? how to explain? why there are excuses: “no budget”, etc.).
Behind the scenes information security. Thoughts and open opinion, regardless of the environment, with arguments, without subjectivism, only including real stories. THAT is what is used, how and why success, failure, losses, changes in decisions are achieved.
😝If you have read to the end of this post, then it’s time to subscribe to the channel!
Caution
All information in the materials of this profile, as well as the materials included (according to the applicable wording of the current legislation of the Russian Federation), that is, any text, graphic works, is considered for informational purposes only.
Any use of the information provided through this profile and/or any text, graphic works, in practice, without obtaining prior approval for use, is subject to the current legislation of the Russian Federation.
The author is not responsible for any possible harm caused by the materials provided, as well as any text or graphic works.
Any text or graphic works, including links, are for informational purposes only and are intended to share knowledge in food safety.
#master #info
