A change to the traditional way of working with appsec, as we are focusing on how we understand the system we are building and how we can "Build Security in" the same way we "Build Quality in" when creating applications and working DevOps. Talk will include code examples in Typescript with lessons learned from our own applications.