BLOG

Empathy for the API Developer

Colin Domoney from 42Crunch, in his recent article on DevOps.com, addresses the disconnect between development and security teams and explains the key challenges facing developers in creating secure API code. Better understanding of the challenges on both sides can help create greater empathy which in turn can help foster greater collaboration.

“..Security teams have always been perceived as an impediment to delivery by software teams who feel that security imposes arbitrary and unreasonable policies and use poorly-integrated tools that are beset with high false-positive rates. With the advent of DevOps, security has been seen as an increasing obstacle to rapid deployment cycles.

Security teams believe developers do not care about security and will try their best to avoid security controls or policies. Security teams are often frustrated by developer pushback when remediating vulnerabilities, particularly when they fail to appreciate the cascading effects of making code and dependency changes late in the life cycle.

From my perspective, with a foot in both camps and a decade of experience helping developers produce more secure code, I believe the key to addressing the disconnect between teams is to develop greater empathy for the developer..”

Continue Reading on DevOps.com

Latest Resources

WEBINAR

Agentic AI: Fools Rush in Where Angels Fear to Tread

Webinar drawing on two years of investigative research from the industry’s leading APIsecurity.io newsletter that includes cases from a wide range of independent sources, the webinar highlights the most common API flaws, from broken input validation and missing authentication to operation-level authorization failures.

NEWS

42Crunch Recognized by Enterprise Security Leaders as API Security Emerges as Critical AI control layer in State of AI Security Report

By Hugh Carroll | March 4, 2026

San Francisco, CA – March 4 2026 – 42Crunch, the API security platform company, today highlighted its growing visibility among enterprise security leaders following the release of the Sagetap State of AI in Cybersecurity Report 2026,  which analyzes real security buying initiatives from CISOs and senior security executives. The […]

DataSheet

APIs are the core building block of every enterprise’s digital strategy, yet they are also the number one attack surface for hackers. 42Crunch makes developers’ and security practitioners' lives easier by protecting APIs, with a platform that automates security into the API development pipeline and gives full oversight of security policy enforcement at every stage of the API lifecycle.

WEBINAR

Agentic AI: Fools Rush in Where Angels Fear to Tread

Webinar drawing on two years of investigative research from the industry’s leading APIsecurity.io newsletter that includes cases from a wide range of independent sources, the webinar highlights the most common API flaws, from broken input validation and missing authentication to operation-level authorization failures.

NEWS

42Crunch Recognized by Enterprise Security Leaders as API Security Emerges as Critical AI control layer in State of AI Security Report

By Hugh Carroll | March 4, 2026

San Francisco, CA – March 4 2026 – 42Crunch, the API security platform company, today highlighted its growing visibility among enterprise security leaders following the release of the Sagetap State of AI in Cybersecurity Report 2026,  which analyzes real security buying initiatives from CISOs and senior security executives. The […]

DataSheet

Datasheet Cover Images P1-02

Product Datasheet Addressing API Security Challenges

APIs are the core building block of every enterprise’s digital strategy, yet they are also the number one attack surface for hackers. 42Crunch makes developers’ and security practitioners' lives easier by protecting APIs, with a platform that automates security into the API development pipeline and gives full oversight of security policy enforcement at every stage of the API lifecycle.

Secure Your APIs Today

#1 API security platform