# Conway's Law and Software Security

DevFeed: [Conway's Law and Software Security](<https://devfeed.tech/articles/conway-s-law-and-software-security-36737.md>)

Original publisher: [Read original article](<https://shostack.org/blog/conways-law-and-software-security/>)

Author: Adam

Published: 2018-06-06T00:00:00Z

Content type: opinion

Language: en

Sources: [Shostack & Friends Blog](<https://devfeed.tech/sources/shostack-friends-blog.md>)

Topics: [Security](<https://devfeed.tech/topics/security.md>), [Architecture & Design](<https://devfeed.tech/topics/architecture-design.md>), [Software](<https://devfeed.tech/topics/software.md>)

Tags: [code](<https://devfeed.tech/tags/code.md>), [conway-s-law](<https://devfeed.tech/tags/conway-s-law.md>), [developers](<https://devfeed.tech/tags/developers.md>), [product-security](<https://devfeed.tech/tags/product-security.md>), [security](<https://devfeed.tech/tags/security.md>), [software](<https://devfeed.tech/tags/software.md>)

## AI overview

The article discusses how Conway's Law relates organizational structure to software security. It cites Steve Lipner's account of shifting responsibility from a small security engineering group to a much larger population of software engineers tasked with creating secure code.

## Source excerpt

[no description provided]