Integrating Log-Based Security Analytics in Agile Workflows: A Real-World Experience Report
Arpit Thool, Chris Brown

TL;DR
This paper reports on integrating log-based fraud detection into Agile workflows through a real-world case study, highlighting developer perceptions, challenges, and best practices.
Contribution
It provides practical insights and lessons learned from a real-world effort to embed security analytics into Agile development processes.
Findings
Developers are generally willing to adopt log-based fraud detection systems.
Key challenges include balancing security with development speed.
Best practices include iterative implementation and stakeholder communication.
Abstract
Modern organizations increasingly rely on log data and monitoring signals to protect products against account takeovers and abuse, yet integrating security analytics into fast-moving Agile workflows remains challenging. While it is important to understand how security practices are developed and sustained within Agile, real-world case studies of such integrations remain scarce. This experience report provides insights on developer perceptions of an effort to integrate log-based fraud detection within an organization, known as the "Red Flag Project". A cross-functional team of eight members (including one author) iterated weekly to implement a proof-of-concept log-based system that alerts stakeholders when accounts exhibit suspicious activity patterns. Through semi-structured interviews, we investigate developer perceptions of log-based fraud detection integration-exploring their…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
