Skip to main content

Cargo Cults: Agile Development As Social Subversion

This morning my newsfeed came up with an interesting read from Gizmodo, an article interpreting cybersecurity as a war against haunted objects. The idea of securing the "internet of things" as an exorcism is rich, nuanced and perhaps even poetic. I'd encourage you to read it, as it is unusual to consider technology through a spiritual lens. While reading the article, I was reminded of another lens through which I view software development, the cargo cult.

These spiritual movements originate during and shortly after World War II, in Melanesia. In their initial contact with western technology, the first people of that region saw spiritual significance and, through imitation, sought to gain the material wealth and social place possessed by occupiers. Their rituals sometimes involved building (non-functioning) radios, airports and vehicles from wood. They believed such tokens would enable their ancestors to send cargo (material goods) to them from the afterlife. I think one of the most interesting things about cargo cults is that, at a deeper level, they subvert social order imposed from the outside with an emergent order based on the first peoples' traditions and values.

On a superficial level, it's not uncommon to invoke the concept of a cargo cult when discussing agile software development. Many developers and especially project managers obtain certificates as scrum masters. Through the rituals of an agile methodology, they expect to produce high quality software with efficiency and flexibility. Parallels can be easily drawn with cargo cults: agile practitioners can indeed fail to grasp the underlying mechanisms and invoke ritual motions devoid of their original purpose. This theme has been addressed by James ShoreJoel Kuiper, CIO magazine, Scrum Alliance, and that's just part of the first page of Google results.

My point in this post has to do with a deeper function of cargo cults. As mentioned earlier, cargo cults function as a force of social subversion, one in which the occupied group attempts to recast social order imposed by colonial occupiers. Often the social order in a software organization cannot be questioned directly, especially not by low-level employees. Without a direct vehicle for addressing culture, social reordering seeps into other processes, subverting a dominant social order enforced by management in favor of an emergent order controlled by developers.

Agile practices are a natural repository for this seepage. Through scrum meetings, sprint planning, retrospectives, planning poker and other agile rituals, teams involved in agile processes can optimize the social order rather than value to the business. For instance, engineers can challenge senior management by redirecting negative attention about lack of progress onto agile rituals instead of directly addressing core challenges. Agile development rituals can mask technical debt, poor planning and incompetent engineering.

Agile and lean toolsets can efficiently regulate work queues, optimize throughput and provide flexibility to project owners to address changing business conditions. These practices are ineffective when team members use them to challenge the dominant social order on the team. Difficulties implementing agile practices can be symptomatic of a larger cultural problem, and not one that should be shrouded in ritual practices.

Comments

Popular posts from this blog

ReactJS, NPM and Maven

I'm just starting to get into working with ReactJS, Facebook's open source rendering framework. My project uses SpringBoot for annotation-driven dependency injection and MVC. I thought it would be great if I could use a bit of ReactJS to enhance the application. If you're looking for a basic conceptual intro, I recommend ReactJS for Stupid People and of course the official documentation  is quite good. In full disclosure, I still have no idea how to do "flux" yet. As an experienced Java backend developer, I'm pretty decent at hacking Maven builds - which is precisely what this blog post is going to be about. First, a word about how React likes to be built. Like many front-end tools, there is a toolkit for the node package manager (NPM). From the command prompt, one might run npm install -g react-tools  which installs the jsx command. The  jsx  command provides the ability to transform JSX syntax into ordinary JavaScript, which is precisely what I want...

Cryptic Facebook Message

Facebook OAuth2 is a feature I frequently integrate, but sometimes its error messages can be downright opaque. In particular I keep on forgetting to associate my Facebook account on applications where Sandbox Mode is enabled. The error message in this case is the following: Sorry, this feature isn't available right now: An error occurred while processing this request. Please try again later. This message is super cryptic, since what I usually need to do is to register my account as a tester or admin on the Facebook application page. If you get this error message here are the steps to fix it: As an application administrator, go to the OAuth2 configuration page for the application in Facebook. Add the Facebook account as an admin or tester on the "edit roles" screen. This will send an application request to that account. As the added account, accept the application request to become an admin or tester. At this point the Facebook login should work for the accou...

Generating a Self-Signed SSL Certificate

I recently switched some web services to use SSL, and I was surprised that I couldn't find a good non-interactive script to generate the files needed for Jetty and other Java containers. After working my way through writing the script, I have decided to share my approach. This script generates a SSL subdirectory of whatever folder it lives in, and to that directory it adds a password file, certificate and a Java-friendly PKCS12 version of the certificate. And then I have my Maven build process copy the generated files into the base of my classes directory. The embedded Jetty instance needed an input stream of the PKCS12 file and the contents of the password file to create a SSL connector. Reading from the classpath can be a bit tricky - I should post about that later. From past experience, I think Nginx also requires the certificate file when configuring SSL.