Date: Tuesday, September 17, 2024
Time: 8:00 a.m. - 12:00 p.m ET
Location: Thompson Hine, 3900 Key Center, 127 Public Square, Cleveland, Ohio 44114-1291
Contact: Bill Sieglein, CISO Executive Network, bill@cisoexecnet.com
A complimentary webinar presented by CISO Executive Network and Thompson Hine LLP
Well, that may have been true in the past and that is changing thankfully as some developers are starting to understand the true value of secure code.
In this series we will explore ways to work more effectively with developers to ensure higher quality and more secure code is pushed to production.
Research has shown that many vulnerabilities are created by poor coding. Members tell us they often have very little insight into the development process because so much of it is done by business units without the engagement of IT or Security. With agile development processes our engineering teams can kick out new code and products faster than we can secure them. In this series we will take a look at how members are integrating security within the application development process. Can we finally make DevOps secure?
Security Controls Covered: AppSec, Open Source Vulnerability Management, CSPM, DSPM, Third-Party Risk Management, API Security, IAM, Container Security, Cloud Config Management
Topics likely to be part of this discussion include:
- DevOps security models
- Communicating the value of AppSec to upper management and the board
- Measuring success of your AppSec program
- Secure code development & analysis
- Security & Infrastructure as code
- Code scanning- SAST, DAST, SCA
- Open source risks
- API security
- Container security
- Role of IAM in cloud and DevOps security
- Securing cloud configurations
