filmov
tv
APPSEC Cali 2018 - Threat Modeling Toolkit

Показать описание
by Jonathan Marcil, Application Security Engineer at Twitch
Abstract:
Threat Modeling is a great way to analyze security early in software development by structuring possible attacks, bad actors and countermeasures over a broad view of the targeted system. This talk will describe basic components of a threat model and how to use them effectively. Modeling concepts will be demonstrated using a cryptocurrency ecosystem as example.
by Jonathan Marcil, Application Security Engineer of Twitch
Jonathan Marcil is the former chapter leader of OWASP Montreal and is now based in beautiful Irvine, California. Jonathan has been involved with OWASP for many years and is behind the official OWASP YouTube channel. He was also part of NorthSec CTF as a challenge designer specialized in Web and imaginative contraptions. He is passionate about Application Security and enjoys architecture analysis, code review, threat modeling and debunking security tools. He holds a bachelor's degree in Software Engineering from ETS Montreal and has more than 15 years of experience in Information Technology and Security.
Abstract:
Threat Modeling is a great way to analyze security early in software development by structuring possible attacks, bad actors and countermeasures over a broad view of the targeted system. This talk will describe basic components of a threat model and how to use them effectively. Modeling concepts will be demonstrated using a cryptocurrency ecosystem as example.
by Jonathan Marcil, Application Security Engineer of Twitch
Jonathan Marcil is the former chapter leader of OWASP Montreal and is now based in beautiful Irvine, California. Jonathan has been involved with OWASP for many years and is behind the official OWASP YouTube channel. He was also part of NorthSec CTF as a challenge designer specialized in Web and imaginative contraptions. He is passionate about Application Security and enjoys architecture analysis, code review, threat modeling and debunking security tools. He holds a bachelor's degree in Software Engineering from ETS Montreal and has more than 15 years of experience in Information Technology and Security.
APPSEC Cali 2018 - Threat Modeling Panel
APPSEC Cali 2018 - Lessons From The Threat Modeling Trenches
APPSEC Cali 2018 - Threat Modeling Toolkit
APPSEC Cali 2018 - Opening Keynote: Prove It! Confronting Security With Data.
APPSEC Cali 2018 - Opening Keynote - Flipping the script
APPSEC Cali 2018 - The Best Flaw Didn't Make Into Production
APPSEC Cali 2018 - Prevention as a Business Strategy
APPSEC Cali 2018 - The Only Reason Security Really Matters for DevOps
APPSEC Cali 2018 - SecDevOps: Current Research and Best Practices
APPSEC Cali 2018 - Breaking Fraud and Bot Detection Solutions
APPSEC Cali 2018 - OWASP Top 10
APPSEC Cali 2018 - Architecting for Security in the Cloud
APPSEC Cali 2018 - Taking on the King: Killing Injection Vulnerabilities
APPSEC Cali 2018 - Leveraging Cloud SDNs to Solve OWASP Top Ten
APPSEC Cali 2018 - We Come Bearing Gifts: Enabling Product Security with Culture and Cloud
APPSEC Cali 2018 - MarkDoom: How I Hacked Every Major IDE in 2 Weeks
APPSEC Cali 2018 - The Path Of DevOps Enlightenment For InfoSec
APPSEC Cali 2018 - Robots with Pentest Recipes
APPSEC Cali 2018 - A Tour of API Underprotection
APPSEC Cali 2018 - Marketing Trailer
Lightning Talk: OWASP Project Showcase: Threat Model Cookbook - Jonathan Marcil
APPSEC Cali 2018 - Hunter – Optimize your Pentesters Time
APPSEC Cali 2018 - Costs of Coding to Compliance
APPSEC Cali 2018 - Decrease Your Stress and Increase Your Reach with Appsec Champions
Комментарии