Enterprise Application Risk Profiling

Enterprise Application Risk Profiling

説明:

A talk on application risk profiling on an enterprise scale (an OWASP SAMM activity - https://owaspsamm.org/model/design/threat-assessment/stream-a/). I will discuss digital transformation in the enterprise, how it impacts cloud native applications developed using agile methodologies and as a result, an oscillating application risk rating, which then triggers prioritized security-related activities by application security engineers.

Key topics will include:

  • Creating a baseline application risk profile

  • Dynamic characteristics of application risk factors

  • Significant changes that trigger security reviews

講演者:

Alex Mor

Global Director of Application Security, ABInBev

Snyk (スニーク) は、デベロッパーセキュリティプラットフォームです。Snyk は、コードやオープンソースとその依存関係、コンテナや IaC (Infrastructure as a Code) における脆弱性を見つけるだけでなく、優先順位をつけて修正するためのツールです。世界最高峰の脆弱性データベースを基盤に、Snyk の脆弱性に関する専門家としての知見が提供されます。

無料で始める資料請求

© 2024 Snyk Limited
Registered in England and Wales

logo-devseccon