Using Threat Modeling to Create a DevSecOps plan

Опубликовано: 01 Январь 1970
на канале: DevSecCon
283
8

DevSecCon Germany presents “Using Threat Modeling to Create a DevSecOps Plan” with Mohamed AboElKheir. Join us to learn practical approaches and best practices for embedding robust security measures into your workflow from the outset.



Event Details:
Date: 30th July
Time: 12pm CEST
Location: Virtual (Join from anywhere!)



In this session, we will illustrate the importance of initiating the security planning process with a comprehensive threat model. This foundational step is essential for devising a strategic plan to select, implement, and configure the most suitable security tools. By proactively identifying potential threats and vulnerabilities, we can ensure that these tools effectively mitigate identified risks. Furthermore, we will discuss the integration of these tools into various stages of the development pipeline, thereby enhancing the overall security and resilience of your systems.

Key Takeaways
• Foundational Importance of Threat Modeling: Understand why starting with a thorough threat model is critical for strategic security planning.
• Early Identification of Threats and Vulnerabilities: Learn how early detection ensures that security tools are effectively aligned with identified risks.
• Strategic Selection and Implementation of Security Tools: Gain insights into selecting, implementing, and configuring the most appropriate security tools based on the threat model.
• Seamless Integration into Development Pipeline: Discover best practices for integrating security tools into different stages of the development pipeline.
• Enhancing Security and Resilience: Explore methods to bolster the overall security and resilience of your systems through strategic planning and tool integration.


Don’t miss this opportunity to learn from an expert in the field and network with fellow professionals!
Register now to secure your spot and be part of this insightful event.
We look forward to seeing you there!

Resources:
Slides: https://docs.google.com/presentation/...
Threat modeling handbook:   / threat-modeling-handbook  
Threat modeling notion template: https://www.notion.so/templates/threa...
Threat model Sample: https://typical-braid-834.notion.site...
CVE-2023-38646 writeup: https://www.assetnote.io/resources/re...
My Linkedin:   / mohamed-aboelkheir-4802ba9b  
My Blog - Appsec Untangled:   / mohamed.osama.aboelkheir  


Смотрите видео Using Threat Modeling to Create a DevSecOps plan онлайн без регистрации, длительностью часов минут секунд в хорошем качестве. Это видео добавил пользователь DevSecCon 01 Январь 1970, не забудьте поделиться им ссылкой с друзьями и знакомыми, на нашем сайте его посмотрели 283 раз и оно понравилось 8 людям.