What we're about

Welcome to the South German (Stuttgart & Frankfurt region) edition of the Identity and Security Meetup!

Our members represent a cross-section of software developers, solutions architects, security practitioners, project managers and more, who share an interest in topics relating to digital identity, identity management, online security, and more.

Join us for an informal evening of talks and catered networking. Members often continue the discussions after the event at a local bar.

For the comfort of all our members, and to provide a harassment-free experience for everyone, we value diversity and operate a strict code of conduct.

You can find us on Twitter at https://twitter.com/ISM_SthGermany

Upcoming events (3)

[Jul 23] Social Engineering, Kubernetes & Container Security

NovaTec Consulting GmbH - Headquarters

Welcome to the German edition of the "Identity and Security Meetup". The South Germany Identity and Security Meetup is an informal evening open to all. It's targeted towards IT managers, product managers and software engineers who manage digital products and services and necessarily come in contact with topics such as identity and access management (IAM), user authentication and security, but aren’t necessarily security or IAM experts. Agenda: ========== Welcome & Get-together at 18.30 Uhr Talks start at 19.00 Uhr Talk 1 --------- Pineapples and bunnies are not as harmless as you may think Annybell Villarroel, Auth0 People are one of the biggest risk in cybersecurity but I believe that they are also the biggest, and most important defense. A key element to turning people into cybersecurity heroes is security awareness, so let's talk about how to achieve this through social engineering attacks! there will be demos About Anny: My name is Annybell Villarroel, but you can call me Anny. I work as a Security Awareness Manager at Auth0 from Madrid, Spain. My goal is to build and maintain an engaging, and fully customized security culture & awareness program that helps foster a strong security mindset. Talk 2 --------- Kubernetes und Container - Aber Sicher! Andreas Falk, Novatec Mit dem Siegeszug von Kubernetes ist der Entwickler vollends im DevOps-Zeitalter angekommen. Neben der eigentlichen Entwicklung muss dieser sich u.a. mit Netzwerken, Containern, Ingress-Controllern, Load-Balancern, Nodes, Services und Pods beschäftigen. Bei der Vielzahl komplexer Aufgaben bleibt hier die nötige Sicherheit häufig außen vor. Dabei lauern selbst in gemanagten Kubernetes Clustern bekannter Cloud-Provider vielfältige Fallen und Angriffspunkte: Docker Container laufen reihenweise im privilegierten Modus mit Root-Rechten oder RBAC ist in Kubernetes zwar aktiviert, wird jedoch überhaupt nicht oder nur lückenhaft konfiguriert. In diesem Vortrag werden die wesentlichen sicherheitskritischen Komponenten eines Kubernetes-Clusters vorgestellt. Dabei werden mögliche Sicherheitsprobleme und Maßnahmen zu deren Beseitigung bzw. Risikominderung vorgestellt. Zum Abschluss wird in einer Live-Demo anhand einer beispielhaften Spring Boot Java Anwendung gezeigt, wie diese unter Berücksichtigung empfohlener Sicherheitspatterns als Docker-Container in ein Kubernetes-Cluster deployed wird. Hierbei werden u.a. auch Möglichkeiten zur sicheren Konfiguration von Secrets in Kubernetes diskutiert. Networking ------------------ Time for networking. There will be drinks & pizza. Talks will either be hold in German or English (if there is at least one non-German speaking attendee, we'd switch to English) This meetup is supported by Auth0 (https://auth0.com) and Novatec (https://novatec-gmbh.de), who also kindly provide the venue. The "Identity & Security Meetup" format has been established in other locations already: London: https://www.meetup.com/London-Identity-and-Security-Meetup/ Seattle: https://www.meetup.com/Seattle-Identity-and-Security-Meetup/ Sydney: https://www.meetup.com/Sydney-Identity-and-Security-Meetup/

[Aug 27, FRA] Security Culture; tba (CHECK24)

CHECK24 Frankfurt

The South Germany Identity & Security Meetups takes place in Stuttgart and Frankfurt alternatingly. This event will be in Frankfurt. Talks: (1) (Talk title tab) CHECK24 (2) The human factor! Protecting your business by creating a culture of security. Annybell Villarroel (Auth0)

[Sep 26, STR] Nextcloud, Identity Theft through Open Source Intelligence, netID

The South Germany Identity & Security Meetups takes place in Stuttgart and Frankfurt alternatingly. This event will be in Stuttgart. (Get together & networking at 18:15h) As we have 3 talks, we will start with the talks on time at 18:30h. Talks: -------- Privacy matters! Running your own cloud with Nextcloud. Björn Schießle (Nextcloud) Identity Theft Through Open Source Intelligence Mathias Conradt (Auth0) (Talk title tba) Achim Schlosser (netID)

Photos (8)

Find us also at