Skip to content

Kotlin introduction + Automated security testing in CI/CD pipeline (an intro)

Photo of timurx
Hosted By
timurx and Humay H.
Kotlin introduction + Automated security testing in CI/CD pipeline (an intro)

Details

The first defdev meetup in Vienna we do with the Kotlin Vienna group.
https://www.meetup.com/Kotlin-Vienna/

The first hour (7-8) we dedicate to Kotlin (and Kotlin in Android) and the second (8-9) to the security testing automation and vulnerability management. Both start with short comprehensible, introduction level speeches and are followed by Q&A sections. For the CI/CD integrated security topic we provide testable hands-on images.

Message from the first speaker, Christoph Pickl (AT): "Introduction to the Kotlin language, yet another JVM language and the potential successor of Java. Most Android developers might already heard of it, or even are already writing their apps with it, as it was announced to be the first officially supported language for Android by Google (besides Java). In this talk we will walk you through the basics of the language compared to Java. But be aware: Once you've tried it, you might not want to go back ;)"

Message from the second speaker, Riccardo ten Cate (NL): "During our work as penetration testers we found that there are a lot of vulnerabilities being introduced in applications that could have been prevented in an early stage of development. We can see the latest trend in integrating security tooling into CI/CD pipelines. However, security tooling integrated in your security pipe-lines will not cover the whole attack surface. This is because the tooling can never understand the full context of the applications functions and logic. On the other hand, resources in the form of manual verification can often be scarce and expensive. Where do we find the right balance between security test automation, manual verification? Even more importantly, how do we train the developers understand the metrics and make security part of their process? This could been achieved by setting up an (S)SDLC, but what does a good (S)SDLC consists of? This talk will guide everybody willing to take the maturity of their security to a higher level."

Doors open at 1830.

Photo of defdev.eu/vienna group
defdev.eu/vienna
See more events
MQ
Museumsplatz 1, Hof 7 · Vienna