SaaS/PaaS Offense and Defense
Details
Session Summary
AI agents are changing how enterprises use SaaS and PaaS platforms. These systems are no longer just productivity tools — they are becoming execution environments, integration layers, data stores, and automation engines. As a result, SaaS/PaaS security is becoming even more important, not less.
This session explores practical offensive and defensive patterns across modern SaaS and PaaS environments. We will look beyond traditional WebApp and API security and focus instead on platform misconfigurations, overprivileged identities, insecure integrations, OAuth abuse, automation risks, data exposure, and business workflow compromise.
The talk will cover how attackers can abuse trusted SaaS/PaaS platforms, how defenders can detect and reduce these risks, and why SaaS/PaaS security must become a core part of enterprise security strategy in the agentic era.
Speaker Bio: Agent12
Nice engineering and management background in enterprise technology, with hands-on experience across both offensive and defensive security operations. Work spans security architecture, cloud and SaaS security, automation, and secure enterprise platforms.
Recently, focused on architecting and building secure agentic business solutions for large enterprises, with a particular interest in how AI agents, SaaS/PaaS platforms, identity, integrations, and automation reshape the modern enterprise attack surface.
