Skip to content

Details

TOPIC: AppSec 2.0: Reimagine AppSec With Runtime Analysis

Join us for great networking, dinner and drinks, and see a presentation by Kiran Kamity, CEO and Founder of Deepfactor.

ABSTRACT: SCA tools (container and dependency scans) generate too much noise. Runtime security tools don’t understand SCA findings, and don’t come in until production. What if you could marry SCA with runtime analysis during dev, test, and prod?

In this session, we will discuss how the next generation of AppSec needs to go beyond just integrating static SCA into your CI pipeline, to analyzing insecure behaviors inside running apps and correlating that back to SCA to understand which vulnerable components are actually loaded into memory and used by your application. This new approach to AppSec will detect both known vulnerabilities/CVEs with SCA scans and unknown vulnerabilities with runtime analysis. It will then prioritize known vulnerabilities with runtime correlation of SCA findings. End result: you catch most of the key risks in your app, prioritize the key items your devs need to work on without flooding them with alerts, and remove unused components from your containers to burn down your CVE debt rapidly….and achieve the true mission of AppSec…to empower engineering and security teams to create secure applications."

Thanks to our Sponsor: Deepfactor
Deepfactor Developer Security is a new approach to AppSec that is cloud-native and developer-friendly. It helps enterprises address supply chain and DevSecOps initiatives with a unique technology approach that combines SCA (Software Composition Analysis), SBOM (Software Bill of Materials) and Runtime Security.

SPONSORSHIP Opportunities Available
*Vendors interested in sponsoring please send an email to sponsorship.la@owasp.org*

CODE OF CONDUCT
We hope you enjoy the event, we care deeply about inclusivity and diversity so that OWASP is a comfortable and welcoming community for everyone. Please reach out to one of our chapter leaders if you have any feedback/concerns or would like to speak to us, we take these matters very seriously. You can find out more about our policies here:
https://owasp.org/www-policy/operational/conferences-events.html#conference-and-event-anti-harassment-policy

Related topics

Events in Santa Monica, CA
Computer Security
OWASP
Web Security
Ethical Hacking
Software Development

Sponsors

OWASP - LA

OWASP - LA

sponsorship.la@owasp.org

Kodem

Kodem

Helping AppSec Teams Make Security a Priority

Semgrep

Semgrep

Protect your code with secure guardrails

Fastly

Fastly

Create fast, secure, and scalable sites and apps

You may also like