Overview
This conference talk explores critical cybersecurity challenges in today's software ecosystem, where vulnerabilities like Log4J, Spring4Shell, and the XZ Backdoor have created significant risks. Learn from Soroosh Khodami, a hands-on solution architect with experience in security platform services for enterprises like Rabobank, as he shares practical strategies for securing software development processes applicable to organizations of all sizes. Discover how basic SQL Injection threats can extend beyond database access, understand the dangers of supply chain attacks, and identify effective practices to secure CI/CD processes. Explore the concepts of Shift-Left Security and DevSecOps, learn how Software Bill of Materials (SBOM) can help prepare for future security crises, and understand the implications of EU supply chain security regulations like DORA/CRA for developers.
Syllabus
Are We Ready For The Next Cyber Security Crisis Like Log4Shell? by Soroosh Khodami
Taught by
Devoxx