Jason Taylor

Tue Feb 7 2012 | 1:00 PM EDT | 1 hour

Six Key Security Engineering Activities for Web Applications

Webinar

How to integrate security into the SDLC of a web application.

Note: This past event has not yet been archived by the event's producer, so no link is available yet. Check this page again soon.

Adopting a security engineering mindset to application development means that security is considered from project inception through deployment.  This webcast will present six key security engineering activities that development teams can leverage to refine and extend their existing life cycle activities.  Attendees will learn best practices for integration and how to adopt these activities incrementally.   This talk is valuable for all team members from many different disciplines including business analysts, information security managers, architects, developers, testers and security analysts.

 Topics covered:

  • Security engineering overview and what it entails
    • Identifying security objectives to ensure security considerations in later phases
    • Applying security design guidelines to reduce your application’s attack surface
    • Conducting security architecture and design reviews to identify security problems that can have a multiplier effect in later phases
    • Creating threat models that identify threats, attacks, vulnerabilities and countermeasures
    • Performing security code reviews and testing to uncover specific vulnerabilities
    • Conducting security deployment reviews to ensure configuration and deployment problems are discovered before the application is in production
  • How to adopt these activities incrementally to maximize your security ROI

 

Webinar

Free to attend

application security software engineering web application SDLC

Computers, Software
Information Technology

5 Recommendations for this event

Networking tools

Icn_watchlistAdd to your watchlist

Icn_badgeEmbed a widget
Icn_cutnpasteCopy and paste

Icn_outlookMS Outlook
Icn_googleGoogle
Icn_yahooYahoo!
Icn_icaliCal

Icn_mailBy email
Icn_aimBy instant message

Icn_diggDigg
Icn_newsvineNewsvine
Icn_deliciousDel.icio.us
Icn_redditReddit

Icn_printSend to printer