Главная
Study mode:
on
1
Introduction
2
Tals background
3
About Serverless
4
Cloud Native Transformation
5
What is Cloud Native
6
Security in Serverless
7
Eventdriven architecture
8
AWS Lambda environment
9
Serverless security
10
Application security landscape
11
Demo
12
Lost Perimeter
13
Security Risks
14
Security Scale
15
Traditional Testing
16
Traditional Problems
17
Server Authentication
18
Testing
19
Infrastructure as Code
20
AppSec Limitations
21
SAS Limitations
22
SAS Last Resort
23
Cloud Monitoring
24
Cloud Monitoring Example
25
Top 10 Project
Description:
Explore the world of automated serverless security testing in this 50-minute OWASP Foundation talk by Tal Melamed, Senior Director of Cloud Native Security Research at Contrast Security. Dive into the challenges and opportunities of securing serverless applications in cloud-native environments. Learn about common risks in serverless architectures, limitations of traditional testing methodologies, and discover a frictionless approach to automatically testing serverless applications without scripts or delays. Gain insights into event-driven architectures, AWS Lambda environments, and the evolving application security landscape. Witness a demo showcasing lost perimeter scenarios and security risks at scale. Understand the importance of infrastructure as code, cloud monitoring, and how to overcome AppSec limitations in serverless contexts. By the end of this talk, equip yourself with knowledge to deliver secure applications continuously in a serverless world.

Automated Serverless Security Testing: Delivering Secure Apps Continuously

OWASP Foundation
Add to list
0:00 / 0:00