Главная
Study mode:
on
1
Intro
2
Dan Cornell
3
The More Interesting New Days
4
What Changed?
5
Software Bill of Materials (SBOM)
6
Architectural Bill of Materials
7
High Level Threat Modeling Concepts
8
Example Data Flow Diagram
9
Mapping Threats to Asset Types
10
Code - API Testing
11
Components
12
Compute
13
Cloud Configuration
14
So What Does This All Look Like?
15
Reporting
16
Security/Risk Management
17
Service Owner/Developer
18
Test Plan
19
If You Have More Resources
20
Questions and Answers
Description:
Explore the evolving landscape of testing cloud-native applications in this 48-minute LASCON conference talk. Delve into the A's, B's, and Four C's of modern testing methodologies, examining crucial aspects such as Software Bill of Materials (SBOM), Architectural Bill of Materials, and high-level threat modeling concepts. Learn about API testing, component analysis, compute resources, and cloud configuration. Discover how to create effective data flow diagrams, map threats to asset types, and develop comprehensive test plans. Gain insights into reporting strategies, security and risk management practices, and the role of service owners and developers in the testing process. Conclude with a Q&A session addressing additional resources and audience inquiries.

The A's, B's, and Four C's of Testing Cloud-Native Applications

LASCON
Add to list