Главная
Study mode:
on
1
Intro
2
Cloud native is the future of app development
3
Cloud native transformation has begun
4
More than a technology shift
5
Serverless architecture
6
What is serverless?
7
What about security?
8
Resource-based IAM
9
Loss of perimeter
10
Serverless risks
11
OWASP serverless top 10
12
Demo
13
Scale
14
Traditional AppSec testing for cloud native
15
Traditional testing in modern CI/CD pipelines
16
iRobot serverless app
17
SCA & image scanning
18
Infrastructure as code
19
IAST
20
SAST
21
DAST
22
AppSec testing, redefined for the cloud
23
Example use case
24
One DevSecOps platform
25
Outro
Description:
Explore serverless security challenges and new approaches in this conference talk from GOTO Copenhagen 2021. Dive into the world of cloud-native development and serverless architecture, understanding their impact on traditional security models. Learn about resource-based IAM, loss of perimeter, and specific serverless risks. Examine the OWASP serverless top 10 and witness a live demo. Discover how traditional AppSec testing methods fall short in modern CI/CD pipelines and cloud-native environments. Gain insights into innovative security solutions for serverless applications, including SCA, image scanning, infrastructure as code, IAST, SAST, and DAST. Explore real-world use cases and the concept of a unified DevSecOps platform to address the unique security challenges of serverless computing.

Serverless Security - New Risks Require New Approaches

GOTO Conferences
Add to list