Tech Talk - Software Supply Chain Security Testing

Description

Introduction to application security testing Software development security has become an increased are of focus for organizations over the past few years due to high profile breaches and upcoming legal liability framework. This means that organizations developing software are looking to increase the security of the application itself rather than relying on compensating controls.

To do that, organizations must develop a modern software security assurance process that includes governance components, tools, and security defect management processes.

The session will provide you with the foundation knowledge about regulations, frameworks and components for application security assurance and expert insight and guidance on the initial steps in building such programs.

What will you learn?

  • How does the NIST vision for minimum software security testing requirements impact modern DevOps practices?
  • How are modern tools such as SAST/DAST/SBOM impacting modern DevSecOps environments?
  • How can organizations get started with building a modern software security assurance process?
  • Basic components that should be part of the software security assurance program.

Our Speaker

Alexander Poizner began his technology career at the age of 15, working as a software developer on the Human Genome Project. Today, after spending over 25 years in cybersecurity in technical, consulting, and leadership roles, including VP of Operations for one of North American MDR providers and CEO of an Application Security Solutions provider. Alexander focuses on application security, building solutions for detecting and remediating software security defects at the earliest stages possible.

Alexander works with software development stakeholders in organizations ranging from the largest financial institutions to prominent startups and government research and innovation networks, helping them to create efficient application security assurance programs. He also is a prominent member of the startup community both in Canada and Israel, advising application security vendors on product strategy.

Alexander holds an engineering degree from the University of Toronto and multiple cybersecurity designations from (ISC)2 and ISACA. He is an active mentor in both security and business community, volunteering through organizations such as Cherie Blair Foundation for Women and (ISC)2

Organizer

(ISC)2 Atlantic Canada Tech Talks

Location

Online

Date & Time

March 30, 2023, 11 a.m. - March 30, 2023, noon

Cost

$0

Learn More & Register

Learn More & Register