Last Day to Save $200 on Cutting-Edge Cyber Security Training at SANS Chicago 2019!

Network Security 2019

Las Vegas, NV | Mon, Sep 9 - Mon, Sep 16, 2019
Event starts in 75 Days
 

DevSecOps: Key Controls For Modern Security Success

  • Eric Johnson
  • Tuesday, September 10th, 8:15pm - 9:15pm

Modern development teams deliver features at a rapid pace using new technologies such as containers, microservices, and serverless functions. Operations and infrastructure teams support these rapid delivery cycles using Infrastructure as Code, Test Driven Infrastructure (TDI), and cloud automation. However, security teams are using traditional security approaches that don't keep up with the rate of accelerated change. Security must be reinvented in a DevOps world by taking advantage of the opportunities provided by continuous integration and delivery pipelines.

This talk will introduce attendees to 5 key phases of DevOps: pre-commit, commit, acceptance, production, and operations. In each phase, we identify the key security controls and discuss several open source tools for implementing the controls. Attendees will walk away with a practical and modern approach for building a successful DevSecOps program.


Bonus Sessions

The following bonus sessions are open to all paid attendees at no additional cost. There are many different types of events that fall into these categories:

  • SANS@Night: Evening presentations given after day courses have ended. This category includes Keynotes.
  • Special Events: SANS-hosted events and other non-technical recreational offerings. This category includes, but is not limited to, Receptions and Information Tables.
  • Vendor: Events hosted by external vendor exhibitors.
Monday, September 9
Session Speaker Time Type
General Session - Welcome to SANS Bryan Simon Monday, September 9th, 8:00am - 8:30am Special Events
My Success is Built on the Bones of so Many Failures John Strand Monday, September 9th, 7:15pm - 9:15pm Keynote
Tuesday, September 10
Session Speaker Time Type
Coffee & Donuts with the Graduate Students Tuesday, September 10th, 7:30am - 9:00am Reception
Women's CONNECT Tuesday, September 10th, 6:00pm - 7:00pm Reception
GIAC Overview Presentation Jeff Frisk Tuesday, September 10th, 6:15pm - 7:00pm Special Events
Active Industrial Control System Cyber Defense - Colonel Mustard...Candlestick...Kitchen Dean Parsons Tuesday, September 10th, 7:15pm - 8:15pm SANS@Night
CYA by Using CIA Correctly For A Change Keith Palmgren Tuesday, September 10th, 7:15pm - 8:15pm SANS@Night
Hacking Dumberly, Just Like the Bad Guys Tim Medin Tuesday, September 10th, 7:15pm - 8:15pm SANS@Night
Moving Past Just Googling It: Harvesting and Using OSINT Micah Hoffman Tuesday, September 10th, 8:15pm - 9:15pm SANS@Night
DevSecOps: Key Controls For Modern Security Success Eric Johnson Tuesday, September 10th, 8:15pm - 9:15pm SANS@Night
Wednesday, September 11
Session Speaker Time Type
Vendor Solutions Expo Wednesday, September 11th, 12:00pm - 1:30pm Vendor Event
Vendor Solutions Expo Wednesday, September 11th, 5:15pm - 6:15pm Vendor Event
The Data Privacy Imperative Ben Wright Wednesday, September 11th, 7:15pm - 8:15pm SANS@Night
Failing to Succeed in Cyber Security and Risk Management My-Ngoc Nguyen Wednesday, September 11th, 7:15pm - 8:15pm SANS@Night
Top 10 Writing Mistakes in Cybersecurity and How You Can Avoid Them Lenny Zeltser Wednesday, September 11th, 7:15pm - 8:15pm SANS@Night
Automated Adversary Emulation using Caldera Erik Van Buggenhout Wednesday, September 11th, 7:15pm - 8:15pm SANS@Night
Modern Information Security: Forget Cyber, It's All About AppSec Adrien de Beaupre Wednesday, September 11th, 8:15pm - 9:15pm SANS@Night