Read Akto's June Product Release. Read Now.

Read Akto's June Product Release. Read Now.

Read Akto's June Product Release. Read Now.

In-person

Hands on API Security Workshop 2.0 with OWASP LA

Oct 27, 2023 at 5:00 PM

Hands on API Security Workshop: Integrating API Security Checks in CI/CD
Hands on API Security Workshop: Integrating API Security Checks in CI/CD
Hands on API Security Workshop: Integrating API Security Checks in CI/CD

Excited to host API Security workshop 2.0 in collaboration with OWASP LA and Co-host Edmond Momartin. This workshop will equip participants with the knowledge and hands-on skills to integrate API Security Testing into their GitHub DevSecOps pipelines.

The OWASP Los Angeles chapter regularly meets in-person on the 4th Wednesday every month featuring dinner, a great speaker and opportunity for networking.

Event Details:

  • Date: Oct 27, 2023

  • Time: Wednesday, Oct 27, 5pm PDT to 7:30pm PDT

  • Duration: 2.5 hours

  • Location: BLANKSPACES - Santa Monica Coworking Office Space 1450 2nd St · Santa Monica, CA

  • Format: Hands-On Training Workshop

  • Drinks and Food provided at the venue: Yes

Pre-requisites:

  • A GitHub account.

  • Basic understanding of application security.

  • Attendees are required to bring their laptops with internet connectivity

Agenda:

Introduction (15 minutes)

  1. The DevSecOps paradigm and its importance.

  2. Understanding GitHub Actions.

  3. The relevance of API Security testing in the CI/CD pipeline.

Overview of GitHub Actions for CI/CD (10 minutes)

  1. Basic components: workflows, runners, actions.

  2. Demonstration: A simple CI pipeline with GitHub Actions.

Hands-on: Integrating API Security testing with GitHub Actions (60 minutes)

  1. Introduction to API Security Testing.

  2. Overview of OWASP Top 10 for API Security

  3. Hands-on activity:

    • Setting up a test environment (ideally a deployed version of the app).

    • Configuring the API Security tool to scan the deployed application.

    • Writing a GitHub Actions workflow to trigger API Security scans post-deployment.

    • Analyzing and responding to API Security findings within GitHub.

What's in it for Participants?

  1. Skill Enhancement: Mastery of integrating API Security checks within the popular GitHub Actions CI/CD framework.

  2. Hands-on Experience: Directly apply workshop teachings to real-world scenarios.

  3. Collaboration: Network and collaborate with peers facing similar challenges.

Speakers

Speaker 1 photo
Speaker 1 photo

Ankita Gupta

CEO & Co-Founder at Akto

Speaker 2 photo
Speaker 2 photo

Ankush Jain

CTO & Co-Founder at Akto