Get your 2024 Plan for API Security

Download Now

Get your 2024 Plan for API Security

Download Now

Get your 2024 Plan for API Security

Download Now

Products

Solutions

Resources

In-person

Hands on API Security Workshop 2.0 with OWASP LA

Oct 27, 2023 at 5:00 PM

Hands on API Security Workshop: Integrating API Security Checks in CI/CD
Hands on API Security Workshop: Integrating API Security Checks in CI/CD
Hands on API Security Workshop: Integrating API Security Checks in CI/CD

Excited to host API Security workshop 2.0 in collaboration with OWASP LA and Co-host Edmond Momartin. This workshop will equip participants with the knowledge and hands-on skills to integrate API Security Testing into their GitHub DevSecOps pipelines.

The OWASP Los Angeles chapter regularly meets in-person on the 4th Wednesday every month featuring dinner, a great speaker and opportunity for networking.

Event Details:

  • Date: Oct 27, 2023

  • Time: Wednesday, Oct 27, 5pm PDT to 7:30pm PDT

  • Duration: 2.5 hours

  • Location: BLANKSPACES - Santa Monica Coworking Office Space 1450 2nd St · Santa Monica, CA

  • Format: Hands-On Training Workshop

  • Drinks and Food provided at the venue: Yes

Pre-requisites:

  • A GitHub account.

  • Basic understanding of application security.

  • Attendees are required to bring their laptops with internet connectivity

Agenda:

Introduction (15 minutes)

  1. The DevSecOps paradigm and its importance.

  2. Understanding GitHub Actions.

  3. The relevance of API Security testing in the CI/CD pipeline.

Overview of GitHub Actions for CI/CD (10 minutes)

  1. Basic components: workflows, runners, actions.

  2. Demonstration: A simple CI pipeline with GitHub Actions.

Hands-on: Integrating API Security testing with GitHub Actions (60 minutes)

  1. Introduction to API Security Testing.

  2. Overview of OWASP Top 10 for API Security

  3. Hands-on activity:

    • Setting up a test environment (ideally a deployed version of the app).

    • Configuring the API Security tool to scan the deployed application.

    • Writing a GitHub Actions workflow to trigger API Security scans post-deployment.

    • Analyzing and responding to API Security findings within GitHub.

What's in it for Participants?

  1. Skill Enhancement: Mastery of integrating API Security checks within the popular GitHub Actions CI/CD framework.

  2. Hands-on Experience: Directly apply workshop teachings to real-world scenarios.

  3. Collaboration: Network and collaborate with peers facing similar challenges.

Speakers

Speaker 1 photo

Ankita Gupta

CEO & Co-Founder at Akto

Speaker 2 photo

Ankush Jain

CTO & Co-Founder at Akto