Lessons in Securing Internal Apps - AppSecCali 2019
Offered By: OWASP Foundation via YouTube
Course Description
Overview
Explore strategies for securing internal applications in this 44-minute conference talk from AppSecCali 2019. Learn how to tackle the unique challenges of locking down sensitive internal tools, dashboards, and control panels across diverse technical stacks. Discover a scalable approach to internal application security, including establishing a useful mental model, implementing authentication and authorization basics, deploying Content Security Policy, leveraging SameSite cookies for entry point regulation, utilizing Web Application Firewalls for detection and response, and using internal apps to train new security engineers. Gain insights from both successful and unsuccessful approaches as Hongyi Hu, Security Engineer at Dropbox, shares valuable lessons and humorous anecdotes from his experience leading the Application Security team.
Syllabus
AppSecCali 2019 - The Call is Coming From Inside the House: Lessons in Securing Internal Apps
Taught by
OWASP Foundation
Related Courses
MongoDB for .NET DevelopersMongoDB University Web Application Development – Capstone Course
University of New Mexico via Coursera Ciberseguridad: ataques y contramedidas
Universidad Rey Juan Carlos via Independent Reliable Cloud Infrastructure: Design and Process auf Deutsch
Google Cloud via Coursera Securing and Integrating Components of your Application 日本語版
Google Cloud via Coursera