YoVDO

DARCC - The 5 Layers of Modern App Security

Offered By: DevSecCon via YouTube

Tags

Application Security Courses Microservices Courses Access Control Courses Configuration Management Courses GitOps Courses Container Security Courses Policy-as-Code Courses Runtime Security Courses

Course Description

Overview

Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
Explore the five key layers of modern application security - DARCC (Dependency, Access-Control, Runtime, Configuration, Container) - in this 31-minute conference talk from DevSecCon. Learn how to secure your software supply chain, enforce application policies, ensure expected code behavior, deploy correctly, and maintain the right environment for your app. Discover how best practices like GitOps, event-driven architecture, microservices, policy as code, and modular interfaces come together to create a unified approach to application security. Presented by Or Weis, Co-Founder at Permit.io, this talk covers challenges, best practices, decoupling, access control, configuration, container security, and application security, concluding with a discussion on API security, managing dependencies, and risk quantification.

Syllabus

Intro
Challenges
Questionnaires
Best Practices
Decoupling
Access Control
Configuration
Container
Application
Summary
Questions
Discord
API Security
Managing dependencies
Risk quantification


Taught by

DevSecCon

Related Courses

Managing Resources with Azure Policy
LinkedIn Learning
Infrastructure-as-Code Security: Why, What, and How
Pluralsight
12 Essential Requirements for Policy Enforcement and Governance with OSCAL
CNCF [Cloud Native Computing Foundation] via YouTube
Application Code of Conduct - Full-Stack Policy as Code
Linux Foundation via YouTube
Bridging Security and Reality with Open Policy Agent
Linux Foundation via YouTube