|
Topic:
|
Secure Software Made Easy
|
|
Speaker:
|
Blake McNeill |
|
Date:
|
24-Nov-2008 |
|
Location:
|
Nexen Conference Center 801-7th Ave. S.W., Calgary, AB. (Plus 15 level)
Map
|
|
Registration:
|
4:45 pm - 5:15 pm |
|
Presentation:
|
5:15 pm |
|
|
|
|
The Calgary .Net user Group would like to thank the following organizations: |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Click here to register for this event (Note: You must be logged in)
|
Given that more than 90% of all vulnerabilities reported in the first half of 2008 affected applications, rather than operating systems it appears that application developers need some help to improve their secure development practices as hackers are focusing on their software. The purpose of this presentation isn't to introduce new security frameworks or mythical silver bullets but to give developers simple things that they can do to improve the security of their software using secure development practices and features found within the existing .Net framework. In this presentation we will do an exercise in 'evil thinking', introduce Threat Modeling, then focus on how to create the five pillars of a secure applications and finish with security testing, all of these should be easy to include in your existing development and will hopefully give application developers the 80% solution for only a small investment in effort.
Blake McNeill is a Microsoft MVP in the Developer Security group and currently Product Development Manager for Zing Pow. Blake has over 18 years of experience designing and building corporate and commercial software for companies ranging from start-ups to some of the largest corporations in Canada.