columbus, oh | June 20, 2024 | 9am - 1pm
The 2024 API and Application Security Summit is an immersive community event that will equip Security, DevOps, API, and Application professionals with the knowledge and insights needed to navigate the complexities of securing digital assets.
Join us for the free API and Application Security Summit, where leading experts will share their insights and best practices for protecting your systems from emerging threats. From practical tips to thought-provoking keynotes, this event offers a unique opportunity to enhance your skills, network with industry peers, and learn from the best. Don't miss out on this must-attend event for anyone serious about API and Application Security.
Venue:
Hilton Columbus Downtown
Gina Knee Room
402 N High St. Columbus, OH 43215
Who Should Attend:
CISOs and security leaders
Application and Product Security Teams
DevSecOps
Key Takeaways:
Understand the latest security threats and vulnerabilities in API and application security
Learn best practices for securing your systems and data
Hear from industry experts and thought leaders on their experiences and insights
Network with peers and build valuable connections in the industry
9:00 am - 9:30 am
Registration and Breakfast
9:30 am - 10:00 am
Session 1: Attacks, Defenses, Bypasses, and Detection
Speaker - Jon Gorenflo, Principal Instructor at SANS; Principal Consultant at ATTACKD
Common attack scenarios Apps and APIs are subjected to. How WAAPs defend against these. How attackers might bypass or attempt to bypass protections The importance of detection when we find the limitations of preventative defenses
10:00 am - 10:45 am
Session 2: Security Leader Panel
Join a group of security leaders and practitioners as they share practical insights on how they are tackling product security this year.
Some of our panelists:
Moderator: Tim Ebbers;
Jay Bobo, Sr. Manager of Product Security at CoverMyMeds;
Korede Ola, VP of Cybersecurity Engineering at Confidential;
Jason Montgomery, LLM Security Expert
10:45 am - 11:00 am
Coffee and Networking Break
11:00am - 11:55 am
Session 3: Securing Generative AI
Speaker - Jason Montgomery
Large language models (LLMs) are rapidly transforming the products we build and use, introducing both innovative capabilities and new security challenges. This talk will provide a foundational understanding of emerging LLM architectures / components and their integration into applications via APIs and additionally cover unique risks posed by LLMs and related mitigation techniques to ensure the responsible and secure adoption of LLMs.
12:00 pm - 12:45 pm
Session 4: Wallarm API Security Demo
Speaker - Tim Ebbers
12:45 pm - 1:30 pm
Lunch and Networking
Make sure you RSVP and slither your way to the event so you can collect our sticker pack based off the new OWASP API Security Top-10 list. Follow the slimy, sneaky, and stealthy snek as it looks for ways to exploit your APIs – and beware the surprise twist in its tail! A little snek said there might even be some other goodies for you to take home from the event as well.
RSVP to our event to be entered to win a raffle for a Nintendo Switch.
Here's how it works: by simply attending our event, you will automatically be entered into the draw to win the Nintendo Switch. It's that easy! No complicated entry forms or requirements – just your presence at the event puts you in the running for this fantastic prize. We’ll see you there!
RSVP and swing by the show to be entered to win a raffle for a Nintendo Switch.
Here's how it works: by simply attending our event, you will automatically be entered into the draw to win the Nintendo Switch. It's that easy! No complicated entry forms or requirements – just your presence at the event puts you in the running for this fantastic prize. We’ll see you there!
Not going to the 2024 API and Application Security Summit? With our free, no-obligation 30-day trial, you can take action now to strengthen your application security program. See for yourself how you gain full visibility into your application and APIs estate in minutes and get real-time detection/mitigation with scalable cloud-native deployment.