International Secure Systems Development Conference
London 20 & 21st May 2010, Westminster Conference Centre
Programme
The programme is organised into half days with a Keynote followed by two streams, and a Panel discussion at the end of the half day.
|
|
|
Main / Keynote / Panel |
Management Track |
Technical / Coding Track |
|
Day 1 AM |
9.00 |
Introduction to the Conference
|
|
|
|
Keynote 1 |
9.15 |
Secure System Development – what does it mean, and why should the Business care? |
|
|
|
|
9.45 |
The State of Software Security |
|
|
|
|
10.30 |
Coffee Break | ||
|
|
11.00 |
A Survey of Application Vulnerabilities |
|
|
|
|
11.45 |
|
The Business Case for Secure Coding
Speaker: Stuart Okin, Comsec Consulting UK |
Secure Coding or Quality Engineering |
|
|
12.30 |
Panel Session: |
|
|
|
Day 1 PM |
1.00 |
Networking Lunch | ||
|
|
2.00 |
The Secure Development Life-Cycle
Speakers: Geoffrey Hill, Microsoft |
|
|
|
|
2.30 |
|
Managing Legacy Application Development |
Threat Modelling in the 'Real World' |
|
|
3.15 |
Coffee Break | ||
|
|
3.45 |
|
Outsourcing Secure Development Speaker: David Harper, Fortify |
|
|
|
4.30 |
|
Building Security into Acquired Software |
Developing Secure Components for Embedded Systems |
|
|
5.15 |
Panel Session: |
|
|
|
DAY TWO Chair for day two: Peter Wood | ||||
|
Day 2 AM |
9.15 |
|
| |
|
|
9.45 |
The Challenges of Secure System Development |
User experience of selecting and using Code Analysis | |
|
|
10.15 |
|
Secure Coding Metrics
Speaker: Andrew Brown, OrbisIP Ltd |
Securing Java in Oracle Using Database Application Monitoring as part of a Secure SDLC |
|
|
10.45 |
Coffee break | ||
|
|
11.15 |
|
Managing Business Processes for Secure Software Development
|
Breaking SSL: Why leave to others what you can do yourself |
|
|
12.00 |
Panel Session:
Panellists include (ISC)2, SANS, and two University under and post graduate courses |
|
|
|
|
12.30 |
Networking Lunch | ||
|
Day 2 PM |
1.30 |
Developing your own Testing Tools for Secure Development
|
|
|
|
|
2.15 |
|
Architecting Access (Business Rules) in Development Speaker: Peter Trommler |
Speaker: Ari Takanen, author of “Fuzzing for Software Security Testing and Quality Assurance” |
|
|
3.30 |
|
Tips & Tricks for Reto-fitting Secure Code |
Software Assurance |
|
|
3.30 |
Panel Session: |
|
|
|
|
4.00 |
Finish |
|
|
Please note: The programme is correct at time of publishing online.

























