Speaker Details

Brian Vermeer
Snyk
Staff Developer Advocate for Snyk, Java Champion, and Software Engineer with over a decade of hands-on experience in creating and maintaining software. He is passionate about Java, (Pure) Functional Programming and Cybersecurity. Brian is a JUG leader for the Virtual JUG and the NLJUG. He also co-leads the DevSecCon community and is a community manager for Foojay. He is a regular international speaker on mostly Java-related conferences like JavaOne, Devnexus, Devoxx, Jfokus, JavaZone and many more. Besides all that, Brian is a military reserve for the Royal Netherlands Air Force and a Taekwondo Master / Teacher.

GitHub Actions has revolutionized the way developers build and deploy software. With its seamless integration into GitHub repositories, you can automate your entire CI/CD pipeline, from build and test to deployment. However, securing your pipeline is equally important as automating it.

Join us for an action-packed workshop where we will show you how to create a secure CI/CD pipeline in GitHub Actions using Snyk. We will walk you through the process of integrating security scanning and monitoring as part of your pipeline. By the end of this workshop, you will have a thorough understanding of how to automate security scanning and monitoring in your build cycle before production, ensuring that your software is always secure.

More

So you built your Java apps and containerized them, great job! But what does it take to secure a container? Are you sure you're following all the best practices to build container images correctly? What are the threats you are not mitigating in a running container? There’s no better way to understand container security than seeing some live hacking! This session introduces the state of docker security by reviewing vulnerabilities in Docker images and their impact on your Java application. Join me to learn and adopt best practices of running secure containerized Java applications in production

More

A Practical Guide for Java Developers. Join us in this workshop where we’ll explore common security mistakes that can leave your code vulnerable to attack. Through real-world examples, we’ll experience how attackers exploit these vulnerabilities by hacking them. In addition we will find out how we can easily mitigate these issues in your Java code. Whether you’re a junior developer or a seasoned pro, this workshop is a must-attend for anyone concerned with the security of their applications. Let’s learn how to write secure, bulletproof code that can withstand attacks and avoid security mistakes.

More