BEGIN:VCALENDAR
VERSION:2.0
PRODID:Data::ICal 0.24
BEGIN:VEVENT
DESCRIPTION:   'Title: Engineers & Exploits: The Quest for Security\n   Whe
 n: Saturday\, Aug 10\, 14:40 - 15:10 PDT\n   Where: LVCC West/Floor 2/W228
 -W230/W228-W230-ASV Main Stage - [1]Map\n\n   Description:\n\n   Efficient
  threat modelling is essential for finding and fixing\n   vulnerabilities.
  Yet empowering threat modelling trainers to\n   communicate in a way that
  ensures actionable solutions\, moving beyond\n   the directive to “fix 
 SQLI.” is a common challenge. This talk\n   presents strategies for trai
 ning threat modelers\, ensuring they can\n   communicate techniques and pr
 inciples needed to better and address\n   vulnerabilities early on in the 
 SDLC\n\n   Introducing: "Engineers & Exploits: The Quest for Security" a\n
    derivative of the Cornucopia card game. While Cornucopia is an\n   exce
 llent introductory threat modelling exercise\, we found limitations\n   wh
 en training our coworkers to subsequently instruct developers. To\n   brid
 ge this gap\, we developed a tabletop game designed to improve the\n   lea
 rning experience. In this interactive session\, we will show game\n   mech
 anics and explain benefits\, Join us to discover how you can\n   transform
  threat modelling education\, making it engaging for trainers\n   and trai
 nees.\n\n   Speakers:Andra\,Spyros Gasteratos\n\n   SpeakerBio:  Andra\n\n
    Andra is a Principal Application Security Specialist at Sage\, with\n  
  over seven years of experience in the field of application security.\n   
 She is responsible for implementing DevSecOps practices\, conducting\n   s
 ecurity assessments\, and developing secure coding guidelines for\n   soft
 ware engineering and AI/ML teams. She holds multiple\n   certifications\, 
 including AWS Certified Cloud Practitioner and\n   Attacking and Securing 
 APIs. She has a strong background in software\n   development and project 
 management\, as well as a master's degree in\n   information and computer 
 sciences. She has been co-leading the OWASP\n   London Chapter since 2019\
 , where she organises and delivers events and\n   workshops on various sec
 urity topics. She is passionate about\n   educating and empowering develop
 ers and stakeholders to build and\n   deliver secure software and best pra
 ctices in a fast-paced\,\n   results-driven environment.\n\n   SpeakerBio:
   Spyros Gasteratos\n\n   Spyros has over 15 years of experience in the se
 curity world. Since\n   the beginning of his career he has been an avid su
 pporter and\n   contributor of open source software and an OWASP volunteer
 . Currently\n   he is interested in the harmonization of security tools an
 d\n   information and is currently helping Fintechs setup and automate lar
 ge\n   parts of their AppSec programmes. He also maintains several Open\n 
   Source projects including the security automation framework Dracon\,\n  
  and opencre.org\, the worlds largest security knowledge graph. Also\, he\
 n   usually doesn’t speak about himself in the third person.\n\n   '\n\n
    1. #LVCCW_Level2_North\n\n\n
DTEND:20240810T221000Z
DTSTART:20240810T214000Z
LOCATION:APV - LVCC West/Floor 2/W228-W230/W228-W230-ASV Main Stage
SUMMARY:Engineers & Exploits: The Quest for Security
END:VEVENT
END:VCALENDAR
