Yury Shabalin

Chief Security Architect, Swordfish Security

About speaker

5+ years of experience in Information Security. Responsible for implementation of SSDL process, integration into single ecosystem of development, testing and security. Analysis of used frameworks and tools from security and performance standpoint; adoption, tailoring, implementation and usage of industry standard security practices. International security conferences speaker. Found some bugs in Android system.
November 16
17:30 — 18:00
Fast Track
Russian
Within the framework of this report I plan to shine light on the differences of the new versions of Android in terms of security. We’ll cover novelty functionalities, changes to already existing mechanisms, imminent obstacles and necessities in creating a safer application. We could ponder which direction best to pursue in improving Android security.
And not to leave you hanging, I’ll let you in on where to find out more about all of this.
November 16
15:00 — 16:00
Fast Track
Russian
Today, everybody talks about DevOps, digitalization, business transformation and many more scary words. Digital transformation has found its way into security development, disrupting the cosy world of relying on static analysis before releases and leading many to question the necessity to transform AppSec in the same key.
In our report we will try to explain the principles of DevSecOps and the way we see it, as well as the ways in which it differs to the classical model of security. The report contains many examples, demonstrations and script codes to understand how it all really works. Using an imaginary organization, we will offer a solution to handle it without being neck-deep in task management.