BEGIN:VCALENDAR
VERSION:2.0
PRODID:-//CERN//INDICO//EN
BEGIN:VEVENT
SUMMARY:BSides Kraków 2026 Training: From Pentest to DevSecOps.
DTSTART:20260925T070000Z
DTEND:20260925T110000Z
DTSTAMP:20260911T200800Z
UID:indico-event-60@indico.informatyka.agh.edu.pl
CONTACT:tomasz.nal@agh.edu.pl
DESCRIPTION:From Pentest to DevSecOps: Lessons from Building an Open Sourc
 e AppSec Program with DefectDojo\, DependencyTrack and OWASP PTRS\nHow can
  an organisation effectively develop an application security program using
  open-source tools and community-driven standards? How can we move from is
 olated security reports to continuous application security management? Du
 ring the workshop\, we will present our practical experience in building a
 n Application Security (AppSec) program at one of the largest technical un
 iversities in Poland\, based exclusively on open-source solutions. Through
  concrete examples\, we will demonstrate the use of DefectDojo as a centra
 l vulnerability management platform\, DependencyTrack for monitoring softw
 are supply chain risks\, and OWASP PTRS (Penetration Testing Reporting Sta
 ndard) for creating consistent and structured security reports. The works
 hop will focus on practical challenges\, solution architecture\, and lesso
 ns learned from implementing an AppSec program in the environment of a lar
 ge public-sector organisation. The workshop is intended for information s
 ecurity professionals\, IT teams\, DevOps and SOC teams\, as well as anyon
 e interested in implementing practical and scalable application security m
 anagement models in public-sector organisations.\n\nhttps://indico.informa
 tyka.agh.edu.pl/event/60/
LOCATION:Room: 3.27b (Venue: D-17)
URL:https://indico.informatyka.agh.edu.pl/event/60/
END:VEVENT
END:VCALENDAR
