Scott Gerlach discusses what Web Security means and how to automate API security vulnerability discovery through his DAST platform, StackHawk.
- Homebrewing: API by day; IPA by night 😜
- What does web security even mean for the front-end web developer? How much responsibility do we have in ensuring security? CSP? What about NPM packages we don't maintain?
- How do large businesses deal with security breaches? How much should we prioritize web security teams, especially when budgeting is thin? What about small teams and startups?
- What does DAST offer that SCA (static code analysis) doesn't? Why opt for DAST if we already have useful tools to perform SCA testing?