8–10 Apr 2025
Grandior Hotel
Europe/Amsterdam timezone

Security Days Organisational Committee

Is my application secure? – lessons learnt from security code reviews in GÉANT

9 Apr 2025, 13:30
25m
Ceremony + Dialog Room (Grandior Hotel)

Ceremony + Dialog Room

Grandior Hotel

Prague, Czechia
Single Presentation (25 min) Presentation DDoS

Speakers

Mr Jarosław Wieczorek (PCSS) Marcin Wolski (PSNC)

Description

The presentation topics will include but not be limited to:

  1. Various approach for software reviews – the software reviews portfolio comprises several types of a software analysis (such as automated or manual review) and detailed review methodologies, taking into account peculiarities of particular specific programming languages used in the project.
  2. An overview of typical issues and defects found during the code reviews (scope of the GN4.3 and GN5.1).
  3. Benefits of introducing penetration tests to the software review processes i.e. the synergy effect obtained with penetration testing linked with static code analysis.
  4. Automatic quality inspections in SonarQube by enhanced CI/CD pipelines.

Author

Marcin Wolski (PSNC)

Co-authors

Gerard Frankowski (PSNC) Mr Jarosław Wieczorek (PCSS) Amineh Akhavan Saraf Toby Rodwell

Presentation materials

There are no materials yet.