Hi [[ session.user.profile.firstName ]]

PCI Software Security Framework: All You Need to Know for Your AppSec Strategy

If your organization is developing a payment app or even just using one in your product, then this webinar is for you.

The Payment Card Industry (PCI) Security Standards Council recently released a new security framework to replace the previous standard (PCI PA-DSS). The new framework is set to better address the changes that the software development industry has seen in the past few years. Agile and DevOps methodologies, cloud and containerized environments and widespread open source usage have become the new normal and with this, present new AppSec challenges. To ensure that users of payment apps remain safe, the new framework aims to lay a substantial value on continuous application security.

Join Alexei Balaganski (Lead Analyst at KuppingerCole) as he discusses:

- the new framework and standards, and the difference between them and the previous version
- the practical steps organizations need to take in order to follow the new framework
- how organizations can leverage automated vulnerability management tools to ensure application security and compliance with the new standards
Recorded Jul 25 2019 57 mins
Your place is confirmed,
we'll send you email reminders
Presented by
Alexei Balaganski (Lead Analyst at KuppingerCole)
Presentation preview: PCI Software Security Framework: All You Need to Know for Your AppSec Strategy

Network with like-minded attendees

  • [[ session.user.profile.displayName ]]
    Add a photo
    • [[ session.user.profile.displayName ]]
    • [[ session.user.profile.jobTitle ]]
    • [[ session.user.profile.companyName ]]
    • [[ userProfileTemplateHelper.getLocation(session.user.profile) ]]
  • [[ card.displayName ]]
    • [[ card.displayName ]]
    • [[ card.jobTitle ]]
    • [[ card.companyName ]]
    • [[ userProfileTemplateHelper.getLocation(card) ]]
  • Channel
  • Channel profile
  • Empowering Financial Institutions to use Open Source with Confidence Nov 28 2019 6:00 pm UTC 55 mins
    Jeff Crum, Senior Director, Product Marketing at WhiteSource and James McLeod Director of Community, FINOS
    The days when financial institutions relied solemnly on proprietary code are over. Today, even the largest financial services firms have realized the benefits of using open source technology to build powerful, innovative applications at a reduced time-to-market. However, the financial services industry faces strict regulatory requirements that present it with a unique set of challenges, especially when it comes to open source usage (both consumption and contribution).

    FINOS is a non-profit organization whose purpose is to accelerate collaboration and innovation in financial services through the adoption of open source software, standards and best practices. Together with WhiteSource, they are able to provide a safe environment for developers to use open source components freely and fearlessly.

    Join FINOS and WhiteSource as they discuss:

    The challenges of open source usage
    The state of open source vulnerabilities management
    How FINOS uses WhiteSource to ensure the security and IP compliance of FINOS-produced open source software
  • DevSecOps in the Cloud Is More Than Just CI/CD Nov 28 2019 2:00 pm UTC 36 mins
    Henrik Johansson (Principal - Office of the CISO at AWS)
    DevSecOps is often associated with securing a development pipeline in traditional CI/CD frameworks. Join this session, held by Henrik Johansson, Principal - Office of the CISO at AWS, as he discusses and shows:

    - how public cloud technology enables you to fully embrace security automation in your infrastructure
    - how to account security using managed security services to detect incidents and risks at scale; as well as
    - techniques like automated incident response actions and automated instance isolation.
  • 360° Kubernetes Security: From Source Code to K8s Configuration Security Nov 26 2019 6:00 pm UTC 51 mins
    Shiri Ivtsan, Senior Product Manager
    Kubernetes has become the default way for many organizations to scale and orchestrate their use of containers. However, organizations are starting to find themselves needing to take the necessary steps to protect their containers. Automating security checks throughout the development life cycle can help reduce risk and allow organizations to develop and deploy securely.

    Join Shiri Ivstan, Senior Product Manager at WhiteSource and Yaniv Peleg Tsabari, Senior Director of Product Management at Alcide, as they explore the world of security in Kubernetes and discuss:

    The security risks associated with open-source code and Kubernetes environments
    Supply Chain: Continuous Security throughout the CI/CD pipeline
    Security aspects throughout the development cycle, such as Image Scanning, Image Assurance, K8s Configuration hygiene and more.
    How to automate policies with respect to the above techniques throughout the CI/CD pipeline in order to facilitate more secure application deployments.
  • The Next Generation of Application Security Nov 20 2019 12:00 pm UTC 59 mins
    Panel Discussion
    Application security is an effective tool for defending against attacks. But as IT infrastructures shift to “software-defined everything” and move to the cloud, traditional appsec models no longer are enough to protect the application.

    This webinar takes a look at how companies are addressing new models to address more dispersed and dynamically connected applications, from traditional web and mobile APIs to containers and microservices.
  • 10 Tips for Achieving Cultural Change in DevOps Recorded: Nov 12 2019 60 mins
    Jeffrey Martin
    DevOps success depends on three things: people, processes and tools. While tools and processes can be easy enough to address, the people part of the equation can be more difficult to tackle. Changing the culture of an organization can be akin to turning a cruise ship midstream. This webinar offers 10 tips to help employees let go of traditional ways of working and embrace DevOps.
  • The Challenges of Scaling DevSecOps Recorded: Nov 6 2019 23 mins
    Shiri Ivtsan, Senior Product Manager
    Organizations enjoy the speed that DevOps brings to development and delivery. However, most security and compliance monitoring tools have not been able to keep up, becoming the most significant barrier to continuous delivery.
    Now some good news: you can easily integrate security into your existing processes to solve this challenge.
    In this session, Shiri Ivtsan, Senior Product Manager at WhiteSource, will discuss:
    - Leveraging the DevSecOps approach to help speed up security
    - Scaling security into your agile processes
    - 5 easy ways to start driving DevSecOps in your organization
  • Taking Open Source Security to the Next Level Recorded: Oct 24 2019 55 mins
    Senior Director of Product Marketing, Jeff Crum
    Join us for a webinar featuring Forrester VP and Research Director Amy DeMartine to learn more about why open source security has become critical for securing modern applications, the main considerations when evaluating an open source security and license compliance solution and what she sees in store for the future.


    Additionally, WhiteSource Senior Director of Product Marketing, Jeff Crum, will discuss recent analysis of the Software Composition Analysis (SCA) market, including takeaways from The Forrester Wave™: Software Composition Analysis, Q2 2019.
  • Lessons Learned by an Agent of Chaos From DevOps Transformations Recorded: Oct 17 2019 28 mins
    Willy-Peter Schaub (Software Engineer, Director at AJATO Transformations Limited)
    Is your organization ready to embrace a DevOps mindset? Receive a pragmatic view from an agent of chaos, who’s promoting the goal for a single continuous integration and delivery pipeline, shifting testing, security, code reviews, and other opportunities to improve information sharing and quality to the left, shifting configuration to the right, and most importantly, aiming to delight users with constant value.

    Join Willy-Peter Schaub, Software Engineer & Director at AJATO Transformations Limited, as he shares:

    -The learnings and epiphanies gathered during DevOps transformations
    -How practices such as Shift Left, Shift Right and progressive mindset affects the union of people, process and products
  • The Challenges of Scaling DevSecOps Recorded: Oct 16 2019 24 mins
    Shiri Ivtsan, Senior Product Manager
    Organizations enjoy the speed that DevOps brings to development and delivery. However, most security and compliance monitoring tools have not been able to keep up, becoming the most significant barrier to continuous delivery.
    Now some good news: you can easily integrate security into your existing processes to solve this challenge.
    In this session, Shiri Ivtsan, Senior Product Manager at WhiteSource, will discuss:
    - Leveraging the DevSecOps approach to help speed up security
    - Scaling security into your agile processes
    - 5 easy ways to start driving DevSecOps in your organization
  • The Next Generation of Application Security Recorded: Oct 15 2019 60 mins
    Panel Discussion
    Application security is an effective tool for defending against attacks. But as IT infrastructures shift to “software-defined everything” and move to the cloud, traditional appsec models no longer are enough to protect the application.

    This webinar takes a look at how companies are addressing new models to address more dispersed and dynamically connected applications, from traditional web and mobile APIs to containers and microservices.
  • 360° Kubernetes Security: From Source Code to K8s Configuration Security Recorded: Oct 8 2019 52 mins
    Shiri Ivtsan, Senior Product Manager
    Kubernetes has become the default way for many organizations to scale and orchestrate their use of containers. However, organizations are starting to find themselves needing to take the necessary steps to protect their containers. Automating security checks throughout the development life cycle can help reduce risk and allow organizations to develop and deploy securely.

    Join Shiri Ivstan, Senior Product Manager at WhiteSource and Yaniv Peleg Tsabari, Senior Director of Product Management at Alcide, as they explore the world of security in Kubernetes and discuss:

    The security risks associated with open-source code and Kubernetes environments
    Supply Chain: Continuous Security throughout the CI/CD pipeline
    Security aspects throughout the development cycle, such as Image Scanning, Image Assurance, K8s Configuration hygiene and more.
    How to automate policies with respect to the above techniques throughout the CI/CD pipeline in order to facilitate more secure application deployments.
  • Taking Open Source Security to the Next Level Recorded: Oct 2 2019 55 mins
    Senior Director of Product Marketing, Jeff Crum
    Join us for a webinar featuring Forrester VP and Research Director Amy DeMartine to learn more about why open source security has become critical for securing modern applications, the main considerations when evaluating an open source security and license compliance solution and what she sees in store for the future.


    Additionally, WhiteSource Senior Director of Product Marketing, Jeff Crum, will discuss recent analysis of the Software Composition Analysis (SCA) market, including takeaways from The Forrester Wave™: Software Composition Analysis, Q2 2019.
  • What's New With WhiteSource - September Update Recorded: Sep 18 2019 31 mins
    Shiri Ivtsan, Senior Product Manager
    New and exciting product updates!
    Join our Product Manager, Shiri Ivtsan, and watch how our latest product updates can improve your WhiteSource experience.

    In this 45 minute session, we'll be covering the following product updates:

    Unified Agent Detect Mode: Automatically create a configuration file based on your scanned libraries and files
    Library Security Trends: Understand your library's security trends across different versions, color-coded according to the severity
    Advanced Search Option: Search for vulnerabilities and libraries using the new advanced search option
    Using Javascript? WhiteSource Prioritize is now available for Javascript
    Integration with ThreadFix: View the results of SAST, DAST and SCA solutions on one dashboard
  • 360° Kubernetes Security: From Source Code to K8s Configuration Security Recorded: Sep 18 2019 52 mins
    Shiri Ivtsan, Senior Product Manager
    Kubernetes has become the default way for many organizations to scale and orchestrate their use of containers. However, organizations are starting to find themselves needing to take the necessary steps to protect their containers. Automating security checks throughout the development life cycle can help reduce risk and allow organizations to develop and deploy securely.

    Join Shiri Ivstan, Senior Product Manager at WhiteSource and Yaniv Peleg Tsabari, Senior Director of Product Management at Alcide, as they explore the world of security in Kubernetes and discuss:

    The security risks associated with open-source code and Kubernetes environments
    Supply Chain: Continuous Security throughout the CI/CD pipeline
    Security aspects throughout the development cycle, such as Image Scanning, Image Assurance, K8s Configuration hygiene and more.
    How to automate policies with respect to the above techniques throughout the CI/CD pipeline in order to facilitate more secure application deployments.
  • How DevSecOps Automates the Way for Secure Open Source Usage Recorded: Sep 17 2019 36 mins
    Jeff M. (Sr. Dir. of Product @ GitHub), Rami S. (CEO @ WhiteSource) & Rami E. (Sr. Dir. of Product Mgmt @ WhiteSource)
    Open source software has become the building block in the applications we interact with nowadays.

    The good? Thanks to the time and cost efficiency it brings, organizations are able to facilitate productivity and innovation at a faster pace than ever. The bad (or rather, less good)? Many organizations are grappling with the security aspect when it comes to their open source usage. In order to solve this, organizations should turn to practices such as DevSecOps.

    Join Jeff McAffer, Sr. Dir. Product, GitHub, Rami Sass, CEO at WhiteSource, and Rami Elron, Senior Director of Product Management at WhiteSource, as they discuss:

    -The challenges surrounding the security of open source code;
    -Which role DevSecOps practices play with respect to your open source usage; as well as
    -How technologies such as Software Composition Analysis can help automate and shift left your open source security.
  • Deep Dive into Containers Security Recorded: Sep 12 2019 19 mins
    Shiri Ivtsan
    Many organizations are using containers to develop and manage their applications. Containers enable development teams work faster, deploy more easily and efficiently, and operate at a much larger scale. However, there are many security measures that need to be taken across the entire software development lifecycle, especially when it comes to open source security.
    In this session, Shiri Ivtsan, Product Manager at WhiteSource, will discuss:
    1) The complexity and security challenges with containers
    2) The greatest risks when deploying containers
    3) The three steps to take before shipping a Docker container
    4) How to automate your container security process
  • What's New With WhiteSource - September Update Recorded: Sep 11 2019 32 mins
    Shiri Ivtsan, Senior Product Manager
    New and exciting product updates!
    Join our Product Manager, Shiri Ivtsan, and watch how our latest product updates can improve your WhiteSource experience.

    In this 45 minute session, we'll be covering the following product updates:

    Unified Agent Detect Mode: Automatically create a configuration file based on your scanned libraries and files
    Library Security Trends: Understand your library's security trends across different versions, color-coded according to the severity
    Advanced Search Option: Search for vulnerabilities and libraries using the new advanced search option
    Using Javascript? WhiteSource Prioritize is now available for Javascript
    Integration with ThreadFix: View the results of SAST, DAST and SCA solutions on one dashboard
  • [Panel] Top 10 Tips for Achieving Cultural Change in DevOps Recorded: Aug 27 2019 60 mins
    Panel Discussion including: Jeffrey Martin (Director of Product, WhiteSource)
    DevOps success depends on three things: people, processes and tools.

    While tools and processes can be easy enough to address, the people part of the equation can be more difficult to tackle. Changing the culture of an organization can be akin to turning a cruise ship midstream.

    Join this webinar to hear the top 10 tips to help employees let go of traditional ways of working and embrace DevOps.
  • Deep Dive into Containers Security Recorded: Aug 20 2019 20 mins
    Shiri Ivtsan, Product Manager at WhiteSource
    Many organizations are using containers to develop and manage their applications. Containers enable development teams work faster, deploy more easily and efficiently, and operate at a much larger scale. However, there are many security measures that need to be taken across the entire software development lifecycle, especially when it comes to open source security.

    In this session, Shiri Ivtsan, Product Manager at WhiteSource, will discuss:

    1) The complexity and security challenges with containers
    2) The greatest risks when deploying containers
    3) The three steps to take before shipping a Docker container
    4) How to automate your container security process
  • 10 Tips for Achieving Cultural Change in DevOps Recorded: Aug 19 2019 61 mins
    Jeffrey Martin
    DevOps success depends on three things: people, processes and tools. While tools and processes can be easy enough to address, the people part of the equation can be more difficult to tackle. Changing the culture of an organization can be akin to turning a cruise ship midstream. This webinar offers 10 tips to help employees let go of traditional ways of working and embrace DevOps.
An open source security and licenses management solution
WhiteSource allows engineering, security and compliance officers to effortlessly secure and manage the use of open source components in their software, allowing developers to focus on building great products. WhiteSource fully automates all open source management processes: component detection; security vulnerability alerts and fixes; license risk and compliance analysis along with policy enforcement; quality review, and new version alerts. It offers a complete suite of control, reporting and management to help software teams manage open source truly effortlessly. For more information about WhiteSource, visit http://www.whitesourcesoftware.com or follow us on twitter: @whitesourcesoft

Embed in website or blog

Successfully added emails: 0
Remove all
  • Title: PCI Software Security Framework: All You Need to Know for Your AppSec Strategy
  • Live at: Jul 25 2019 5:00 pm
  • Presented by: Alexei Balaganski (Lead Analyst at KuppingerCole)
  • From:
Your email has been sent.
or close