Loading…
Back To Schedule
Thursday, October 3 • 4:00pm - 4:50pm
Certify Your App: Developing Secure Applications for the Marketplace

Sign up or log in to save this to your schedule, view media, leave feedback and see who's attending!

WordPress is the most popular Content Management System (CMS), powering more than 60 million websites. In June 2013, we ran an automated code scanning tool against the top 50 most downloaded plugins. The results were more than concerning. We found that more than 20% of these plugins were vulnerable to common Web attacks, potentially leading to 8 million vulnerable Websites. How do other CMS platforms and marketplaces fare?
In this talk we discuss how different application marketplaces encourage and enforce developers to write and submit secure apps. We look at their security measures and discuss their certification process to verify that the apps stand up to their set of standards. We examine the technological challenges associated with performing some of these security measures, such as source code analysis, when the developer has no visibility into the code of the underlying platform.
For this presentation we draw up examples of common marketplaces such as WordPress, Joomla and Force.com.
In particular, this talk will address:
- Different security requirements that marketplaces seek in order to certify an application
- Best practices to using a source code analsyis tool to pass the marketplace’s certification bar
- How to use the security certification as an added-value to your application

Speakers
avatar for Maty Siman

Maty Siman

Founder and CTO, Checkmarx
Maty is the CTO and founder of Checkmarx. Maty has more than a decade of experience in software development, IT security and source-code analysis. Prior to founding Checkmarx, Maty worked for two years at the Israeli Prime Minister’s Office as a senior IT security expert and project... Read More →


Thursday October 3, 2013 4:00pm - 4:50pm PDT
Conference Auditorium Escuela de Postgrado UTP Salaverry 2443, Lima, Peru