Lightning Talk - Building your Own Security ChatBot

Presented at AppSec USA 2016, Oct. 13, 2016, 11:15 a.m. (10 minutes)

ChatOps, a term widely credited to GitHub, is all about conversation-driven development and enabling teams to quickly and easily manage their development and deployment pipelines. Security for many years has been siloed and often only the security team runs these security tools. With ChatOps for security, common tools such as nmap, ZAP, Burp, and static code tools are available as a security chatbot. Need to run an nmap scan? No problem! Ask @SecurityBot to scan your server and even limit what destination IP's can be scanned. 

Often times there are many great security tools that hide behind obscure command line flags or have complex setup requirements or dependencies. Learn how to convert these tools into accessible tools that the security team and developers can take advantage so that these tools are only a conversation away. No binary tool distribution or configuration, just chat!


Presenters:

  • Aaron Weaver - Application Security Manager - Cengage Learning

Links:

Similar Presentations: