18th edition

Apr 7 2018

Security Testing 101

Hack. Secure. Repeat.

09:30 AM

Registration Starts

10:00 AM

Welcome Note

By: Siva

YouTube: Link

10:15 AM

Why Security?

Talk about breaches, impact on business, rising security focus and new opportunities

By: Dileep Bellamkonda

Resources: Presentation

YouTube: Link

10:45 AM

Threat Modelling

Level 0: Identify assets & threats

By: Deepthi and Padma

Resources: Presentation

11:30 AM

Tea Break

11:45 AM

Attack Trees

Level 1: Learn to do threat analysis using attack trees

By: Vaishnavi and Sharaniya

Resources: Presentation

YouTube: Link

12:15 PM

Top 10 attacks cautioned by OWASP community

By: Agalya and Roberta

Resources: Presentation

YouTube: Link

12:45 PM

Lunch

02:00 PM

QA wearing a Hacker's hat

With just a change in perspective, how a QA can improve the security of application under development

By: Christopher Rex

Resources: Presentation

YouTube: Link

02:30 PM

Tool Demo: Scan using ZAP

Demo of ZAP scanner tool to automatically find security vulnerabilities in a web application. Also to give a heads up on various other security tools.

By: Anto Sukesh

Resources: Presentation

YouTube: Link

03:00 PM

Penetration Workshop: SQL injection

Learn how sensitive information like credit card details get stolen by hackers, in a hands-on exercise

By: Prabhu Jayakumar and Abinaya

Resources: Presentation

YouTube: Link

04:00 PM

High Tea and Networking

Speakers

Sivasubramanian
Sivasubramanian
Office Technology Principal, ThoughtWorks

Siva is the Office Principal of ThoughtWorks Chennai. He has close to 17 years of experience in software development with large part of it being a software architect on large and complex projects. Currently, he owns and manages office operations, delivery, capability development in niche areas and career development of TWers in Chennai office.

Dileep
Dileep Bellamkonda
Senior Consultant, ThoughtWorks

Dileep is a Business Analyst with 8+ years of experience in Software Testing, Automation and Business analysis. He is always curious to gain new skills. Having worked on a spectrum of projects as a QA he is currently working for a startup as a product manager.

Christopher
Christopher Rex
Lead Consultant, ThoughtWorks

Christopher is a ThoughtWorker and Agile enthusiast, with an experience of 10+ years. He has worked in testing Web/Mobile/Desktop applications and Micro-services. He is a firm believer of defect prevention and collaborative teams. Has contributed to open-source initiatives and passionate in learning security testing.

Vijayaragavan
Vijayaragavan G
Senior Consultant, ThoughtWorks

Vijayaragavan is a Senior Quality Analyst at ThoughtWorks with deep passion for automation in agile environments. His primary responsibility is to implement the test strategy for the projects that ThoughtWorks is building for their clients. He has worked on a number of web application for the past 11 years.

Abinaya
Abinaya
Senior Consultant, ThoughtWorks

Abinaya, a Senior Quality Analyst in ThoughtWorks has about 4.5 years of experience spanning across different domains like e-procurement, banking, media and retail. With interest in learning new technologies, trends and tools, she is also passionate in fixing defects in web applications.

Padma
Padma Sudha
Consultant, ThoughtWorks

Padma is a Quality analyst at ThoughtWorks with deep passion for automation in agile environments. Her primary responsibility is to implement the test strategy for the projects that ThoughtWorks is building for their clients. She has worked on a number of web application for the past 3 years.

Deepthi
Deepthi
Senior Consultant, ThoughtWorks

Deepthi is a polyglot programmer and security enthusiast, with over 6+ years of experience in ThoughtWorks. Having cleared CISA recently, she finds the need to proactively embrace the unpredictable & ever-changing VUCA world through secure and resilient coding practices.

Vaishnavi
Vaishnavi
Senior Consultant, ThoughtWorks

Vaishnavi is a Senior Developer with nearly 7 years of experience. She is ratiocinate person and interested in solving logical and algorithmic problems, and sees technology only as a tool for that. Currently she is working diligently in securing the code against the most common vulnerabilities.

Sharaniya
Sharaniya
Senior Consultant, ThoughtWorks

Sharaniya has around 3+ years of experience in Software Testing and Automation. As a budding ThoughtWorker, she has keen interest in developing skills around current trends in automation testing frameworks and tools that can be applied in different domains.

Anto
Anto Sukesh
Senior Consultant, ThoughtWorks

Anto is a Senior Quality analyst at ThoughtWorks with deep passion for automation in agile environments. His primary responsibility is to implement the test strategy for the projects that ThoughtWorks is building for their clients. He has worked on a number of web application for the past 5 years.

Prabhu
Prabhu Jayakumar
Senior Consultant, ThoughtWorks

Prabhu is a Senior Developer with 5+ years of experience. He has worked in developing full stack web applications. He is currently interested in finding the vulnerabilities in the web applications using hacking skills.

Agalya
Agalya
Senior Consultant, ThoughtWorks

Agalya is a Senior Quality Analyst at ThoughtWorks with 10+ years of experience in the software testing field. She is passionate about shipping a quality product and specialises in automated testing. Her current efforts focus on devops and security testing.

Andrews
Andrews Roberta Mary
Senior Consultant, ThoughtWorks

Roberta is a Quality Analyst with 8+ years of experience in R&D, QA and Automation. She is keen in learning and experimenting new test frameworks and testing techniques. She is also passionate about Machine Learning and Security Testing.

vodQA, also called Value Oriented Discussion on Quality Analysis is a forum that sports the moto - 'Come Learn Something New'. The forum offers a unique platform within the software testing industry to strengthen the QA community through knowledge sharing.

We love feedback! If you have any suggestions or cribs, feel free to fill out our feedback form. Don't worry, its completely anonymous.

vodQA Volunteers

Editions