Cincinnati OWASP - June 24th - Conjur Secrets Management

19 views
Skip to first unread message

Adam Leisring

unread,
May 26, 2022, 4:37:00 PM5/26/22
to Cincinnati chapter
Hello OWASP Cincinnati!  

Hope everyone is enjoying the warmer weather!  We're excited to announce our June virtual meeting discussing Conjur - an open source secrets management platform.   We're equally excited to have Shlomo Heigh, Senior Software Engineer with CyberArk, as our presenter bringing us up to speed on his experiences with the Conjur platform and the overall value proposition of Conjur in terms of secrets management!

 Agenda:
  • Speaker and topic introduction and OWASP relevancy discussion
  • Presentation - Conjur - Open Source Secrets Management Platform
  • Roundtable Discussion Opportunity
  • Housekeeping and Meeting Closure

Reserve your spot nowCincinnati OWASP - June 24th - Conjur Secrets Management Tickets, Fri, Jun 24, 2022 at 11:30 AM | Eventbrite

Meeting Time: June 24th, 2022 - 11:30AM to 12:30PM ET

Presentation Abstract: The process of making our code more secure has many components, but how we secure the keys to our kingdom is probably the area with the most to lose. After all, if an attacker has your database credentials, you're toast. Yet many developers don't have a comprehensive system for managing such sensitive information.  Do your software developers have access to the production database? If an employee quits, could they take their credentials with them, or could you easily revoke access without affecting the other developers or production deployments? Can you easily audit access to your secrets and see which applications are using them? Can you easily rotate secrets that are used in containerized deployments in multiple different clouds?  In this talk we'll demonstrate how to solve all of these problems with Conjur, an open source secrets management application.

Speaker Bio:  Hi! My name is Shlomo Heigh and I'm a senior software engineer at CyberArk. I maintain the Conjur open source secrets management application, primarily working on integrations with platforms like Kubernetes and engaging with the open source community.  Before that, I was a full stack developer for a SaaS firm. I've worked with everything from Ruby to Go and am always looking for new things to learn.  In my spare time I hang out with my wife and 3-year-old daughter, tinker with my 3D printer, and tend to my garden.

Looking forward to this great topic and discussion in June!

Thanks,
Adam

Adam Leisring

unread,
Jun 13, 2022, 11:35:23 AM6/13/22
to Cincinnati chapter
Hello OWASP Cincinnati!  

I'm writing to announce that, in addition to live-streaming via Zoom, we'll be hosting OWASP at Paycor Headquarters as well!  If you do plan to join us at the Paycor office, please let me know so we have an accurate count for pizza and drinks.

We're excited to announce our June virtual meeting discussing Conjur - an open source secrets management platform.   We're equally excited to have Shlomo Heigh, Senior Software Engineer with CyberArk, as our presenter bringing us up to speed on his experiences with the Conjur platform and the overall value proposition of Conjur in terms of secrets management!

 Agenda:
  • Speaker and topic introduction and OWASP relevancy discussion
  • Presentation - Conjur - Open Source Secrets Management Platform
  • Roundtable Discussion Opportunity
  • Housekeeping and Meeting Closure

Reserve your spot now - Cincinnati OWASP - June 24th - Conjur Secrets Management Tickets, Fri, Jun 24, 2022 at 11:30 AM | Eventbrite

Meeting Time: June 24th, 2022 - 11:30AM to 12:30PM ET
Meeting Place:  Zoom (link available through Eventbrite) or Paycor HQ - 4811 Montgomery Rd. Cincinnati, OH 45212

Presentation Abstract: The process of making our code more secure has many components, but how we secure the keys to our kingdom is probably the area with the most to lose. After all, if an attacker has your database credentials, you're toast. Yet many developers don't have a comprehensive system for managing such sensitive information.  Do your software developers have access to the production database? If an employee quits, could they take their credentials with them, or could you easily revoke access without affecting the other developers or production deployments? Can you easily audit access to your secrets and see which applications are using them? Can you easily rotate secrets that are used in containerized deployments in multiple different clouds?  In this talk we'll demonstrate how to solve all of these problems with Conjur, an open source secrets management application.

Speaker Bio:  Hi! My name is Shlomo Heigh and I'm a senior software engineer at CyberArk. I maintain the Conjur open source secrets management application, primarily working on integrations with platforms like Kubernetes and engaging with the open source community.  Before that, I was a full stack developer for a SaaS firm. I've worked with everything from Ruby to Go and am always looking for new things to learn.  In my spare time I hang out with my wife and 3-year-old daughter, tinker with my 3D printer, and tend to my garden.

Looking forward to this great topic and discussion in June!

Thanks,
Adam

Adam Leisring

unread,
Jun 21, 2022, 5:01:20 PM6/21/22
to
[BCC OWASP Cincinnati Chapter]

We're looking forward to our conversation on Friday at 11:30pm lead by Shlomo Heigh surrounding Conjur Secrets Management!  As a reminder, this presentation / discussion will be held live at Paycor's HQ office as well as via Zoom.  

If you intend to attend OWASP at Paycor HQ, please let me know by noon on Thursday by responding to this message.  CyberArk has sponsored pizza for the meeting and we would like to have an accurate count to minimize waste and ensure everyone gets to eat.

Paycor's HQ is at:  4811 Montgomery Rd. Cincinnati, OH 45212.  Please check in with the front desk and alert them that you are there for Cincinnati OWASP.

Thanks,
Adam

Adam Leisring

unread,
Jun 21, 2022, 5:03:05 PM6/21/22
to
[BCC OWASP Cincinnati Chapter] - correcting typo AM vs PM :)

We're looking forward to our conversation on Friday at 11:30AM lead by Shlomo Heigh surrounding Conjur Secrets Management!  As a reminder, this presentation / discussion will be held live at Paycor's HQ office as well as via Zoom.  

If you intend to attend OWASP at Paycor HQ, please let me know by noon on Thursday by responding to this message.  CyberArk has sponsored pizza for the meeting and we would like to have an accurate count to minimize waste and ensure everyone gets to eat.

Paycor's HQ is at:  4811 Montgomery Rd. Cincinnati, OH 45212.  Please check in with the front desk and alert them that you are there for Cincinnati OWASP.

Thanks,
Adam
Reply all
Reply to author
Forward
0 new messages