Secure by Design — Ideas and Techniques

Dan Bergh Johnsson
Dan Bergh Johnsson
AI Head, Omegapoint
Daniel Deogun
Daniel Deogun
CTO, Omegapoint
Abstract

Most security vulnerabilities aren't introduced by careless developers. They're made possible by design decisions that nobody flagged as security decisions at the time. This session introduces Secure by Design as a way of thinking, not a checklist. We'll look at how everyday design choices — how you model your domain, define your types, draw your boundaries — can close down attack surfaces. The same thinking that makes code correct and maintainable tends to make it secure. Security becomes a property that emerges from good design rather than a layer bolted on afterwards.