SecAppDev 2024 Faculty
Jasper Rots
Cyber security architect, Splynter
Jasper is a cyber security architect with a background in cryptography, privacy, secure development and protocols. He has a proven track record as teacher and workshop facilitator and this in both online and offline settings. Furthermore, he has three years of experience as teaching assistant at the KU Leuven. He focuses nowadays on making cyber security apprehensible for everyone.
Externalizing authorization in a diverse application landscape using OPA
One-day workshop by Michael Boeynaems and Jasper Rots in room Lemaire
Friday June 7th, 09:00 - 17:30
This hands-on, interactive training will teach participants how their applications can benefit from external authorization and how they can implement this using Open Policy Agent (OPA), a modern solution to realize the PIP-PAP-PEP-PDP model and an accessible alternative to XACML-based solutions. OPA is application agnostic and allows writing policies as code in the Rego policy language. Through this policy engine, participants will learn how to manage access away from their applications, which will help them to address the current number one risk of the OWASP Top 10: Broken Access Control.
Learning goal: Participants will understand the benefits of externalizing authorization and will be able to do so in practice, while at the same time understanding the limitations of such an architecture.