NASSCOM home | NASSCOM events
   


Overview Who Should Attend? Program Fee Structure Download Registration Form Registration Sponsorship Opportunities Sponsors Tutorial Tutorial Agenda Speakers
   
Tutorial

Venue: IIIT, Hyderabad
Date: December 1, 2008
Time: 9:30am to 5:30pm


India is a software outsourcing hub and the Indian developers are considered to be one of the best in the world. They develop code in various computer languages for the customers across the globe. It is the endeavor of DSCI to expose the Industry to the emerging and best practices as followed across the globe thereby helping the industry to gear up for new challenges and to raise the standards of excellence. In keeping with this tradition, DSCI brings the secure programming workshop for the industry. This workshop for programmers in Java, C / C++ and Dot Net is aimed at exposing programmers to developing secure and reliable software. As per Ponemon Institute the National Institute of Standards and Technology found that eliminating vulnerabilities in the design stage can cost 30 times less than fixing them post release.  Also, from an enterprise perspective, building in security from the beginning could help protect against data breaches that, on average, cost a company $4.8 million. It is now almost imperative that software vendors must move towards a more stringent software development process that focuses on security. This would help to minimize the number of security vulnerabilities in the design and coding phases, and to detect and remove those vulnerabilities as early in the development lifecycle as possible.

The workshop will be carried out by experts from Microsoft Corporation (India) Pvt Ltd and Aujas Networks Pvt Ltd.

The participants need to pre-register latest by 25th November 2008 for this workshop over here. The cost for each participant of this one day workshop is Rs 2,000/-. The participants need to bring along with them the following for the tutorial / hand on sessions:-

  • Please carry your own writing material (paper, pens, etc) and any other items you feel are necessary for you for this workshop.
  • For Aujas session please carry: Windows laptop with JDK 1.6, IIS 6.0, SQL Server 2008 installed.
  • For Microsoft Technologies session please carry: Windows laptops ready to view the C# code files using VS. The code will be shared using USB keys/ CDs and hence these ports / devices need to be enabled on the laptop.
  • The Microsoft Secure Application Development course is driven around the common security problems in 5 principle areas of software applications:

                   Authentication
                   Authorization
                   Asset Handling
                   Input Handling
                   Logging & Auditing

The emphasis will be on:

  • Understanding the problem - This section will be for the most part vendor-agnostic – we’ll discuss open technologies such as various known cryptographic algorithms, authentication protocols, common security issues in web applications etc.
  • Implementing an effective solution - This section will focus on solutions using technologies that Microsoft offers.

Format of the Microsoft Course
The course will be presented with a combination of slides and demos. Although there will be a set agenda that we will follow in presenting the material, one of the goals is to engage the audience in discussions around how the problems relate to their specific business as well as trying to derive the most effective solution that takes into account their business needs.   

Primary Target Audience:            Developers
Secondary Target Audience:       Testers, Application Designers/Architects

To learn from the experts and to draw maximum benefit from this workshop, all participants are encouraged to go thru the following reading material prior to attending this workshop: