Loading…
Company: Enterprise clear filter
Tuesday, February 11
 

3:00pm PST

PRO WORKSHOP: Bolster Your Bug Bounty – Code Search & Variant Analysis Techniques
Tuesday February 11, 2025 3:00pm - 3:50pm PST
Milan Williams, Semgrep, Senior Product Manager
Austin Theriault, Semgrep, Software Engineer


With so many repositories, organizations can struggle to locate and remediate recurring insecure code patterns. In this talk, you will understand the fundamentals of bug bounty programs, their importance, and common inefficiencies. Attendees will learn how to perform variant analysis, refine searches to reduce false positives and find vulnerabilities quickly. By leveraging these techniques, security teams can identify and reuse previous findings, extending the impact of their bug bounty program and significantly reducing costs. This technical session also provides a detailed architectural overview of building an in-house code search engine, drawing from our own experience. We'll share our wins & woes through multiple iterations, lessons learned, and preferred technologies. Our session concludes with a practical end-to-end walkthrough of a sanitized bug bounty report. Join us to gain knowledge to implement these strategies and technologies in your own engineering practice. 
Speakers
avatar for Austin Theriault

Austin Theriault

Software Engineer, Semgrep
avatar for Milan Williams

Milan Williams

Senior Product Manager, Semgrep
Milan Williams is a Senior Product Manager at Semgrep, where she helps security engineers and developers work together to ship secure software. She recently graduated from Harvard University with degrees in Computer Science and Physics. In her free time, you can find her running in... Read More →
Tuesday February 11, 2025 3:00pm - 3:50pm PST
DeveloperWeek PRO Stage
  OpsWorld

4:00pm PST

PRO WORKSHOP: The Dark Side of Open Source Productivity LIMITED
Tuesday February 11, 2025 4:00pm - 4:50pm PST
Derek Francour, Endor Labs, Solutions

There is a dark side to productivity with open source. In modern applications, the majority of code on which an application is built isn’t code written by your team. Modern applications are built on the backs of volunteer communities and open-source software. These volunteers and their software delivery practices all become potential attack vectors. The truth is that most organizations do not factor open-source supply chain attacks into their organization’s threat models today. Security incidents such as the CodeCov bash uploader script, the npm colors, and faker intentionally introduced malicious commits, and the recent PyPi backdoors targeting AWS credentials highlight the impact of supply chain attacks as a scalable attack pattern. To spread awareness on supply chain attacks so that organizations can scalably handle them we propose baking supply chain attacks into existing threat modeling procedures and software development culture so that organizations can champion supply chain management of open source in the places where they are most impactful, at development time. We will present a comprehensive, comprehensible, and technology-agnostic taxonomy of attack vectors, created on the basis of hundreds of real-world incidents and validated by experts in the domain. Following, we will discuss the types of defenses you can put in place to detect and respond to such modern day attacks and how you can work these defenses in based on your program’s maturity. 
Speakers
avatar for Derek Francour

Derek Francour

Solutions, Endor Labs
As a Solutions Architect at Endor Labs, Derek Francour helps teams implement application security programs that don't slow down developers and make upgrading open source dependencies easier. Previously, Derek worked in Healthcare IT as a full-stack web developer and solutions engineer... Read More →
Tuesday February 11, 2025 4:00pm - 4:50pm PST
DeveloperWeek PRO Stage
  Cloud Native World

5:00pm PST

PRO WORKSHOP: Crypto-secure Data Management with In-Database Blockchain LIMITED
Tuesday February 11, 2025 5:00pm - 5:25pm PST
Mark Rakhmilevich, Oracle, Vice President, Product Management, Mission-Critical and Blockchain Technologies

Existing security mechanisms are designed to keep hackers out. However, they have unavoidable vulnerabilities - chiefly due to human weaknesses (e.g., phishing attacks). We cannot prevent these break-in's, but we can minimize their impact by making critical data tamper-proof by using blockchain technologies.

Conventional blockchain systems, however, have been very difficult to use because of the requirement for new programming languages, tools, and workflow processes. This is changing as blockchain features are being incorporated in general-purpose databases. This makes it possible to implement blockchain in mainstream enterprise and government applications with minimal application changes.

This talk will begin by introducing the threats posed by hackers and compromised insiders. Then we will describe an implementation of in-database blockchain and how it can protect your data against these threats. We will compare this against conventional blockchains as well as share use cases from customers who have adopted this technology.
Speakers
avatar for Mark Rakhmilevich

Mark Rakhmilevich

Vice President, Product Management, Mission-Critical and Blockchain Technologies, Oracle
Tuesday February 11, 2025 5:00pm - 5:25pm PST
DeveloperWeek PRO Stage
  Cloud Native World
 
Wednesday, February 12
 

10:30am PST

PRO Session: Rise of the Machines: Embracing Agentic AI
Wednesday February 12, 2025 10:30am - 10:55am PST
Jen McVicker, Atlassian, Senior Enterprise Technical Architect

You've heard of NLP. You've heard of GenAI. You may know about Predictive AI. But have you heard about Agentic AI?

Agentic AI refers to AI systems designed to operate as independent entities, capable of observing and interacting with their environment to achieve specific goals. Prepare to be amazed as this session unveils the extraordinary capabilities of AI agents, transforming your understanding of what's possible!
Speakers
avatar for Jen McVicker

Jen McVicker

Senior Enterprise Technical Architect, Atlassian
Jen is a highly skilled software development and delivery expert with over 25 years of experience in the field. She has a deep understanding of Agile principles and methodologies and has successfully led multiple teams through Agile transformations. As a member of the Advisory Services... Read More →
Wednesday February 12, 2025 10:30am - 10:55am PST
AI DevWorld MAIN STAGE
  AI DevWorld

11:00am PST

OPEN Session: Stop the Silos: From Files to Apps, Integrate Your Dev Approach
Wednesday February 12, 2025 11:00am - 11:25am PST
John Wilson, IBM, Senior Product Manager

From standards to security, there’s no shortage of considerations when developing for the transmission of complex data through myriad systems, apps, partners, and geographies. Even if you can quickly transfer files of any size in a secure, governed and encrypted manner, there’s always another hop to get to value. But files, apps, APIs—these don’t live in a silo, and neither can your approach to integration.

In this session we’ll start with an MFT use case and showcase how IBM’s hybrid iPaaS (integration platform as a service) unifies disparate integration approaches to make collaboration easier. Check out a new way to solve common everyday enterprise file handling requirements directly from a cloud or hybrid solution.
Speakers
avatar for John Wilson

John Wilson

Senior Product Manager, IBM
John Wilson is a senior product manager in application integration and middleware. He has decades of experience as a practitioner in the integration space, having worked in-house for large enterprise corporations such as Colgate-Palmolive and Coca-Cola. He then moved into the technology... Read More →
Wednesday February 12, 2025 11:00am - 11:25am PST
Dev Innovation World Stage

11:30am PST

KEYNOTE: Auth0 -- Enabling the Era of AI Agents
Wednesday February 12, 2025 11:30am - 11:55am PST
Shiven Ramji, President, Customer Identity Cloud, Okta 


Sam Altman predicted that 2025 would be the year agents join the workforce. And we are starting to see that almost every company is making ongoing, internal or external efforts to create apps with GenAI. We must ensure they remain secure as we see the rise of AI apps and agents that integrate with our applications and act on our behalf.
Authentication and security for GenAI apps are not optional. Startups and enterprises across industries are betting on agents to drive efficiency, innovation, and growth; it will be crucial to prioritize and adopt identity best practices to secure users, applications, and data.
Join Shiven Ramji, President, Customer Identity Cloud, Okta, as he shows developers how to implement authentication and authorization requirements for GenAI apps and agents. He will explain how to securely get agents to call APIs on users' behalf, implement secure “human in the loop” flows for background agents, and ensure and enable fine-grained access control when doing Retrieval Augmented Generation (RAG).
You'll see how securing identity is the missing piece to making AI agents mainstream and learn how to solve it.
Speakers
avatar for Shiven Ramji

Shiven Ramji

President, Customer Identity Cloud, Okta
Shiv is an experienced product executive and builder obsessed with creating beautiful products. He is the President of Customer Identity at Okta, managing a $1B ARR business and overseeing the company’s product, data, security, and technology strategy and execution. Before Auth0... Read More →
Wednesday February 12, 2025 11:30am - 11:55am PST
DeveloperWeek MAIN STAGE
  5. KEYNOTES & FEATURED

1:00pm PST

OPEN Session: How GenAI Helps Solve Data Consistency Problems with Cloud-Native Apps
Wednesday February 12, 2025 1:00pm - 1:25pm PST
Brijesh Deo, Oracle, Director, Software Development

Data consistency has been a longstanding challenge, dating back to the mainframe era, and transactions have traditionally been used to address these issues. However, with the rise of modern applications built on microservices architectures, ensuring data consistency has become even more complex. While AI adds further complexity to app development, it also offers significant potential to ease these challenges. New transaction patterns have emerged to tackle these modern issues. In this session, you will learn about these new patterns and the solutions available today to integrate these patterns into your applications. We will also explore in detail how some of these solutions are leveraging genAI to help developers avoid writing transaction management code or worry about associated infrastructure, making it extremely easy to adopt such transaction patterns. 
Speakers
avatar for Brijesh Deo

Brijesh Deo

Director, Software Development, Oracle
Brijesh Deo is the Director of MicroTx product development in the database organization at Oracle. He is passionate about distributed systems and cloud technologies and specializes in Kubernetes, Microservices, AI, and Java. Brijesh has a rich industry experience of more than two... Read More →
Wednesday February 12, 2025 1:00pm - 1:25pm PST
CloudNative World Stage

3:00pm PST

KEYNOTE: IBM -- The Sneaky Secrets of Integration in a World of AI
Wednesday February 12, 2025 3:00pm - 3:25pm PST
Brenton House, IBM, Principal Cybersecurity and AI Advisor for IBM webMethods

AI has disrupted the world of development and data, creating a chaotic landscape where APIs, integrations, and security are all under siege. Every day, headlines reveal new breaches and vulnerabilities, exposing the growing risks we all face. But when you start to connect the dots, a fascinating picture emerges — one where AI and integration play a central role in both the problems and the solutions.

Join AI and cybersecurity strategist Brenton House as he uncovers the sneaky secrets of integration that EVERY developer needs to know. From shocking API vulnerabilities to AI’s hidden hand in modern breaches, you’ll gain the insights and strategies you need to navigate today’s high-stakes environment. Learn how a hybrid integration solution just might be your secret weapon to thrive in this chaotic and interconnected world.
Speakers
avatar for Brenton House

Brenton House

Principal Cybersecurity and AI Advisor for IBM webMethods, IBM
Brenton House is an ex-hacker, developer, strategist, and now Principal Cybersecurity and AI Advisor for IBM webMethods. Known for his unique creative work and YouTube channel, Brenton has produced several hit series including The Redacted Hacker, AI: Man vs. Machine, and API Cybersecurity... Read More →
Wednesday February 12, 2025 3:00pm - 3:25pm PST
DeveloperWeek MAIN STAGE
  5. KEYNOTES & FEATURED
 
Thursday, February 13
 

9:30am PST

OPEN Session: Cisco ThousandEyes’ Year-Long Endeavor to Dismantle a Critical, Decade-Old MSQL Monolith.
Thursday February 13, 2025 9:30am - 9:55am PST
Shashank Sahni, Cisco, Software Engineering Technical Leader

At Cisco ThousandEyes, we gained valuable insights by breaking down a critical, decade-old MySQL monolith from our early startup days. After attending this session, we hope attendees will leave with the following key takeaways:
- Practical tactics for decomposing a critical MySQL monolith into domain-specific clusters using automation and ensuring minimal downtime.
- Mental models and lessons for project-managing large-scale, cross-team projects with complex interdependencies and a dynamic landscape.
- Strategies for safely splitting cross-domain SQL transactions in yet another critical monolith webapp and implementing platform improvements to identify hidden issues.
- An understanding of and ability to adopt a scalable MySQL schema management strategy.
Speakers
avatar for Shashank Sahni

Shashank Sahni

Software Engineering Technical Leader, Cisco ThousandEyes
Shashank Sahni is a Senior Technical Leader at Cisco ThousandEyes, where he excels in both developing innovative products to address network visibility issues and tackling complex technical challenges across the engineering spectrum. His recent contributions include decomposing a... Read More →
Thursday February 13, 2025 9:30am - 9:55am PST
Dev Innovation World Stage
  Dev Innovation World

9:30am PST

NEW Product Showcase
Thursday February 13, 2025 9:30am - 10:20am PST
Firefly
Firefly
Firefly’s Cloud Infrastructure Automation Platform helps companies automate, manage, and govern the cloud with IaC. Platform teams use Firefly for AI-assisted remediation, IaC orchestration, and unified system of record for Cloud Asset Management.

Red Hat
Red Hat Developer Hub
Red Hat Developer Hub helps you get applications into production faster and more securely, without sacrificing code quality, by providing pre-architected approaches and centralizing vital technology.

Kapstan
ACE
An application centric experience for developers to deploy and scale microservices, databases, GPUs, spot instances, and jobs in their own cloud native accounts on k8s, without the usual infrastructure complexity. Just draw on a canvas..and watch.

FusionAuth
Passkey addition to FusionAuth Community Version
The third quarter of 2024 saw passkeys enter our Community plan, in August. Anyone using FusionAuth can enable passkeys for their all users, for free.

GitHub
GitHub Copilot Free
GitHub Copilot, your AI pair programmer, is now available for all users for free! Ask questions, edit multiple files, and get code suggestions inside both Visual Studio and Visual Studio Code.

Aviator Technologies
Aviator Agents
Aviator Agents is a framework to use AI Agents for performing small and large scale migrations. We will cover how the Aviator system tracks tech debt based on teams ownership and automatically generates code changes using user prompts.

Storyblok 
Storyblok
Developers love Storyblok CMS because it’s API-first, component-based and future-proof.
Our latest feature, AI Translations, lets you translate new pages with a click to keep your website fresh and accessible across all markets.


Gravitee.io 
Kafka Gateway
The Gravitee Kafka Gateway exposes Kafka to consumers with API management features like governance, security, and access control, supporting virtual topics, transformations, and analytics for efficient, end-to-end Kafka environment management.

Cast AI
Container Live Migration
Container Live Migration allows stateful workloads running sensitive jobs in Kubernetes to be automatically bin-packed into fewer optimal nodes, eliminating resource fragmentation, and driving additional cost savings while ensuring zero downtime.

IBM
IBM Granite
IBM Granite provides open, performant, and trusted AI models to accelerate enterprise AI adoption. Open-sourced under Apache 2.0, these fit-for-purpose models offer industry-leading accuracy that meets diverse developer and business needs.

Atono
Atono
Atono is an all-in-one platform to plan, build, run, and improve software. Experience a clean, lean, and unstressed tool built for cross-functional development teams.  
Speakers
avatar for Jon Peck

Jon Peck

Software Developer, GitHub
An Enterprise Advocate (and occasional manager) at GitHub, Jon Peck meets daily with maintainers, startups, and F500 executives to familiarize them with industry best practices, policy suggestions, and product capabilities across DevOps and AI. With 25+ years of experience as a fullstack... Read More →
avatar for Cedric Clyburn

Cedric Clyburn

Developer Advocate, Red Hat
Cedric Clyburn (@cedricclyburn), Developer Advocate at Red Hat, is an enthusiastic software technologist with a background in Kubernetes, DevOps, and container tools. He has experience speaking at conferences and events including DevNexus, WeAreDevelopers, DevConf, and more. Cedric... Read More →
avatar for Firas Abou-Shamalah

Firas Abou-Shamalah

Solutions Engineer, Gravitee.Io
A seasoned Solution's Engineer in the startup industry for many years, Firas is a veteran consultant, engineer, developer, salesman and entrepreneur. With over 5 years of experience in consulting with enterprise and Fortune 500 customers, he has seen the architectures and workings... Read More →
avatar for Kim Salmon

Kim Salmon

VP of Marketing, Firefly
avatar for Shyam Kumar

Shyam Kumar

Co-Founder, Product, Kapstan
avatar for Adriana Gallivan

Adriana Gallivan

Head of Events, FusionAuth
avatar for Ankit Jain

Ankit Jain

CEO, Aviator Technologies
avatar for Marco Antonio De Campos Ortiz

Marco Antonio De Campos Ortiz

Solutions Engineer, Storyblok
avatar for Matt Hughson

Matt Hughson

Solutions Engineer, Storyblok
avatar for Brianna Vasquez

Brianna Vasquez

Enterprise Marketing Leader, Cast AI
avatar for Rakesh Jain

Rakesh Jain

Senior Technical Staff Member & Researcher, IBM
: Rakesh Jain is Chief Architect and Researcher with IBM Research in San Jose CA. He is an expert in building large scale distributed platforms, data analytics, cloud automation, storage management and high availability. He is also involved in the development of IBM Granite models... Read More →
avatar for Troy McAlpin

Troy McAlpin

CEO/Founder, Atono
Sponsors
avatar for Atono

Atono

Atono is an all-in-one platform to plan, build, run, and improve software. Experience a clean, lean, and unstressed tool built for cross-functional development teams.
avatar for Aviator

Aviator

Aviator is a developer productivity suite of tools for teams of 50 plus engineers. We help engineering teams automate their code workflows to reduce dependencies and reduce the production cycle by offering a customizable merge queue.Aviator was founded by Ankit Jain in 2021. Aviator... Read More →
avatar for CAST AI

CAST AI

CAST AI is the leading Kubernetes cost optimization platform. The company’s platform goes beyond monitoring clusters and making recommendations; it utilizes advanced machine learning algorithms to analyze and automatically optimize clusters, saving customers 50% or more on their... Read More →
avatar for Firefly

Firefly

Firefly is the Cloud Infrastructure Automation Platform that transforms how organizations automate, manage, and govern their entire cloud footprint while championing IaC. Firefly is the secret weapon of the most agile and efficient cloud practitioners, providing AI-assisted remediations... Read More →
avatar for FusionAuth

FusionAuth

FusionAuth is a developer-first, customizable Customer Identity and Access Management (CIAM) platform that makes outsourcing authentication feel like a first-class experience. Trusted by over 450 global organizations, FusionAuth provides customers of any size with a single-tenant... Read More →
avatar for GitHub

GitHub

As the global home for all developers, GitHub is the world’s leading AI-powered developer platform to build, scale, and deliver secure software. Over 100 million people, including developers from 90 of the Fortune 100 companies, use GitHub to build amazing things together across... Read More →
avatar for Gravitee

Gravitee

Since our beginnings in 2015, Gravitee has grown into a global force, recognized as a Leader in the 2024 Gartner Magic Quadrant™ for API Management. What started with four developers challenging the complexities of APIs has evolved into a revolutionary platform powering API and... Read More →
avatar for IBM

IBM

IBM is a leading provider of global hybrid cloud and AI, and consulting expertise. We help clients in more than 175 countries capitalize on insights from their data, streamline business processes, reduce costs and gain the competitive edge in their industries. More than 4,000 government... Read More →
avatar for Kapstan.io

Kapstan.io

Kapstan is an Internal Developer Platform built by Developers for Developers. You can launch your containers across multiple clouds like AWS, GCP & Azure, with a few clicks. Through automation of environment setup, deployments, observability, and other operational tasks, Kapstan’s... Read More →
avatar for Red Hat

Red Hat

The Red Hat Developer program brings developers together to learn from each other and create more extraordinary things, faster. We serve the builders. Those who solve problems and create their careers with code. We chart a course for you, giving your career a path and your work purpose... Read More →
avatar for Storyblok

Storyblok

Shipping content shouldn’t be like pulling teeth.Storyblok is the headless CMS designed to help developers build using the tooling they're most comfortable with, enhancing productivity and speed, eliminating knowledge gaps, and future-proofing stack management.
Thursday February 13, 2025 9:30am - 10:20am PST
CloudNative World Stage

10:00am PST

OPEN Session: Building SDKs Developers Love: Custom AI Integrations and Enterprise Flexibility
Thursday February 13, 2025 10:00am - 10:25am PST
Luca Filice, BeeFree, Senior Full Stack Software Engineer

SDKs that prioritize customization can unlock endless possibilities for developers and enterprises alike. This session explores lessons learned from building a highly flexible SDK, including enabling custom AI integrations for enterprise customers. Dive into the challenges of designing adaptable interfaces, creating modular architectures, and balancing usability with flexibility. Learn actionable strategies and hear a real-world case study of how Beefree SDK solved enterprise-level problems while staying developer-friendly. 
Speakers
avatar for Luca Filice

Luca Filice

Senior Full Stack Software Engineer, BeeFree
Luca Filice holds a Master’s Degree in Computer Engineering and has been working as a Full Stack Developer since 2019. He began his career building software for a major Italian energy company using Java and Vue.js. In 2022, he transitioned to the financial sector, contributing to... Read More →
Thursday February 13, 2025 10:00am - 10:25am PST
Dev Innovation World Stage

11:30am PST

OPEN Session: Intuit’s Strategy for Maximizing Developer Productivity Using GenAI
Thursday February 13, 2025 11:30am - 11:55am PST
Jothimani kanthan Ganapathi, Intuit, Principal Engineer
Anish Dhason, Intuit, Group Product Manager


Intuit, a global leader in financial software, is revolutionizing the industry by integrating Generative AI (GenAI) across its entire product portfolio, including TurboTax, QuickBooks, Mailchimp, and CreditKarma. By embedding GenAI into critical aspects of the development life cycle—such as code generation, review, and test creation—Intuit is driving innovation, enhancing productivity, and delivering smarter, more efficient experiences for both developers and customers alike.

This presentation explores how Intuit is revolutionizing the software development lifecycle by leveraging Generative AI (GenAI) to accelerate application development, enhance developer productivity, and streamline complex coding tasks. A key focus will be on how Intuit has implemented secure and scalable methods to integrate Intuit-specific knowledge into the context of GenAI-assisted developer tools. Through real-world case studies, we will demonstrate how AI-powered developer assistants are automating code generation for Intuit-specific APIs, commonly used libraries, and unit test creation, leading to a 25% reduction in task completion times with AI-driven tools.

Join us to discover how Intuit is pushing the boundaries of what's possible in modern software development, driving both innovation and efficiency using GenAI
Speakers
avatar for Anish Dhason

Anish Dhason

Group Product Manager, Intuit
Product leader with extensive experience in building scalable platforms and products for enterprises. Currently leading efforts to accelerate the end-to-end development lifecycle and boost development productivity through GenAI powered innovations.
avatar for Jothimani kanthan Ganapathi

Jothimani kanthan Ganapathi

Principal Engineer, Intuit
JK Ganapathi is a Principal Architect at Intuit, where he spearheads the GenAI-Based software development initiative, a transformative effort aimed at revolutionizing developer productivity. In this role, he is responsible for integrating Generative AI into Intuit’s development... Read More →
Thursday February 13, 2025 11:30am - 11:55am PST
AI DevWorld Stage

1:00pm PST

OPEN Sesssion: Scaling Efficiently to Exabytes: Securing and Accelerating Cloud Storage
Thursday February 13, 2025 1:00pm - 1:25pm PST
Alok Ranjan, Dropbox, Software Engineering Manager

In this talk, I will explore how Dropbox has successfully scaled its storage infrastructure to manage exabytes of data while maintaining high levels of efficiency, security, and speed. We’ll dive into our innovative multi-level encryption approach that safeguards user data and the concept of "stores" that ensures rapid file sharing without compromising system performance. This presentation will provide a unique perspective on Dropbox’s strategies to manage massive data volumes and ensure secure and seamless user experiences. 
Speakers
avatar for Alok Ranjan

Alok Ranjan

Software Engineering Manager, Dropbox
Hello, I’m Alok Ranjan, an Engineering Manager at Dropbox overseeing the Storage Platform team in the infrastructure org. My team focuses on providing interfaces for file and block storage, along with encryption, compression, and verification of user data. With a master’s degree... Read More →
Thursday February 13, 2025 1:00pm - 1:25pm PST
CloudNative World Stage

1:00pm PST

OPEN Session: The Laws of UX & UI Design
Thursday February 13, 2025 1:00pm - 1:25pm PST
Andrew Peterson, MESCIUS, Technical Engagement Engineer

This presentation focuses on UX and UI design, why they are important, and how to follow the industry's best practices. We will take a closer and more precise look at these best practices so you can create an app or website that will have an advantage over the competition. 
Speakers
avatar for Andrew Peterson

Andrew Peterson

Technical Engagement Engineer, MESCIUS
Andrew Peterson graduated from Utah University with a bachelor’s degree in Web Design and Development. Before joining MESCIUS as a Technical Engagement Engineer, Andrew worked his way up from a Technical Support Engineer to a Junior Software Engineer at Solcius. While studying web... Read More →
Thursday February 13, 2025 1:00pm - 1:25pm PST
OpsWorld Stage
  OpsWorld
 
Tuesday, February 18
 

12:00pm PST

[Virtual] PRO WORKSHOP: Bolster Your Bug Bounty – Code Search & Variant Analysis Techniques
Tuesday February 18, 2025 12:00pm - 12:50pm PST
Milan Williams, Semgrep, Senior Product Manager
Austin Theriault, Semgrep, Software Engineer


With so many repositories, organizations can struggle to locate and remediate recurring insecure code patterns. In this talk, you will understand the fundamentals of bug bounty programs, their importance, and common inefficiencies. Attendees will learn how to perform variant analysis, refine searches to reduce false positives and find vulnerabilities quickly. By leveraging these techniques, security teams can identify and reuse previous findings, extending the impact of their bug bounty program and significantly reducing costs. This technical session also provides a detailed architectural overview of building an in-house code search engine, drawing from our own experience. We'll share our wins & woes through multiple iterations, lessons learned, and preferred technologies. Our session concludes with a practical end-to-end walkthrough of a sanitized bug bounty report. Join us to gain knowledge to implement these strategies and technologies in your own engineering practice. 
Speakers
avatar for Milan Williams

Milan Williams

Senior Product Manager, Semgrep
Milan Williams is a Senior Product Manager at Semgrep, where she helps security engineers and developers work together to ship secure software. She recently graduated from Harvard University with degrees in Computer Science and Physics. In her free time, you can find her running in... Read More →
avatar for Austin Theriault

Austin Theriault

Software Engineer, Semgrep
Tuesday February 18, 2025 12:00pm - 12:50pm PST
VIRTUAL DeveloperWeek PRO STAGE https://app.events.ringcentral.com/events/developerweek-productworld-ai-devworld-2025/reception
  OpsWorld

1:00pm PST

[Virtual] PRO WORKSHOP: The Dark Side of Open Source Productivity
Tuesday February 18, 2025 1:00pm - 1:50pm PST
Derek Francour, Endor Labs, Solutions

There is a dark side to productivity with open source. In modern applications, the majority of code on which an application is built isn’t code written by your team. Modern applications are built on the backs of volunteer communities and open-source software. These volunteers and their software delivery practices all become potential attack vectors. The truth is that most organizations do not factor open-source supply chain attacks into their organization’s threat models today. Security incidents such as the CodeCov bash uploader script, the npm colors, and faker intentionally introduced malicious commits, and the recent PyPi backdoors targeting AWS credentials highlight the impact of supply chain attacks as a scalable attack pattern. To spread awareness on supply chain attacks so that organizations can scalably handle them we propose baking supply chain attacks into existing threat modeling procedures and software development culture so that organizations can champion supply chain management of open source in the places where they are most impactful, at development time. We will present a comprehensive, comprehensible, and technology-agnostic taxonomy of attack vectors, created on the basis of hundreds of real-world incidents and validated by experts in the domain. Following, we will discuss the types of defenses you can put in place to detect and respond to such modern day attacks and how you can work these defenses in based on your program’s maturity. 
Speakers
avatar for Derek Francour

Derek Francour

Solutions, Endor Labs
As a Solutions Architect at Endor Labs, Derek Francour helps teams implement application security programs that don't slow down developers and make upgrading open source dependencies easier. Previously, Derek worked in Healthcare IT as a full-stack web developer and solutions engineer... Read More →
Tuesday February 18, 2025 1:00pm - 1:50pm PST
VIRTUAL DeveloperWeek PRO STAGE https://app.events.ringcentral.com/events/developerweek-productworld-ai-devworld-2025/reception
  Cloud Native World
 
Wednesday, February 19
 

10:30am PST

[Virtual] PRO Session: Rise of the Machines: Embracing Agentic AI
Wednesday February 19, 2025 10:30am - 10:55am PST
Jen McVicker, Atlassian, Senior Enterprise Technical Architect

You've heard of NLP. You've heard of GenAI. You may know about Predictive AI. But have you heard about Agentic AI?

Agentic AI refers to AI systems designed to operate as independent entities, capable of observing and interacting with their environment to achieve specific goals. Prepare to be amazed as this session unveils the extraordinary capabilities of AI agents, transforming your understanding of what's possible!
Speakers
avatar for Jen McVicker

Jen McVicker

Senior Enterprise Technical Architect, Atlassian
Jen is a highly skilled software development and delivery expert with over 25 years of experience in the field. She has a deep understanding of Agile principles and methodologies and has successfully led multiple teams through Agile transformations. As a member of the Advisory Services... Read More →
Wednesday February 19, 2025 10:30am - 10:55am PST
VIRTUAL AI DevWorld Main Stage https://app.events.ringcentral.com/events/developerweek-productworld-ai-devworld-2025/reception
  AI DevWorld

11:00am PST

[Virtual] OPEN Session: Stop the Silos: From Files to Apps, Integrate Your Dev Approach
Wednesday February 19, 2025 11:00am - 11:25am PST
John Wilson, IBM, Senior Product Manager

From standards to security, there’s no shortage of considerations when developing for the transmission of complex data through myriad systems, apps, partners, and geographies. Even if you can quickly transfer files of any size in a secure, governed and encrypted manner, there’s always another hop to get to value. But files, apps, APIs—these don’t live in a silo, and neither can your approach to integration.

In this session we’ll start with an MFT use case and showcase how IBM’s hybrid iPaaS (integration platform as a service) unifies disparate integration approaches to make collaboration easier. Check out a new way to solve common everyday enterprise file handling requirements directly from a cloud or hybrid solution.
Speakers
avatar for John Wilson

John Wilson

Senior Product Manager, IBM
John Wilson is a senior product manager in application integration and middleware. He has decades of experience as a practitioner in the integration space, having worked in-house for large enterprise corporations such as Colgate-Palmolive and Coca-Cola. He then moved into the technology... Read More →
Wednesday February 19, 2025 11:00am - 11:25am PST
VIRTUAL Dev Innovation World https://app.events.ringcentral.com/events/developerweek-productworld-ai-devworld-2025/reception

11:30am PST

[Virtual] KEYNOTE: Auth0 -- Enabling the Era of AI Agents
Wednesday February 19, 2025 11:30am - 11:55am PST
Shiven Ramji, President, Customer Identity Cloud, Okta

Sam Altman predicted that 2025 would be the year agents join the workforce. And we are starting to see that almost every company is making ongoing, internal or external efforts to create apps with GenAI. We must ensure they remain secure as we see the rise of AI apps and agents that integrate with our applications and act on our behalf.
Authentication and security for GenAI apps are not optional. Startups and enterprises across industries are betting on agents to drive efficiency, innovation, and growth; it will be crucial to prioritize and adopt identity best practices to secure users, applications, and data.
Join Shiven Ramji, President, Customer Identity Cloud, Okta, as he shows developers how to implement authentication and authorization requirements for GenAI apps and agents. He will explain how to securely get agents to call APIs on users' behalf, implement secure “human in the loop” flows for background agents, and ensure and enable fine-grained access control when doing Retrieval Augmented Generation (RAG).
You'll see how securing identity is the missing piece to making AI agents mainstream and learn how to solve it.
Speakers
avatar for Shiven Ramji

Shiven Ramji

President, Customer Identity Cloud, Okta
Shiv is an experienced product executive and builder obsessed with creating beautiful products. He is the President of Customer Identity at Okta, managing a $1B ARR business and overseeing the company’s product, data, security, and technology strategy and execution. Before Auth0... Read More →
Wednesday February 19, 2025 11:30am - 11:55am PST
VIRTUAL DeveloperWeek MAIN STAGE https://app.events.ringcentral.com/events/developerweek-productworld-ai-devworld-2025/reception
  5. KEYNOTES & FEATURED

1:00pm PST

[Virtual] OPEN Session: How GenAI Helps Solve Data Consistency Problems with Cloud-Native Apps
Wednesday February 19, 2025 1:00pm - 1:25pm PST
Deepak Goel, Oracle, Vice President, Software Development
Brijesh Deo, Oracle, Director, Software Development

Data consistency has been a longstanding challenge, dating back to the mainframe era, and transactions have traditionally been used to address these issues. However, with the rise of modern applications built on microservices architectures, ensuring data consistency has become even more complex. While AI adds further complexity to app development, it also offers significant potential to ease these challenges. New transaction patterns have emerged to tackle these modern issues. In this session, you will learn about these new patterns and the solutions available today to integrate these patterns into your applications. We will also explore in detail how some of these solutions are leveraging genAI to help developers avoid writing transaction management code or worry about associated infrastructure, making it extremely easy to adopt such transaction patterns. 
Speakers
avatar for Brijesh Deo

Brijesh Deo

Director, Software Development, Oracle
Brijesh Deo is the Director of MicroTx product development in the database organization at Oracle. He is passionate about distributed systems and cloud technologies and specializes in Kubernetes, Microservices, AI, and Java. Brijesh has a rich industry experience of more than two... Read More →
avatar for Deepak Goel

Deepak Goel

Vice President, Software Development, Oracle
Deepak Goel is a Vice President, Software Development in Oracle's High Availability Cloud Development team. Throughout his career, he has been deeply involved with transaction processing and data integrity technologies and is currently leading the development of multiple products... Read More →
Wednesday February 19, 2025 1:00pm - 1:25pm PST
VIRTUAL Cloud Native World https://app.events.ringcentral.com/events/developerweek-productworld-ai-devworld-2025/reception

3:00pm PST

[Virtual] KEYNOTE: IBM -- The Sneaky Secrets of Integration in a World of AI
Wednesday February 19, 2025 3:00pm - 3:25pm PST
Brenton House, IBM, Principal Cybersecurity and AI Advisor for IBM webMethods

AI has disrupted the world of development and data, creating a chaotic landscape where APIs, integrations, and security are all under siege. Every day, headlines reveal new breaches and vulnerabilities, exposing the growing risks we all face. But when you start to connect the dots, a fascinating picture emerges — one where AI and integration play a central role in both the problems and the solutions.

Join AI and cybersecurity strategist Brenton House as he uncovers the sneaky secrets of integration that EVERY developer needs to know. From shocking API vulnerabilities to AI’s hidden hand in modern breaches, you’ll gain the insights and strategies you need to navigate today’s high-stakes environment. Learn how a hybrid integration solution just might be your secret weapon to thrive in this chaotic and interconnected world.
Speakers
avatar for Brenton House

Brenton House

Principal Cybersecurity and AI Advisor for IBM webMethods, IBM
Brenton House is an ex-hacker, developer, strategist, and now Principal Cybersecurity and AI Advisor for IBM webMethods. Known for his unique creative work and YouTube channel, Brenton has produced several hit series including The Redacted Hacker, AI: Man vs. Machine, and API Cybersecurity... Read More →
Wednesday February 19, 2025 3:00pm - 3:25pm PST
VIRTUAL DeveloperWeek MAIN STAGE https://app.events.ringcentral.com/events/developerweek-productworld-ai-devworld-2025/reception
  5. KEYNOTES & FEATURED
 
Thursday, February 20
 

10:00am PST

[Virtual] OPEN Session: Building SDKs Developers Love: Custom AI Integrations and Enterprise Flexibility
Thursday February 20, 2025 10:00am - 10:25am PST
Luca Filice, BeeFree, Senior Full Stack Software Engineer

SDKs that prioritize customization can unlock endless possibilities for developers and enterprises alike. This session explores lessons learned from building a highly flexible SDK, including enabling custom AI integrations for enterprise customers. Dive into the challenges of designing adaptable interfaces, creating modular architectures, and balancing usability with flexibility. Learn actionable strategies and hear a real-world case study of how Beefree SDK solved enterprise-level problems while staying developer-friendly. 
Speakers
avatar for Luca Filice

Luca Filice

Senior Full Stack Software Engineer, BeeFree
Luca Filice holds a Master’s Degree in Computer Engineering and has been working as a Full Stack Developer since 2019. He began his career building software for a major Italian energy company using Java and Vue.js. In 2022, he transitioned to the financial sector, contributing to... Read More →
Thursday February 20, 2025 10:00am - 10:25am PST
VIRTUAL Dev Innovation World https://app.events.ringcentral.com/events/developerweek-productworld-ai-devworld-2025/reception

11:30am PST

[Virtual] OPEN SESSSION (DeveloperWeek): Intuit’s Strategy for Maximizing Developer Productivity Using GenAI
Thursday February 20, 2025 11:30am - 11:55am PST
Jothimani kanthan Ganapathi, Intuit, Principal Engineer
Anish Dhason, Intuit, Group Product Manager


Intuit, a global leader in financial software, is revolutionizing the industry by integrating Generative AI (GenAI) across its entire product portfolio, including TurboTax, QuickBooks, Mailchimp, and CreditKarma. By embedding GenAI into critical aspects of the development life cycle—such as code generation, review, and test creation—Intuit is driving innovation, enhancing productivity, and delivering smarter, more efficient experiences for both developers and customers alike.

This presentation explores how Intuit is revolutionizing the software development lifecycle by leveraging Generative AI (GenAI) to accelerate application development, enhance developer productivity, and streamline complex coding tasks. A key focus will be on how Intuit has implemented secure and scalable methods to integrate Intuit-specific knowledge into the context of GenAI-assisted developer tools. Through real-world case studies, we will demonstrate how AI-powered developer assistants are automating code generation for Intuit-specific APIs, commonly used libraries, and unit test creation, leading to a 25% reduction in task completion times with AI-driven tools.

Join us to discover how Intuit is pushing the boundaries of what's possible in modern software development, driving both innovation and efficiency using GenAI
Speakers
avatar for Jothimani kanthan Ganapathi

Jothimani kanthan Ganapathi

Principal Engineer, Intuit
JK Ganapathi is a Principal Architect at Intuit, where he spearheads the GenAI-Based software development initiative, a transformative effort aimed at revolutionizing developer productivity. In this role, he is responsible for integrating Generative AI into Intuit’s development... Read More →
avatar for Anish Dhason

Anish Dhason

Group Product Manager, Intuit
Product leader with extensive experience in building scalable platforms and products for enterprises. Currently leading efforts to accelerate the end-to-end development lifecycle and boost development productivity through GenAI powered innovations.
Thursday February 20, 2025 11:30am - 11:55am PST
VIRTUAL AI DevWorld Stage https://app.events.ringcentral.com/events/developerweek-productworld-ai-devworld-2025/reception

12:00pm PST

[Virtual] OPEN Session: Crypto-secure Data Management with In-Database Blockchain
Thursday February 20, 2025 12:00pm - 12:25pm PST
Mark Rakhmilevich, Oracle, Vice President, Product Management, Mission-Critical and Blockchain Technologies

Existing security mechanisms are designed to keep hackers out. However, they have unavoidable vulnerabilities - chiefly due to human weaknesses (e.g., phishing attacks). We cannot prevent these break-in's, but we can minimize their impact by making critical data tamper-proof by using blockchain technologies.

Conventional blockchain systems, however, have been very difficult to use because of the requirement for new programming languages, tools, and workflow processes. This is changing as blockchain features are being incorporated in general-purpose databases. This makes it possible to implement blockchain in mainstream enterprise and government applications with minimal application changes.

This talk will begin by introducing the threats posed by hackers and compromised insiders. Then we will describe an implementation of in-database blockchain and how it can protect your data against these threats. We will compare this against conventional blockchains as well as share use cases from customers who have adopted this technology.
Speakers
avatar for Mark Rakhmilevich

Mark Rakhmilevich

Vice President, Product Management, Mission-Critical and Blockchain Technologies, Oracle
Thursday February 20, 2025 12:00pm - 12:25pm PST
VIRTUAL Cloud Native World https://app.events.ringcentral.com/events/developerweek-productworld-ai-devworld-2025/reception
  Cloud Native World

1:00pm PST

[Virtual] OPEN Sesssion: Scaling Efficiently to Exabytes: Securing and Accelerating Cloud Storage
Thursday February 20, 2025 1:00pm - 1:25pm PST
Alok Ranjan, Dropbox, Software Engineering Manager

In this talk, I will explore how Dropbox has successfully scaled its storage infrastructure to manage exabytes of data while maintaining high levels of efficiency, security, and speed. We’ll dive into our innovative multi-level encryption approach that safeguards user data and the concept of "stores" that ensures rapid file sharing without compromising system performance. This presentation will provide a unique perspective on Dropbox’s strategies to manage massive data volumes and ensure secure and seamless user experiences. 
Speakers
avatar for Alok Ranjan

Alok Ranjan

Software Engineering Manager, Dropbox
Hello, I’m Alok Ranjan, an Engineering Manager at Dropbox overseeing the Storage Platform team in the infrastructure org. My team focuses on providing interfaces for file and block storage, along with encryption, compression, and verification of user data. With a master’s degree... Read More →
Thursday February 20, 2025 1:00pm - 1:25pm PST
VIRTUAL Cloud Native World https://app.events.ringcentral.com/events/developerweek-productworld-ai-devworld-2025/reception

1:00pm PST

[Virtual] OPEN Session: The Laws of UX & UI Design
Thursday February 20, 2025 1:00pm - 1:25pm PST
Andrew Peterson, MESCIUS, Technical Engagement Engineer

This presentation focuses on UX and UI design, why they are important, and how to follow the industry's best practices. We will take a closer and more precise look at these best practices so you can create an app or website that will have an advantage over the competition. 
Speakers
avatar for Andrew Peterson

Andrew Peterson

Technical Engagement Engineer, MESCIUS
Andrew Peterson graduated from Utah University with a bachelor’s degree in Web Design and Development. Before joining MESCIUS as a Technical Engagement Engineer, Andrew worked his way up from a Technical Support Engineer to a Junior Software Engineer at Solcius. While studying web... Read More →
Thursday February 20, 2025 1:00pm - 1:25pm PST
VIRTUAL OpsWorld https://app.events.ringcentral.com/events/developerweek-productworld-ai-devworld-2025/reception
  OpsWorld
 

Share Modal

Share this link via

Or copy link

Filter sessions
Apply filters to sessions.
  • Tracks & Topics
  • AI & ML Certificate
  • API Certificate
  • APIs & Microservices
  • Blockchain & Web3
  • Cloud Management Certificate
  • Data Engineering
  • Data Management and Engineering Certificate
  • Dev Career
  • Dev Leadership Certificate
  • Developer Experience (DX)
  • Developer Tools
  • DevOps
  • DevOps Certificate
  • Enterprise
  • Frontend Certificate
  • Gen AI / LLMs
  • Open Source Strategy
  • Platform Engineering
  • Product Certificate
  • Security Certificate
  • Technical Leadership & Management
  • Session Type
  • OPEN Session
  • PRO Session
  • PRO Workshop Day (Tues)
  • Conferences
  • AI & Organizational Change Management (AI DevWorld)
  • AI DevWorld
  • AI DevWorld: AI Strategy Conference
  • AI DevWorld: AI/ML Engineering Conference
  • AI DevWorld: Industry AI Conference
  • AI Ethics (AI DevWorld)
  • AI for the Enterprise (AI DevWorld)
  • AI Security & Governance & Compliance (AI DevWorld)
  • Applied AI Innovation (AI DevWorld)
  • Applied Machine Learning (AI DevWorld)
  • Bots & Language Processing (AI DevWorld)
  • Cloud Native World
  • Data Science & Predictive Models (AI DevWorld)
  • Deep AI Learning & Neural Networks (AI DevWorld)
  • Dev Exec World
  • Dev Innovation World
  • Dev Security World
  • Finance/FinTech AI (AI DevWorld)
  • Frontend World
  • Generative AI & LLMs (AI DevWorld)
  • Healthcare & HealthTech AI (AI DevWorld)
  • Marketing & Advertising AI (AI DevWorld)
  • Methodology: Agile and Rapid Prototyping and SCRUM and Beyond (ProductWorld)
  • MLOps & AIOps (AI DevWorld)
  • OPEN Session
  • OpenAPI Summit
  • OpsWorld
  • OWASP Certified
  • Product Lead / Product Manager Roundtables (ProductWorld)
  • Product Lifecycle & Case Studies (ProductWorld)
  • Product Management Tools & Software (ProductWorld)
  • Product Roadmap Strategy & Innovation (ProductWorld)
  • Product Team Management & Structure (ProductWorld)
  • ProductWorld
  • Retail & E-commerce AI (AI DevWorld)
  • Roundtables
  • Sponsor Spotlight
  • Tensorflow & PyTorch & Open Source Frameworks (AI DevWorld)
  • Virtual
  • In-Person/Virtual
  • In Person
  • Virtual
  • Virtual Exclusive