The essence of “Security by Design”

private

With great new possibilities come great new security and privacy challenges and threats for the financial sector. Systems are increasingly connected, increasingly complex, increasingly open and increasingly under threat of criminals and cyber vandalists. The proof of this can be read in the papers almost every day. The growth of financial high-tech is faster than ever, bringing new security possibilities and issues, and at the same time there is still a large base of legacy that is not going anywhere, also bringing challenges with respect to security risks.

Software plays a large role in these threats because it is central in the processing of information. It is with good reason that in the new “PCI DSS 3.2” it is now explicitly required that the source code should be reviewed by experts prior to releases. This is essential to really find the weaknesses buried in these systems that cannot be found using the regular security tests. These weaknesses require 100 times more effort to fix than to build it right in the first place, which is why it is so important to practice “security by design” as early as possible in the development process.

New privacy regulations, especially the GDPR, require that – apart from securing personal data – the way of processing this data also needs close attention. Regulation fines are higher than ever.

In this key track session, we will take you through observations we made during the many software security & privacy assessments that we performed, to show you and share with you the pitfalls of unconscious incompetence. Next we will analyze why we are seeing the same mistakes over and over again. This allows us to address the root causes to come towards a ‘set of steps’ that is essential for your daily practice to secure your business and your clients interest and trust.

Related interesting reads:
1. Web – Escape from legacy mountain

2. eBook – The Seven Deadly Sins of Insecure Mobile Apps

  • @EuroPaySummit

    European Pymt Summit European Pymt Summit @EuroPaySummit #payments lobby calls for 18-month delay to consumer authentication rules via @finextra #SCA #PSD2 https://t.co/0aVS4vALfX 6 weeks ago
    European Pymt Summit European Pymt Summit @EuroPaySummit RT @cbpaymentsnews: The Grand Panel on #cash and #CBDC wraps up with a lively debate on the merits and drawbacks of issuing a central bank… 8 weeks ago
    European Pymt Summit European Pymt Summit @EuroPaySummit RT @cbpaymentsnews: How are central banks approaching the "new normal" in cross-border #payments? A packed #CBPC2019 track session from @IN 8 weeks ago
    European Pymt Summit European Pymt Summit @EuroPaySummit RT @cbpaymentsnews: Pleased to be in Berlin @ the Central Bank Payments Conference w/ 52 global central banks! Great opening panel with Vic… 8 weeks ago
    European Pymt Summit European Pymt Summit @EuroPaySummit RT @bankofengland: We will support a more resilient, innovative and competitive payments system for UK households and businesses. Find out… 8 weeks ago
    European Pymt Summit European Pymt Summit @EuroPaySummit RT @cbpaymentsnews: Why standards are important for central banks... @GLEIF Chairman Gerard Hartsink on the value of legal entity identifie… 8 weeks ago
    European Pymt Summit European Pymt Summit @EuroPaySummit RT @cbpaymentsnews: Standards are the hot topic this morning at the #CBPC2019 in Berlin. James Whittle, Head of Standards Authority at @WeA 8 weeks ago
    European Pymt Summit European Pymt Summit @EuroPaySummit RT @cbpaymentsnews: In today’s #CBPC2019 session on open banking, @WeArePayUK’s Matthew Hunt says we are living through a “once in a genera… 8 weeks ago
    European Pymt Summit European Pymt Summit @EuroPaySummit "The most striking thing we found during our attendance at the #europeanpaymentsummit was the fact that regulatory… https://t.co/FxCSh0XvLs 10 weeks ago
    European Pymt Summit European Pymt Summit @EuroPaySummit RT @PaymentCounsel: Money 2020: World FinTech Report 2019 #OpenBanking has yet to reach maturity, according to #WFTR2019. The financial se… 10 weeks ago
    European Pymt Summit European Pymt Summit @EuroPaySummit PayU acquires Turkish startup @iyzico_com #digitalpayments #fintech https://t.co/GCBAUcaNvC 10 weeks ago
    European Pymt Summit European Pymt Summit @EuroPaySummit EU to Increase Access to High-Quality Data for #Blockchain, #AI Projects https://t.co/ROfiA7X6hR via @cointelegraph 11 weeks ago
    European Pymt Summit European Pymt Summit @EuroPaySummit RT @KYC_Ltd: #ThrowbackThursday to our win as "Best RegTech Provider" in the #FlorinAwards at the @EuroPaySummit! On our blog, we take a cl… 11 weeks ago
    European Pymt Summit European Pymt Summit @EuroPaySummit RT @PaymentCounsel: Whitepaper: One year after #PSD2 What has happened since PSD2 and #GDPR were introduced, and why financial services fi… 11 weeks ago
    European Pymt Summit European Pymt Summit @EuroPaySummit Always a pleasure to catch up with leading minds in #fintech during our #europeanpaymentsummit editions. @dgwbirch,… https://t.co/uIKHUrZJrT 11 weeks ago
    European Pymt Summit European Pymt Summit @EuroPaySummit RT @PaymentCounsel: Consumers are wary of #bankingtechnology Rate of consumers adoption of latest #banking technology does not necessarily… 12 weeks ago
  • Also interesting
    Alignment of Real-Time Payments Across International Borders
    Written on 22 April '19 by
    READ MORE
    Meet the Florin Awards Europe 2019 Nominees
    Written on 17 April '19 by
    READ MORE
    David Birch, Consult Hyperion: "We need national strategies to manage the transition to cashlessness"
    Written on 16 April '19 by
    READ MORE
  • News