Application Layer Cryptography: Purpose and Threat Modeling

An exploration of the role of cryptography at the application layer, its benefits in protecting sensitive data, and its significance within threat modeling frameworks.

OWASP Bay Areaโ€ข1.0K viewsโ€ข23:08

About this video

Whatโ€™s the point of application layer cryptography? What does encrypting sensitive data actually buy us, in terms of threat modeling? Why bother with encrypting data, if we need to decrypt it to realize the dataโ€™s value? If we donโ€™t trust the software thatโ€™s handling the data, why trust the software to handle the keys? Is there a business case to actually encrypt more (or less) data? If we have to encrypt data, how are we actually supposed to do that, in practice? What algorithms should we use to encrypt? Where do these keys come from? Oh no, I have to expire the keys old keys and start using new encryption keys to provide forward secrecy, over time? !@#$ How do I do that without losing backward compatibility with software Iโ€™ve already shipped to customers that uses the old encryption scheme? Should I lock into Google KMS or AWS KMS or buy an $50k HSM from Thales integrating with PKCS11, or just build my own system? Wait. What's peacemakr.io? If youโ€™ve every wondered about these questions, youโ€™re not alone. Weโ€™ll explore where business requirements come from, how product security engineering teams typically respond to these requirements, and discuss the future of application layer cryptography. Bio: Jon has 10+ years industry experience, and 4+ in academia experience, in Product Security that spanned everything from 2 person bootstrapped startup to large companies. He's secured both consumer and enterprise products, across large (Apple), medium (Pure Storage), and small sized companies. Today, he is a Product Security Engineer at Pure Storage by day, and, a Founder and CEO of Peacemakr.io nights and weekends.

Tags and Topics

This video is tagged with the following topics. Click any tag to explore more related content and discover similar videos:

Tags help categorize content and make it easier to find related videos. Browse our collection to discover more content in these categories.

4.3

1 user review

Write a Review

0/1000 characters

User Reviews

0 reviews

Be the first to comment...

Video Information

Views
1.0K

Total views since publication

Likes
13

User likes and reactions

Duration
23:08

Video length

Published
Sep 25, 2019

Release date

Quality
hd

Video definition

Related Trending Topics

LIVE TRENDS

This video may be related to current global trending topics. Click any trend to explore more videos about what's hot right now!

THIS VIDEO IS TRENDING!

This video is currently trending in South Korea under the topic 'a'.

Share This Video

SOCIAL SHARE

Share this video with your friends and followers across all major social platforms including X (Twitter), Facebook, Youtube, Pinterest, VKontakte, and Odnoklassniki. Help spread the word about great content!