Technical Bootcamp: Fortify Cloud driven AppSec 

Pre-Registration Page

OBJECTIVE In these 10 days (spending about 2 convenient hours per day), we will cover-

Integration of Fortify on Prim 23.1 with Azure DevOps build pipeline on following scenarios-

  • Using Fortify plug in for Java and dotnet code using the build tool, Maven, dotnet & Gradle
  • Using Fortify plug in to scan API of a sample application using ScanCentral DAST
  • Scanning source code and sample web application using Fortify CLI tool
  • Scanning OSS vulnerabilities via SonaType and Debricked 

PRE-REGISTER for the Fortify Cloud driven AppSec Bootcamp by 2:00 p.m. Thursday, 10 Aug 2023, US Eastern Standard Time.

NOTE This Bootcamp is for OpenText / Microfocus Employees and Partners ONLY. Upon submitting your pre-registration information, your application will be reviewed, and a confirmation will be sent with the post - approval link. The post-approval link present in the mail will contain the Agenda, Session registration links and many important information.

 

PREREQUISITES Participants should have good understanding of-

  • Each participant must have Corporate / Personal / Free Trial Account on Azure DevOps (https://dev.azure.com/)
    1. If you are using your Corporate email address for Azure and you are already having a SSO integration with Microsoft like O365 then you need to talk to your IT Team to get a Paid Account for AzureDevOps Setup for you, else use your private email address and request for hosted parallelism given below ( in point 3).  
  • For Azure DevOps if you have just created the account and does not have an Organization configured -
    1. Login into https://dev.azure.com/ 
    2. Follow the steps to create an Organization in dev.azure.com, if you have not created already
    3. Must fill this form to request a free tier of hosted parallelism for Private projects at https://aka.ms/azpipelines-parallelism-request ETA is two-three business days.
  • Watch Azure CI Pipeline Video - https://www.youtube.com/watch?v=xH5EY7FCFQw
  • Must be comfortable with basic Linux Bash Script writing, Windows Batch files and PowerShell scripts.
  • Must be comfortable with Windows and Ubuntu Linux OS.
  • Basic understanding of Fortify Static Code Analyzer (SCA), Software Security Center (SSC), Scan Central SAST and Scan Central DAST
  • Make sure in your laptop Google Chrome is set as the default browser.

Note: It is assumed that you are conversant with Fortify SAST and Fortify DAST before taking up this Bootcamp. 

 If you have any questions, please Contact Us below.