Shield your backend from outside attacks with API Managers
Conference (INTERMEDIATE level)
Room 1 - Thessaloniki
Shield your backend from outside attacks with API Managers
APIs have been around for a while, standing as both a technological boon and a potential vulnerability. As our digital landscape evolves, so does the complexity of cyber-threats, casting a shadow on our backend systems the moment code takes its first steps into production. The pressing question emerges: Are we effectively shielding our APIs against these threats, or is there room for improvement?
API Management platforms offer a game-changing advantage by centralizing security configurations and policies. This not only expedites the journey of APIs to production but also empowers developers with limited security expertise to implement crucial measures. Consequently, shifting the responsibility to developers fosters a culture of security awareness and adoption of good security practices among peers.
In this talk, I’m going to show you what the API specific vulnerabilities are and guide you through the blueprint for constructing robust security layers around your APIs. The spotlight will be on API Managers, explaining how you can use them to enhance security for inbound connections from diverse sources like third-party consumers and mobile devices.
Regardless of your API management solution of choice, you’ll gain insight on how to apply API security and become a security champion yourself! 
Bárbara Teruggi
Originally from Argentina, I have been living in the Barcelona area for +20 years. Started in the IT world in 2006, building my career within the Finance and Insurance business. My path at my current company started as an analyst programmer in different areas (business oriented and also more technical tasks), I have also been working on development support and a brief DevOps period, until my current position as a Security Architect.