Die Konferenz für
sichere Software- und Webentwicklung
Heidelberg, Print Media Academy, 24.-27. Oktober 2017

Deutsche Version

// Call for Proposals

The deadline for Proposals has expired.

heise devSec 2017 will take place at Print Media Academy in Heidelberg from October 24 to 26, 2017. The conference for security in software development is hosted by heise Developer, an online channel for software development, heise Security, an online channel for IT security, dpunkt.verlag, publisher of computer reference books, and iX, the print magazine for IT professionals.

The conference will provide up-to-date and practical security knowledge for software developers, architects, testers and information security officers. heise devSec 2017 consists of two main conference days and an additional workshop day.

The hosts of the conference invite experts in the field of secure software development to submit presentations and full-day tutorials by May 8th, 2017. Please use the online form.

// Topics

We are looking for talks covering all phases of software development from design to operation.

  • Secure Design and Architecture
  • Software Implementation and Integration
  • Security by Design, Security Engineering
  • Best Practices
  • Vulnerabilities
  • Code Smells
  • Programming Errors
  • Threat Analysis and Attack Scenarios
  • Risk Assessment and Risk Oriented Testing
  • Security Testing
  • Penetration Tests
  • Securing Web, Cloud and IoT applications
  • Cryptography
  • Forensics
  • Legal aspects
  • ...

// Programming Languages

We are not only looking for language-agnostic talks, but also for sessions covering specific programming languages such as Java, C/C++, JavaScript, C#, or PHP.

// Tools

Sessions on tools should focus on practical introductions, conceptual reflection, live demos or comparison of different approaches instead of covering specific products.

// Lessons Learned

Speakers are invited to recount their security-related experiences from current or finished software development projects. The topics may cover individual security aspects or the full development cycle. Not only are we looking for success stories, but also for reports of throwbacks and workarounds or even dead ends.

Please indicate, whether you prefer to give a presentation lasting up to 40 minutes or a long session of up to 70 minutes. Workshops have been scheduled for full days (6 to 7 hours). Please send us an abstract of your proposed presentation which is geared to your target group (400-700 characters). Supplementary materials (long abstracts, slides, proposals, etc.) are welcome, too. We especially place value on your positioning of the proposal in regard to knowledge you expect from the audience as well as the educational objective of your talk. The deadline for submissions is May 8th, 2017. The complete schedule will be available online by June 2017.

Find the members of the conference board here.

Please feel free to contact us with questions regarding the conference or schedule of events programmkomitee@heise-devsec.de