Sponsors & Exhibitors

Santa Monica

AppSec SoCal

June 12 2024

Annenberg Beach House Santa Monica

Gold

Bugcrowd
We are Bugcrowd. Since 2012, we’ve been empowering organizations to take back control and stay ahead of threat actors by uniting the collective ingenuity and expertise of our customers and trusted alliance of elite hackers, with our patented data and AI-powered Security Knowledge Platform™. Our network of hackers brings diverse expertise to uncover hidden weaknesses, adapting swiftly to evolving threats, even against zero-day exploits. With unmatched scalability and adaptability, our data and AI-driven CrowdMatch™ technology in our platform finds the perfect talent for your unique fight. We aim to create a new era of modern crowdsourced security that outpaces threat actors. Unleash the ingenuity of the hacker community with Bugcrowd.
IriusRisk
For FinServ, FinTech, Software (and other highly regulated or security-sensitive industries), IriusRisk’s Threat Modeling Tool is a reliable and proactive security technique.
It provides secure by design best practices, a customizable yet repeatable process (regardless of threat modeling experience), and allows its users to threat model the entire risk landscape, including third party software and AI/ML applications.
Synopsys
Synopsys builds trust in software by enabling organizations to manage application security, quality, and compliance risks at the speed their business demands.

Our market-leading solutions help developers to secure code as fast as they write it; development and DevSecOps teams to automate testing within development pipelines without compromising velocity; and security teams to proactively manage risk and focus remediation efforts on what matters most.

With Synopsys, organizations can transform the way they build and deliver software, aligning people, processes, and technology to intelligently address software risks across their portfolio and at all stages of the application lifecycle.

Oligo
Oligo Security is on a mission to proactively protect software throughout the development lifecycle. With contextual detection of exploitable flaws in all application code, the Oligo Defense Platform is the only product on the market that can fully determine vulnerability exploitability and detect real-time indicators of compromise in applications.
Security Advisors Logo

Our expert team can help you validate your Security Program through Risk Assessments, Network Penetration Testing, and Application Security Testing. Risk Assessments based on IT internal Controls, PCI DSS, HIPAA, and IT SOX Controls will give your company the assurances it needs for both security and compliance. We are not just talking vulnerability scanning! Contact us today to help your business: [email protected]

Tekkno, Cyber Sec Architect

Competent consulting and training in Cyber Security and Privacy for small and medium sized organizations. No geek-speak, everyone can follow. We offer specialized courses for your C-Suite and your IT-Department. Every solution we offer is affordable and designed to prevent – or significantly limit – damage through a potential breach.

Platinum

deepfactor

Deepfactor is a next-gen application security platform that combines software composition analysis, container scans, container runtime security, and SBOM capabilities. Deepfactor uses static container scan data + runtime analysis to prioritize highest-risk vulnerabilities—based on reachability, runtime usage, deployment context, and exploit maturity.

Impart Security

Did you know that 41% of organizations have recently experienced an API security incident? Impart Security exists because legacy Web Application Firewall (WAF) solutions aren’t smart or flexible enough to properly secure APIs. With Impart’s API security platform, security teams can finally have effective runtime protection that helps to proactively analyze, mitigate, and respond to ongoing API threats utilizing integrated context from the entire SDLC. Learn more at impart.security or contact us at try.imp.art to see a live demo.

Silver

MERITO

Merito knows testing. We’ve been in this space for nearly 20 years helping our customers deliver reliable and secure applications. We’ve been experts on Functional and Performance testing since our partnership with Mercury Interactive and we’re well-versed in all things AppSec. Our entire organization is certified with multiple vendors, and we have advanced knowledge in UFT One, LoadRunner Enterprise, and Application Security solutions. We Deliver excellence with a down-to-earth approach. Whether you’re running an enterprise level company or a startup, we’ve got you covered when it comes to Testing and Security.

qwiet AI

Qwiet AI quickly uncovers, prioritizes, and generates fixes for the most critical vulnerabilities in your code utilizing a patented Code Property Graph (CPG) based scanning methodology that allows for fast, contextual, and highly accurate scans. 

In one single scan, Qwiet AI provides:

  • AI-Enhanced SAST – find and fix exploitable vulnerabilities in millions of lines of code in minutes.

  • Contextual SCA – Find critical, reachable, and exploitable vulnerabilities across all your OSS libraries.

  • AI AutoFix – Get tailored, secure fix suggestions based on the full context of your code.

  • Container – Secure your code and the container it runs in.

  • SBOM – Go beyond compliance with licensing and reachability enhanced SBOM.

  • Secrets – Keep your code secure and free of hardcoded sensitive information with high precision secrets detection.

Qwiet AI provides a highly intuitive and feature-rich dashboard for AppSec teams as well as integration into your CI/CD pipeline to provide a seamless developer experience.  Customized reporting and API access allow for a practically limitless number of ways to integrate Qwiet AI into your DevSecOps environment.

Stop by our booth to get a demo while you are at the show or visit Qwiet.AI to learn more and schedule a demo (or try it yourself for free!).  

Coffee Sponsor

redaccess

Red Access secures the hybrid workplace with the first agentless browsing security platform, introducing a non-disruptive way to protect devices and browsing sessions in and outside of the office. Red Access helps companies secure all the browsing activities of their employees on any browser, web app, device and cloud services, enabling them to enjoy a seamless user experience and easy management, without hampering productivity and without the need to install a browser or an extension.

Organizations & Exhibitors

ISSA LA

Information Systems Security Association, Los Angeles
Connecting the Southern California Information Community since 1982

The Los Angeles Chapter is the founding chapter of the Information Systems Security Association (ISSA ®), a not-for-profit, international organization of information security professionals and practitioners. It provides educational forums, publications and peer interaction opportunities that enhance the knowledge, skill and professional growth of its members. Join us: issala.org

Cloud Security Alliance

The Cloud Security Alliance (CSA) is the world’s leading organization dedicated to defining and raising awareness of best practices to help ensure a secure cloud computing environment.

ISC2 Los Angeles Chapter

The ISC2 LA chapter, a local non-profit association for information security professionals dedicated to the following:

  • Build and sustain community for information security professionals of all domain disciplines who are active members of the International Information Systems Security Certification Consortium or ISC2.
  • Promote career development and career growth opportunities for our members.
  • Drive continuous professional improvement.
  • Align with and extend the Information Technology and Information Security communities in the Los Angeles area, and across the globe.
  • Promote information security awareness and best practices in the IT industry as a whole wherever possible.

Learn more at www.isc2la.org.

Cyber Jutsu Logo

Women’s Society of Cyber Jutsu

“The Women’s Society of Cyberjutsu (WSC), a 501(c)3 non-profit, is dedicated to raising awareness of cybersecurity career opportunities and advancement for women in the field, closing the gender gap and the overall workforce gap in information security roles. “

AITP LA

AITP, Los Angeles
AITP Los Angeles (Association of Information Technology Professionals) focuses on cutting-edge technology topics, talented speakers with practical insights, and offers impactful professional networking.
As a local and national nonprofit association, we provide members with professional development, mentoring, and major leadership opportunities. With AITP-LA, you can exchange experiences, communicate with industry leaders, keep up with emerging technologies, enhance your skills, and contribute to the knowledge community.
Join now to show your commitment to the future of IT and to connect with a strong LinkedIn community.

International Institute of Business Analysis

International Institute of Business Analysis

The IIBA Orange County, CA Chapter is committed to advancing the profession of Business and Systems Analysis throughout Orange County and neighboring communities. We provide educational and networking sessions, training and career opportunities, forums for knowledge sharing, and connections to other professional organizations.
IIBA® and IEEE Computer Society have partnered to offer a robust learning and certification program to be prepared for today’s cybersecurity challenges. Please contact us to learn more about the Certificate in Cybersecurity Analysis (IIBA®-CCA).

ISSA Orange County
OWASP – Orange County, Ca

The Open Web Application Security Project (OWASP) is a 501c3 worldwide not-for-profit charitable organization focused on improving the security of software. Our mission is to make software security visible, so that individuals and organizations worldwide can make informed decisions about true software security risks.

United States Secret Service