Designing for compromise: security architecture for mission-critical systems [ukr]
Imagine two mission-critical systems exchanging sensitive data, when either system, or the network between them, could be compromised. We’ll build the integration architecture step by step, introducing trust boundaries, identities, access control, data minimisation, encryption, and other security controls that limit blast radius. We’ll show how layered architectural decisions can keep systems secure and resilient even when individual controls fail.
Anastasiia Voitova
Head of security engineering at Cossack Labs
- Builds security tools for protecting data during the whole lifecycle (encrypt everything!)
- Shares a lot about "boring cryptography", end-to-end encryption, data security, zero knowledge / zero trust systems, software security architecture
- Speaks on international conferences, conducts workshops and training for developers, and co-organizes cybersec events