Wednesday 

Track 2 

15:00 - 16:00 

(UTC±00

Talk (60 min)

HTTP Security Headers You Need To Have On Your Web Apps

In this session, we'll explain a handful of HTTP Security Headers (including HSTS, CSP, XFO, and more) from the bottom up. We'll explain what they are, what they do, and how you can implement them to secure your sites. On each of these, we'll demo a before and after so you can see first hand what each of these security headers do.

Security
Web

Scott Sauber

Scott is a software consultant and primarily does web development using ASP.NET Core and JavaScript. His second dev passion behind web development is building DevOps pipelines and automating everything automatable. He’s a Microsoft MVP, Friend of Redgate and co-organizes the Iowa .NET User Group. You can find Scott on Twitter @scottsauber or on his blog at scottsauber.com.