Securing APIs against cyber threats

Watch this video to hear F5's Senior Solutions Engineer, Bharat Merja, explain the most common API attacks and how to prevent them with a well-configured API gateway.

Learn lessons from API breaches, and best practices for API security controls including regulatory advisory for financial institutions. F5's Bharat Merja explains the role of the API gateway in future-proofing your API security.

Agenda

  1. Growth of APIs in powering digital transformation
  2. Securing APIs – lessons from breaches
  3. Security controls for APIs – including regulatory advisory for financial institutions
  4. Demo – the F5 NGINX solution for the three pillars of securing APIs
  5. Discussion – the role of the API gateway in future-proofing your security

Speakers:

Selected slides:

The story of fraud in the API ecosystem

Breaches by sector with cause

API attacks based on breach analysis

OWASP attack categories

Authentication and Authorisation mess

Critical controls for APIs

Shortcuts to sections:

  1. Growth of APIs in powering digital transformation
    https://youtu.be/1r1kemOnhiQ?t=125
  2. Securing APIs – lessons from breaches
    https://youtu.be/1r1kemOnhiQ?t=281
  3. Security controls for APIs – including regulatory advisory for financial institutions
    https://youtu.be/1r1kemOnhiQ?t=797
  4. Demo – the F5 NGINX solution for the three pillars of securing APIs
    https://youtu.be/1r1kemOnhiQ?t=1341
  5. Discussion – the role of the API gateway in future-proofing your security https://youtu.be/1r1kemOnhiQ?t=2223