Revolutionizing Financial Services through DevSecOps Automation

This forum brought together financial services experts from Equifax, Sallie Mae, and other leading financial enterprises. Throughout this session, they delved into their DevSecOps journeys, shared invaluable best practices, explored effective methods to measure the ROI of security programs, and how Sonatype platform has helped them improve their Software Supply Chain Security.

Revolutionizing Financial Services through DevSecOps Automation

This forum brought together financial services experts from Equifax, Sallie Mae, and other leading financial enterprises. Throughout this session, they delved into their DevSecOps journeys, shared invaluable best practices, explored effective methods to measure the ROI of security programs, and how Sonatype platform has helped them improve their Software Supply Chain Security.

sonatype logo resized Logo_Equifax@2x image-May-01-2023-07-50-07-4633-PM

Speakers

Tara Condon
Tara Condon
VP, Product Marketing & Analyst Relations
Sonatype
Tara Condon is Sonatype’s Vice President of Product Marketing and Analyst Relations. In her 20+ year career, Tara has served in marketing, communications, M&A, analyst relations, and investor relations leadership roles in private and publicly traded companies, including API Technologies and Iconectiv, part of Ericsson. She has written extensively about cybersecurity and telecommunications with a focus on policy making. 
Derek Fisher
Derek Fisher
Head of Product Security
Leading Financial Enterprise
Derek Fisher is an award-winning author, speaker, leader, and university instructor and can bring a host of unique skills, abilities, and decades of experience in all facets of engineering from hardware to software to cybersecurity. He has built high-performing cybersecurity teams and has devised as well as implemented organizational cybersecurity strategies to reduce organization risk and provide maximum information security.

Throughout his security career, he had been focused on securing software and delivery security solutions to the enterprise. He has proven capabilities in providing enterprise security services including vulnerability management program, bug bounty program, security training, and expanded security toolset. Derek Fisher has expertise in designing and implementing regulatory compliance system and guidelines as well as cutting-edge cyber security solutions to avoid security incidents, maximize security, and streamline organizational procedures.
Mitchell Johnson
Mitchell Johnson
Chief Product Development Officer
Sonatype
Mitchell is Sonatype's Chief Product Development officer. He has over 20 years experience in product development, innovation, and strategic planning. Mitchell has a deep understanding of the financial services industry and the regulatory landscape that shapes it. His previous experience at companies like Equifax and eVestment has given him a unique perspective on the challenges and opportunities facing financial services companies today.
Obie Hardin
Obie Hardin
Manager, Global SecurityCyber Security
Equifax

Billy “Obie” Hardin has over 25 years of experience with Software Architecture and Security across multiple industries including DOD, Telecommunications, and Finance. He is passionate about Application Security and holds numerous industry certifications, including CISSP, C|EH, Certified Penetration Tester, Certified Metasploit Pro, and MCSD. He gained his AppSec experience while serving as the Security Champion at American Express and Security Architect at Jacobs Engineering. In his spare time, Obie enjoys SCUBA diving and serving his two sons' Scouting units as Cubmaster and Assistant Scoutmaster.

Reza Mehran-Nejad
Reza Mehran-Nejad
Application Security Analyst
Leading Financial Enterprise
Reza Mehran-Nejad has experience in the application security space building and maturing the DevSecOps practice for organizations in the automotive, medical device, and financial industries. He has built application security pen testing capabilities in house for organizations that relied on 3rd parties as well as facilitated the implementation of security testing tools within CI/CD pipelines following the shift left strategy.
Ron Ogle
Ron Ogle
Principal Architect - Information Security
Sallie Mae

Ron Ogle began his career more than 30 years ago by overseeing software and system development for avionic and weapon systems in the US Navy. Following that, he transitioned to the private sector, where he focused on securing IT systems and software. Currently, he is utilizing his expertise in the financial sector, working with application teams to ensure secure application development and engineering enterprise security solutions.

Tara Condon
VP, Product Marketing & Analyst Relations
Sonatype
Tara Condon
Tara Condon is Sonatype’s Vice President of Product Marketing and Analyst Relations. In her 20+ year career, Tara has served in marketing, communications, M&A, analyst relations, and investor relations leadership roles in private and publicly traded companies, including API Technologies and Iconectiv, part of Ericsson. She has written extensively about cybersecurity and telecommunications with a focus on policy making. 
Derek Fisher
Head of Product Security
Leading Financial Enterprise
Derek Fisher
Derek Fisher is an award-winning author, speaker, leader, and university instructor and can bring a host of unique skills, abilities, and decades of experience in all facets of engineering from hardware to software to cybersecurity. He has built high-performing cybersecurity teams and has devised as well as implemented organizational cybersecurity strategies to reduce organization risk and provide maximum information security.

Throughout his security career, he had been focused on securing software and delivery security solutions to the enterprise. He has proven capabilities in providing enterprise security services including vulnerability management program, bug bounty program, security training, and expanded security toolset. Derek Fisher has expertise in designing and implementing regulatory compliance system and guidelines as well as cutting-edge cyber security solutions to avoid security incidents, maximize security, and streamline organizational procedures.
Mitchell Johnson
Chief Product Development Officer
Sonatype
Mitchell Johnson
Mitchell is Sonatype's Chief Product Development officer. He has over 20 years experience in product development, innovation, and strategic planning. Mitchell has a deep understanding of the financial services industry and the regulatory landscape that shapes it. His previous experience at companies like Equifax and eVestment has given him a unique perspective on the challenges and opportunities facing financial services companies today.
Obie Hardin
Manager, Global SecurityCyber Security
Equifax
Obie Hardin

Billy “Obie” Hardin has over 25 years of experience with Software Architecture and Security across multiple industries including DOD, Telecommunications, and Finance. He is passionate about Application Security and holds numerous industry certifications, including CISSP, C|EH, Certified Penetration Tester, Certified Metasploit Pro, and MCSD. He gained his AppSec experience while serving as the Security Champion at American Express and Security Architect at Jacobs Engineering. In his spare time, Obie enjoys SCUBA diving and serving his two sons' Scouting units as Cubmaster and Assistant Scoutmaster.

Reza Mehran-Nejad
Application Security Analyst
Leading Financial Enterprise
Reza Mehran-Nejad
Reza Mehran-Nejad has experience in the application security space building and maturing the DevSecOps practice for organizations in the automotive, medical device, and financial industries. He has built application security pen testing capabilities in house for organizations that relied on 3rd parties as well as facilitated the implementation of security testing tools within CI/CD pipelines following the shift left strategy.
Ron Ogle
Principal Architect - Information Security
Sallie Mae
Ron Ogle

Ron Ogle began his career more than 30 years ago by overseeing software and system development for avionic and weapon systems in the US Navy. Following that, he transitioned to the private sector, where he focused on securing IT systems and software. Currently, he is utilizing his expertise in the financial sector, working with application teams to ensure secure application development and engineering enterprise security solutions.

 

Fortune 2000 white

Fortune 2000 Companies

Learn from organizations at all phases of their journeys as they talk about the rapidly changing roles within DevSecOps and digital transformations.

It was a great event. The conversation was authentic, relevant, and highly informed.”
—Gene Kim, Author of The Phoenix Project
I am not an easy person to impress and I thought it was a fabulous event.” 
—Sam Guckenheimer, Microsoft
Fortune 2000 white

Senior IT Decision Makers

Senior IT Decision Makers Hear from senior and executive technology leaders who have successfully implemented governance practices within DevOps transformations.

Collaboration and Learning

Collaboration & Learning

Collaboration & Learning Connect with industry peers to learn together how to bring together software developers and security professionals to remediate open source risk, without slowing down innovation.

I really enjoyed the presentations. It's great to see how other organizations are overcoming these challenges. This is a brilliant platform to gain deep insight and understanding. Thank you very much!”
—DevSecOps Leadership Forum Online Attendee
Fortune 2000 white

Fortune 2000 Companies

Learn from organizations at all phases of their journeys as they talk about the rapidly changing roles within DevSecOps and digital transformations.

Fortune 2000 white

Senior IT Decision Makers

Senior IT Decision Makers Hear from senior and executive technology leaders who have successfully implemented governance practices within DevOps transformations.

Collaboration and Learning

Collaboration & Learning

Collaboration & Learning Connect with industry peers to learn together how to bring together software developers and security professionals to remediate open source risk, without slowing down innovation.

It was a great event. The conversation was authentic, relevant, and highly informed.”
—Gene Kim, Author of The Phoenix Project
I am not an easy person to impress and I thought it was a fabulous event.” 
—Sam Guckenheimer, Microsoft
I really enjoyed the presentations. It's great to see how other organizations are overcoming these challenges. This is a brilliant platform to gain deep insight and understanding. Thank you very much!”
—DevSecOps Leadership Forum Online Attendee

Watch On Demand

Can’t attend? Find another session, or watch previous sessions on demand.
Can’t attend? Find another session, or watch previous sessions on demand.