Naar hoofdinhoud gaan
Megafoonicoon

Bouw Cloud Native Apps

Klaar voor AI? Ontdek hoe je cloud-native apps kunt bouwen en opschalen met Azure.

LEARN, CONNECT, BUILD

Microsoft Reactor

Neem deel aan Microsoft Reactor en neem live contact op met ontwikkelaars

Klaar om aan de slag te gaan met AI en de nieuwste technologieën? Microsoft Reactor biedt evenementen, training en communitybronnen om ontwikkelaars, ondernemers en startups te helpen bouwen op AI-technologie en meer. Kom kijken.

LEARN, CONNECT, BUILD

Microsoft Reactor

Neem deel aan Microsoft Reactor en neem live contact op met ontwikkelaars

Klaar om aan de slag te gaan met AI en de nieuwste technologieën? Microsoft Reactor biedt evenementen, training en communitybronnen om ontwikkelaars, ondernemers en startups te helpen bouwen op AI-technologie en meer. Kom kijken.

Terug

The Quote-to-Cash Blind Spot: Secret Scanning for Enterprise Revenue Systems

9 september, 2026 | 5:00 p.m. - 6:00 p.m. (UTC) Gecoördineerde Universele Tijd

  • Notatie:
  • alt##LivestreamLivestream

Onderwerp: Beveiliging

Taal: Engels

Every CPQ, CLM, and billing rollout I've run wires Salesforce or Vlocity to DocuSign, Stripe or Zuora-type billing, and ERP through API keys and OAuth tokens sitting in DataRaptors, Integration Procedures, and deployment scripts. AppSec teams usually classify that layer as "business configuration," so it never gets scanned the way application code does.

Where credentials actually live in a quote-to-cash stack: middleware scripts, integration procedures, CI/CD for CPQ deployments. Why "business systems" teams don't think of themselves as a scanning target, and what that costs. How GitHub Advanced Security's secret scanning, push protection, and custom patterns close the gap, even for teams that don't see themselves as developers.

A sample repo modeling a CPQ integration script with a hardcoded OAuth token and API key. Push protection blocking a commit in real time. A custom regex pattern built for an enterprise revenue-tool token format. The alert triage view a security lead would actually work from.

  • DevSecOps
  • Security
  • GitHub Copilot
  • GitHub Advanced Security

Sprekers

Bent u al geregistreerd en moet u annuleren? Registratie annuleren

Registratie

Aanmelden met uw Microsoft-account

Aanmelden

Of voer uw e-mailadres in om u te registreren

*

Door u te registreren voor deze gebeurtenis gaat u ermee akkoord zich te houden aan de Gedragscode van Microsoft Reactor.

Delen van deze pagina kunnen machinaal of door AI vertaald zijn.