ข้ามไปยังเนื้อหาหลัก
ไอคอนโทรโข่ง

สร้างแอปเนทีฟบนคลาวด์

พร้อมสําหรับ AI หรือยัง? ค้นพบวิธีสร้างและขยายแอปบนคลาวด์ด้วย Azure

เรียนรู้ เชื่อมต่อ สร้าง

Microsoft Reactor

เข้าร่วม Microsoft Reactor และมีส่วนร่วมกับนักพัฒนาซอฟต์แวร์แบบสด

พร้อมที่จะเริ่มต้นใช้งาน AI และเทคโนโลยีล่าสุดหรือไม่ Microsoft Reactor มีกิจกรรม การฝึกอบรม และทรัพยากรของชุมชนเพื่อช่วยเหลือนักพัฒนา ผู้ประกอบการ และสตาร์ทอัพที่สร้างขึ้นบนเทคโนโลยี AI และอื่น ๆ เข้าร่วมกับเรา!

เรียนรู้ เชื่อมต่อ สร้าง

Microsoft Reactor

เข้าร่วม Microsoft Reactor และมีส่วนร่วมกับนักพัฒนาซอฟต์แวร์แบบสด

พร้อมที่จะเริ่มต้นใช้งาน AI และเทคโนโลยีล่าสุดหรือไม่ Microsoft Reactor มีกิจกรรม การฝึกอบรม และทรัพยากรของชุมชนเพื่อช่วยเหลือนักพัฒนา ผู้ประกอบการ และสตาร์ทอัพที่สร้างขึ้นบนเทคโนโลยี AI และอื่น ๆ เข้าร่วมกับเรา!

กลับไป

The Quote-to-Cash Blind Spot: Secret Scanning for Enterprise Revenue Systems

9 กันยายน, 2569 | 5:00 หลังเที่ยง - 6:00 หลังเที่ยง (UTC) เวลาสากลเชิงพิกัด

  • รูปแบบ:
  • alt##Livestreamสตรีมสด

หัวข้อ: ความปลอดภัย

ภาษา: ภาษาอังกฤษ

Every CPQ, CLM, and billing rollout I've run wires Salesforce or Vlocity to DocuSign, Stripe or Zuora-type billing, and ERP through API keys and OAuth tokens sitting in DataRaptors, Integration Procedures, and deployment scripts. AppSec teams usually classify that layer as "business configuration," so it never gets scanned the way application code does.

Where credentials actually live in a quote-to-cash stack: middleware scripts, integration procedures, CI/CD for CPQ deployments. Why "business systems" teams don't think of themselves as a scanning target, and what that costs. How GitHub Advanced Security's secret scanning, push protection, and custom patterns close the gap, even for teams that don't see themselves as developers.

A sample repo modeling a CPQ integration script with a hardcoded OAuth token and API key. Push protection blocking a commit in real time. A custom regex pattern built for an enterprise revenue-tool token format. The alert triage view a security lead would actually work from.

  • DevSecOps
  • Security
  • GitHub Copilot
  • GitHub Advanced Security

ผู้พูด

ลงทะเบียนแล้วและต้องการยกเลิกใช่หรือไม่ ยกเลิกการลงทะเบียน

การลงทะเบียน

ลงชื่อเข้าใช้ด้วยบัญชี Microsoft

ลงชื่อเข้าใช้

หรือป้อนที่อยู่อีเมลของคุณเพื่อลงทะเบียน

*

โดยการลงทะเบียนสําหรับเหตุการณ์นี้ คุณยอมรับที่จะปฏิบัติตาม จรรยาบรรณของ Microsoft Reactor.

ส่วนต่างๆ ของหน้านี้อาจได้รับการแปลโดยเครื่องหรือ AI