Session: Ensuring API Security with Contract Testing: Tips and Best Practices

In today’s interconnected world, APIs play a crucial role in enabling digital communication between systems. However, with the increasing adoption of APIs, security breaches and cyber attacks are becoming more prevalent. Ensuring the security and reliability of APIs is vital for organizations to maintain the trust of their users and protect sensitive data.

In this technical talk, we will explore the benefits of API contract testing and how it can help boost confidence in your API design while securing it against some of the more common OWASP API Top Ten attacks. Contract testing helps with team communication and planning, but also helps ensure that APIs are working as intended and prevent potential issues during runtime, such as broken authentication and access control, and data exposure.

A walkthrough of using tools like Postman will be done, but the high-level concepts provided will be accessible to any API platform that allows for API testing.

By the end of this talk, attendees will have a better understanding of the benefits of API contract testing and how it can help improve the security and reliability of their APIs.

Presenters: