The Swedish Chef Would Be Proud: Cooking up a Secure API in Minutes – Instructions Included
A talk given by Curity's Jonas Iggbom and Axiomatics' David Brossard at Nordic APIs 2024 Platform Summit.
This session starts with an unsecured API. The speakers demonstrate how to enhance security by utilizing an API gateway, authenticating users through an OAuth Authorization Server, and implementing fine-grained access control via a Policy Decision Point. They conclude by discussing OWASP’s Top Ten API Threats and how their recipe addresses them. Meatballs & Lingonberry are not included.
Further reading: