-
20 August 2026
-
08:30
Registration, Coffee & Networking in the Exhibition Area
-
09:00
Welcoming Remarks from Corinium & Chair's Remarks
-
09:10
Speed Networking
-
09:15
Security in the Age of Quantum Computing
Suresh Govindaraju - Director of Engineering - PayPal
-
09:40
AI Inside the Pipeline with Practical Security Automation in CI/CD
- Practical use cases for AI-driven security in CI/CD pipelines
- Automating code review and threat modelling with minimal friction
- Improving detection accuracy and reducing false positives
- Operating and governing AI-assisted security tooling at scale
-
10:05
Panel Discussion
Balancing Speed and Security in Modern Software Delivery- Strategies to increase development velocity without compromising security standards
- Designing pipelines and controls that scale with fast-moving engineering teams
- Managing risk and accountability in highly automated development environments
- Cultural and operational changes needed to embed security into everyday delivery
Speakers
Reuben Athaide Head Innovation, Application Security and Assurance
Standard Chartered -
11:40
Morning Coffee & Networking in the Exhibition Area
-
11:10
From Code to Deployment: Mastering Application Security in DevSecOps
Sathiyaseelan Murugaiayh - Head of DevSecOps - Circles.Life
- Best practices for integrating SAST, DAST, and runtime protection into CI/CD pipelines
- Modern threat modelling techniques and secure coding practices for high-velocity teams
- Balancing security coverage with development speed to avoid bottlenecks
- Case studies of AppSec adoption at scale without slowing innovation
-
11:35
Boosting Efficiency and Reducing Bottlenecks in the SDLC
Senior Representative - - Snyk
-
12:00
Measuring DevSecOps Success with Meaningful Metrics (topic to be confirmed)
Vipul Sodha - Principal Engineer - Carousell Group
-
12:25
Securing Access: Practical Identity and Access Management in Modern DevSecOps
- What you’ll learn: How to implement robust identity and access controls in CI/CD pipelines without slowing development
- Practical strategies for managing secrets, service accounts, and role-based access in automated workflows
- Balancing developer agility with strict security policies to prevent breaches and insider threats
- Integrating identity management tools into DevSecOps workflows for continuous monitoring, auditing, and compliance
-
12:50
Lunch & Networking in the Exhibition Area
-
13:50
Senior Lead Engineer - 3A Security
Gowtham Sundar - DevSecOps Incident Recovery: Minimising Impact, Maximising Continuity - SPH Media
- Strategies for restoring systems quickly while preserving security and compliance
- Maintaining team productivity and workflow continuity during and after incidents
- Practical approaches to learning from every incident: improving processes and preventing repeat issues
-
14:15
Securing the Modern Pipeline with APIs Without Borders
- Embedding security controls into CI/CD workflows to protect API endpoints
- Threat modelling and risk mitigation for API-driven applications
- Balancing rapid API innovation with robust security practices
-
14:40
AI-Driven Development Embedding Security into Fast-Moving Pipelines
Akash Lohchab - Sr. Network and Security Engineer, APAC - FlexTrade
-
15:05
Afternoon Tea & Networking in the Exhibition Area
-
15:35
Sustaining Security in Continuous Delivery Environments
- Integrating security practices from design to deployment in Agile workflows
- Upskilling engineers and staff to maintain security resilience under pressure
- Creating a culture where security is a shared responsibility, not an afterthought
-
16:00
Designing Resilient DevSecOps Pipelines
- Architecting CI/CD workflows to maintain continuity during breaches or system failures
- Best practices for rapid recovery and minimising downtime after security incidents
- Building robustness into DevSecOps processes: redundancy, fail-safes, and automated safeguards
-
16:25
Using Threat Intelligence to Build Resilient and Proactive DevSecOps Pipelines
- Leveraging threat intelligence to proactively protect software and pipelines
- Advanced techniques: adversarial simulation, red teaming, and vulnerability management
- Using insights from real-world attacks to inform CI/CD security policies
- Embedding intelligence into automated pipelines for continuous risk awareness
-
17:00
Close of AppSec & DevSecOps Singapore 2026
Not Found