API Days October Bangalore Presentation 2025

teamrapifuzz 1 views 13 slides Oct 10, 2025
Slide 1
Slide 1 of 13
Slide 1
1
Slide 2
2
Slide 3
3
Slide 4
4
Slide 5
5
Slide 6
6
Slide 7
7
Slide 8
8
Slide 9
9
Slide 10
10
Slide 11
11
Slide 12
12
Slide 13
13

About This Presentation

API Days Presentation


Slide Content

Practical Implementation and Automation of APISBOMs

SBOM General inventory of all software components, libraries, packages, and dependencies Covers entire software systems Focus on code components only Used in traditional software supply chain risk management Typical fields: APISBOM SBOM specialized for API Inventory only Includes API metadata like version, owner, endpoints Used for API Security and API Supply Chain V/S API name and version API endpoint list Which components are used in which endpoints API-specific build & release info API Methods Used API security posture and vulnerability mapping Additional fields (on top of SBOM): Component name, version, supplier License type Checksums (hashes) Known vulnerabilities (CVEs)

API version Detailed inventory of API- SBOM Stands for API Software Bill of Materials. All APIs in the application API OEM (Custom / Commercial / Open Source) API Vulnerability API license API Checksum

Visibility & Inventory Central catalog of APIs Versions, dependencies & ownership Security & Risk Management Vulnerability & open-source risk mapping Prioritized API risk assessment Operational Resilience Faster incident response & RCA Supports Zero Trust enforcement Automation & Integration Automated testing & CI/CD security Baseline for API health/SLA Continuous Posture Improvement Living, evolving API inventory Ongoing security posture enhancement API- SBOM Pillars Compliance & Governance Licensing & regulatory tracking Ownership clarity & audit trails

Core SBOM Standards CycloneDX SWID (Software Identification Tags) SPDX   ( Software Package Data Exchange)

API Specific Standards OpenAPI AsyncAPI GraphQL

APISBOM Emerging Concepts API Dependency Graph Cross-Organization API Provenance Tracking Machine-Readable Policy Enforcement Zero-Trust Readiness Metadata Immutable, Signed SBOM Snapshots Version Drift Detection Data Sensitivity & Regulatory Annotation CI/CD Pipeline Integration Runtime API SBOM Generation Security Posture Enrichment

Benefits Challenges V/S Comprehensive Visibility Improved Security Posture Regulatory & License Compliance Faster Incident Response Supports risk prioritization & governance Continuous Maintenance Overhead Tooling & Integration Gaps Complexity of Data Collection Lack of Standardization Organizational Adoption Resistance

Enabling organizations to easily deploy cyber security solutions and enhance their cyber security posture” Vision & Mission What Guides Us.. “ Making Security Simple”

We are product innovators and have four (4) indigenously created cyber security products to address areas of: Application Security Cyber-Resilience Cyber Training Cyber Incident Management Empowering Cyber Resilience

Team Strength 120+ Trusted Since 2 022 Cyber Products 4 About Us

Thank You!
Tags