OWASP Austin Chapter Monthly Meeting - August 2026

Schedule

Tue Aug 25 2026 at 11:30 am to 01:00 pm

UTC-05:00
Location

Visa Building 2 | Austin, TX

Advertisement
Chapter Meeting & presentation: "A Deep Dive into OWASP SPVS Through the Lens of the Agentic Secure SDLC" w/ Cameron Walters
About this Event

We are meeting at Visa Campus! The chapter would like for folks to attend personally if possible! Please do not pull an in-person ticket if you are only attending online, we order food for every in-person ticket the Friday before the meeting and we do not want to waste food by over ordering and wasting donated money.


If you would like to register for online access, please see the Meetup


30 minutes of meet-and-greet and OWASP/Chapter information, then ..



Presentation:
"A Deep Dive into OWASP SPVS Through the Lens of the Agentic Secure SDLC"

Application security has twenty years of standards for the code. It has almost nothing for the system that builds and ships it, and that system holds source, secrets, production credentials, and deployment infrastructure. Nothing else in your organization touches all four.

Attackers noticed this first, and agentic development widened the surface again. Agents now write code, open pull requests, review pull requests, and reach infrastructure using tokens scoped once for convenience. We are in the middle of a full evolution with everyone sitting at a different point on the curve.

We have SSDF for practices, SLSA for provenance, SCVS for components, CIS for configuration. The gap is a verification standard organized by pipeline stage, with testable criteria and maturity levels, covering plan through operate. We have ASVS for the application and nothing equivalent for the machine that ships it.

This session walks OWASP SPVS in detail: the five stages, the three maturity levels, how the control set reads in practice, and why it was created, mapped throughout against the agentic secure SDLC.

Speaker:

Cameron Walters is Director of Application Security and Security Engineering, with roughly a decade in software engineering before spending the last seven-plus years building AppSec programs. His focus is security automation, AppSec infrastructure, and pipeline security. He is a co-founder of the OWASP Secure Pipeline Verification Standard (SPVS), a contributing expert in the AI and CRA Center of Excellence at The Purple Book Community, and a technical advisor at WhiteRabbit & Dam Secure.


He co-hosts Coffee, Chaos & ProdSec, a weekly podcast on product security, supply chain, and AI security.

LinkedIn: linkedin.com/in/cameronww7

Coffee, Chaos and ProdSec:


Agenda

🕑: 11:30 AM - 11:55 AM
Room Open and Social Time (Lunch!!!)

Info: Lunch provided by LASCON


🕑: 11:55 AM - 12:05 PM
Chapter Presentation
Host: Kyle Smith
🕑: 12:05 PM - 01:00 PM
A Deep Dive into OWASP SPVS Through the Lens of the Agentic Secure SDLC
Host: Cameron Waters
Advertisement

Where is it happening?

Visa Building 2, 12401 Research Boulevard, Austin, United States

Event Location & Nearby Stays:

Tickets

USD 0.00

Know what’s Happening Next — before everyone else does.
OWASP Austin Chapter
Host or PublisherOWASP Austin Chapter

Ask AI if this event suits you