Building Secure Software: A Practical Guide to SSDLC with examples
This event is free to attend
Free registration is required to attend this event
📅 Date: November 12, 2025, 7:30 PM
📍 Organizer: DEV.BG – Cyber Security User Group
🎙️ Speaker: Radostina Kondakova, Principal Security Engineer @ EBRD
🤝 Supported by: myPOS and EBRD
🔐 About the Event:
In today’s evolving threat landscape, building security into software from the start is no longer optional — it’s essential.
This session offers a hands-on approach to implementing a Secure Software Development Life Cycle (SSDLC), showcasing real-world practices, frameworks, and open-source tools to integrate security seamlessly into development workflows.
Learn how to embed security without slowing down delivery, turning security into an enabler rather than a blocker.
🔎 Agenda:
👉 Personal introduction & overview of EBRD
👉 Choosing the right SSDLC framework
👉 Example SSDLC model
👉 Threat modelling and risk management
👉 Enabling policies and procedures
👉 Understanding SCA, SBOM, and CBOM
👉 Example secure CI/CD pipeline
👉 Open-source tools for developers
👉 Integrating AI into SSDLC practices
👉 Q&A session
🎙️ About the Speaker:
Radostina Kondakova is a Principal Security Engineer at the European Bank for Reconstruction and Development (EBRD), leading the Attack Surface Management team in the bank’s Sofia Tech office.
With over nine years of experience in IT and cybersecurity, she specializes in secure SDLC practices, penetration testing, and automation.
Her career path—from developer to security engineer to cybersecurity manager—has given her a unique perspective on embedding security in every development layer.
Radostina has led SSDLC implementations for a digital bank in the Middle East and consulted for a major Bulgarian telecom on secure development practices.
🎟️ Registration:
The event is free, but pre-registration is required:
👉 Register here
👨💻 User Group:
This event is part of the Cyber Security User Group by DEV.BG, hosting monthly talks and discussions focused on security engineering, governance, and best practices.
Join the community
🔵 Organizer:
DEV.BG – Bulgaria’s specialized IT job board.
Looking for a career in cybersecurity? Check out the latest job openings 👉 here.
