2026-05-07 –, Workshops and Stage - Design Space (C1.05.12)
Modern infrastructures are increasingly complex, distributed, and opaque — making it difficult for security teams to answer a simple question: what exactly are we protecting?
System cartography provides an essential foundation for cybersecurity governance. It allows organizations to understand their architecture, dependencies, and data flows — the key to effective risk management, incident response, and compliance.
This talk introduces these concepts through Mercator an open-source tool designed to map and visualize complex infrastructures. Mercator transforms data from existing sources (CMDB, inventories, scans) into interactive diagrams that help bridge the gap between technical visibility and strategic security management.
Rather than a technical demo, this 40-minute session offers a conceptual overview of how cartography supports risk management, incident response, and regulatory compliance, turning architecture into a living asset for cybersecurity.
Hi there, I'm Didier, a technology and information security enthusiast. I started my career as an information security Ninja, defending information systems against cyber threats using my Jedi skills. However, I also have another side to me that comes out at night, that of a benevolent hacker. I love using my skills to support the values of open source and firmly believe in them.
I believe that technology can be used to improve people's lives, but this can only be done if we work together and share our knowledge. That's why I'm also a strong advocate of collaboration and openness in the tech industry.
May the source code be with you!