BEGIN:VCALENDAR
VERSION:2.0
PRODID:-//pretalx//pretalx.com//bsidesluxembourg-2026//talk//ZQWC7Y
BEGIN:VTIMEZONE
TZID:CET
BEGIN:STANDARD
DTSTART:20001029T040000
RRULE:FREQ=YEARLY;BYDAY=-1SU;BYMONTH=10
TZNAME:CET
TZOFFSETFROM:+0200
TZOFFSETTO:+0100
END:STANDARD
BEGIN:DAYLIGHT
DTSTART:20000326T030000
RRULE:FREQ=YEARLY;BYDAY=-1SU;BYMONTH=3
TZNAME:CEST
TZOFFSETFROM:+0100
TZOFFSETTO:+0200
END:DAYLIGHT
END:VTIMEZONE
BEGIN:VEVENT
UID:pretalx-bsidesluxembourg-2026-ZQWC7Y@pretalx.com
DTSTART;TZID=CET:20260508T133000
DTEND;TZID=CET:20260508T141000
DESCRIPTION:Most organizations run Software Composition Analysis\, yet very
  few actually use the results effectively. Alerts pile up\, developers ign
 ore findings\, and security teams drown in noise.\n\nThis talk tells the s
 tory of building an in-house SCA platform from scratch using open-source t
 ooling\, designed to scale across large organizations while focusing on wh
 at actually matters. We’ll explore how to normalize results\, prioritize
  vulnerabilities based on real risk\, and integrate SCA into CI/CD in a wa
 y developers don’t hate.\n\nBacked by real production usage and a live d
 emo\, this session focuses on practical techniques\, not theory\, to turn 
 SCA from a checkbox into something teams can act on. Attendees will leave 
 with ideas\, patterns\, and open-source approaches they can apply immediat
 ely.
DTSTAMP:20260412T024944Z
LOCATION:Workshops and Stage - Gernsback (C1.05.02)
SUMMARY:Building vs. Buying – A Tale of Developing an In-House SCA Tool -
  Diogo Lemos
URL:https://pretalx.com/bsidesluxembourg-2026/talk/ZQWC7Y/
END:VEVENT
END:VCALENDAR
