Business Meetup: How to Comply with the Resolution of the Central Bank of RU №3669 – Ensuring Code Analysis and Protection

12.02.2026 14:30 - 20:00 (GMT +5)
EVENT DESCRIPTION

Code Security and DevSecOps in the context of the Decree requirements

Practical Business Meetup is dedicated to fulfilling the requirements of Decree CB RU No. 3669 regarding information security and cybersecurity at all stages of the life cycle of the bank’s information systems and resources.

The event will cover Chapter 21 of Decree CB RU No. 3669, which regulates requirements for the analysis, protection, and monitoring of software code and information systems at all stages of their life cycle—from development to operation.

CONTENT

DevSecOps and code security: practical approaches

The meetup participants will discuss practical approaches to implementing regulatory requirements in DevSecOps processes, including:

  • management of components and software supply chain security (SCA),
  • static code analysis (SAST),
  • dynamic code analysis (DAST),
  • interactive code analysis (IAST),
  • multifactor component identification and change control.

iIT Distribution experts will demonstrate through practical examples how to use Black Duck and SonarSource solutions to manage software security and meet regulatory requirements for code and development process protection.

A separate segment of the event will be devoted to monitoring information systems and resources and the role of a unified event collection and processing gateway in DevSecOps architecture.
It will be discussed how Cribl solution can ensure optimization, enrichment, routing, and data protection for information security, analytics, and AI use cases.

SPEAKER

Expertise in the spotlight

Business Meetup: How to Comply with the Resolution of the Central Bank of RU №3669 – Ensuring Code Analysis and Protection - image 1
Alexey Nayda BDM Black Duck, Cribl, Sonar

The event is held in a closed offline format and is aimed at representatives of the banking and financial sector: CISOs, AppSec and DevSecOps specialists, architects, and those responsible for compliance with regulatory requirements.

The meetup format includes expert presentations, practical implementation scenarios, and live discussion in a professional environment.