Recorded sessions covering threat modeling, API security, secure development and more.

This page collects the available screen recordings from SECDES webinars and project sessions. If you are looking for slide decks, whitepapers or downloadable materials, head to the repository.

Latest recording

Getting the most out of your pentest

December 12, 2025 · Mathias Selleslach

A practical webinar for SaaS teams that want to prepare better for a pentest, collaborate effectively with pentesting companies and turn findings into concrete product improvements.

Open recording

What you will find here

Technical webinars

Short, focused sessions on specific secure software development topics.

Applied guidance

Content aimed at helping software teams make practical choices in architecture, testing and security process design.

Supporting materials

Most talks also have related slides or downloads on the repository page.

Browse the available sessions.

The archive below brings together recordings from 2024 and 2025. Each session focuses on a specific area of secure software design or application security practice.

Recording September 11, 2025

Introduction to SAMM

Aram Hovsepyan

An accessible introduction to OWASP SAMM and the role it can play in measuring and improving secure software development maturity.

Watch recording
Recording June 13, 2025

NIS 2, DORA, and the likes

Koen Vranckaert and Eyup Kun

A broad overview of emerging EU cybersecurity regulation, with particular attention to what it means for smaller software companies and product teams.

Watch recording
Recording May 15, 2025

OpenAPI as a Security Tool

Philippe De Ryck

A focused session on using OpenAPI specifications not only for documentation, but also for security analysis, testing and runtime protection.

Watch recording
Recording April 24, 2025

An Overview of Threat Modeling Tools

Tatiana Galibus and Laurens Sion

An exploration of practical tooling for threat modeling, including expectations, trade-offs and an introduction to the SPARTA tool from DistriNet.

Watch recording
Recording October 18, 2024

Keeping pace with OAuth's evolving security practices

Pieter Philippaerts

A practical look at how OAuth security guidance has evolved and what application teams should know to keep API authorization implementations up to date.

Watch recording
Recording October 10, 2024

Leveraging Product Management to Shift Left in Small SaaS Teams

Nick Boucart

A session connecting product management, application security and customer expectations, with a strong focus on how smaller SaaS teams can prioritize security earlier.

Watch recording
Recording September 13, 2024

An Introduction to Threat Modeling

Koen Yskout

A foundational introduction to threat modeling, where it fits into the software development lifecycle and why it matters for secure software engineering.

Watch recording

SecDes

Security by design, translated into practical guidance for software teams.

© 2024-2026 SECDES. All rights reserved.

Project

Led by Sirris and DistriNet, with support from VLAIO. The project focuses on helping smaller software companies turn secure software development into repeatable practice.

View repository