Session

Fortify Your Web Apps: Unlocking Secure Authentication with PKCE

n today's cloud and SaaS landscape, implementing secure authentication for web applications and APIs is paramount. This session presents a modern approach leveraging Azure Active Directory (Azure AD) and the Proof Key for Code Exchange (PKCE) extension to the OAuth 2.0 standard.
Attendees will learn about a "zero trust" authentication flow that explicitly verifies user identity per session, adhering to principles like least privilege access for enhanced security. The session will cover implementing the authorization code flow with PKCE for secure token acquisition, optimized with token caching and refreshing mechanisms.

By the end, attendees will gain insights into building a seamless, secure authentication experience for their web applications, leveraging Azure's modern cloud identity platform and promoting trust in the digital landscape.

Dipanjan Haldar

Principal Cloud Engineer at Fidelity Investments

Boston, Massachusetts, United States

Actions

Please note that Sessionize is not responsible for the accuracy or validity of the data provided by speakers. If you suspect this profile to be fake or spam, please let us know.

Jump to top