Securing Drupal For Fun And Profit

Experience level: 
Beginner
Session Track: 

Site Building

Learn how to leverage the flexibility of Drupal to deliver experiences in nearly limitless ways. See how you are able to do this—often without code and relying on the ever-expanding universe of contributed modules.

Speaker(s): 

So you're going to deploy an instance of Drupal - how are you going to secure it?  Alternately, how can you best secure an existing deployment of Drupal?

We'll start by exploring a number of platform-independent steps for increasing security.  Some common mistakes made in site deployemnt will be analyzed, and strategies will be identified for avoiding these mistakes.  From there, we'll drill down into security recommendations that are specific to Drupal deployments.  Additionally, we will examine some "easy wins" to help comply with the requirements of specific security and compliance frameworks such as PCI DSS, HIPAA, and FedRAMP.

Attendees will leave this session with concrete tactical recommendations for implementation on their Drupal instances.