The Euro STAR conference 2014 Dublin November 6
The Euro. STAR conference 2014 Dublin November 6, 2020 Alin Groza Test Engineer Haufe Group Td. T #28 Timisoara
About Euro. STAR conferences - Euro. STAR stands for European Software Testing Analysis & Review. - It is one of the largest gathering of European software testing professionals. - The program consists of tutorials and presentations. - It takes place every year since 1993. - Previous locations: Göteborg, Amsterdam, Manchester, London, Stockholm, Copenhagen, Brussels, München, Köln, Barcelona, Hague. Td. T #28 - Euro. STAR conference 2014 - Dublin 2
The way to Euro. STAR conference - In October 2014 Tabăra de Testare organized the contest called “Tabăra de Testare is camping at Euro. STAR !” - I have entered the contest and I have won the prize: a 3 day conference ticket to Euro. STAR ! What have I done: - I have written an article called “Td. T – meeting people and sharing ideas”. - After a draw that took place the article was chosen the winner of the contest. - The company I work for has taken care of accommodation and transport expenses. Td. T #28 - Euro. STAR conference 2014 - Dublin 3
Euro. STAR conference 2014 - Dublin • Location: Dublin, Ireland. • Venue: The Convention Center Dublin. • Date: 24 – 27 November 2014. • Participants: 1000. Td. T #28 - Euro. STAR conference 2014 - Dublin 4
The programme • 1 ½ day tutorials. • 2 ½ days conference presentations. • Expo area for companies. • Testing lab area. Td. T #28 - Euro. STAR conference 2014 - Dublin 5
Main topics 1. The Internet of things 2. Gamification - How to engage and get help from users of a test framework 3. Testing Traps to Avoid in Agile Testing 4. What ? Why? Who ? How ? Of Application Security testing 5. Diversity in your team – embrace it or lose the best thing you have! 6. Changing Mindsets - Learn, Test, Lead [by Example] Td. T #28 - Euro. STAR conference 2014 - Dublin 6
1. The Internet of things Andy Stanford-Clark, Distinguished Engineer, IBM UK http: //conference. eurostarsoftwaretesting. com/event/2014/keynote-1 -the-internet-ofthings-its-coming/ Td. T #28 - Euro. STAR conference 2014 - Dublin 7
1. The Internet of things Andy Stanford-Clark, Distinguished Engineer, IBM UK � Open protocols and data representations � One-to-many data distribution models � Scalability and availability � Device management � Security, security � Mature IT solutions � Cloud hosting � Tools for automated testing at scale Td. T #28 - Euro. STAR conference 2014 - Dublin 8
from users of a test framework Kristoffer Nordtröm, Test Developer, Northem Test Consulting AB Sweden Gamification: a game technique in non-game situations to motivate people and drive behavior Problem: needed the help and domain expertise of the users of the test framework Solution: decision to turn contributing into a game Results: After 8 months 122 awarded user points http: //conference. eurostarsoftwaretesting. com/event/2014/gamification-how-to-engage-and-get-help-from-users-of-a-test-framework/ Td. T #28 - Euro. STAR conference 2014 - Dublin 9
from users of a test framework Purpose & Culture - What is the purpose of this: improve communication / more help in general / more competitive company ? - Be aware of the surrounding culture within your context. Extrinsic vs. Intrinsic Have fun Td. T #28 - Euro. STAR conference 2014 - Dublin 10
3. Testing Traps to Avoid in Agile Testing Janet Gregory, Dragon. Fire Inc. Canada http: //conference. eurostarsoftwaretesting. com/event/2014/testing-traps-to-avoid-in-agile-teams/ 1. Waiting for Tuesday’s build − Not keeping up with developers =>Include testing tasks in the velocity =>Get your developers used to immediate feedback 3. Maintaining a “Quality Police” mindset 2. Testers aren’t “really” part of − Ignoring the whole team approach the team − Communication is through the defect − No input into requirements tracking system − Testers test ‘only’ what the − Developers use testers as a safety net developers code ÞDevelop relationships with − Testers don’t actively participate programmers ÞGive feedback early and often ÞNew mindset: What can we do to help ÞUse “the power of 3” deliver the software successfully? Td. T #28 - Euro. STAR conference 2014 - Dublin 11
3. Testing Traps to Avoid in Agile Testing Make the Automation Maintainable • Tests pass all the time • Don’t Repeat Yourself (DRY) • Tests reveal intent – create good names 4. Trying to test everything manually • Keep tests small with a clear purpose • Manage your tests – be able to find them − Not taking advantage of automation Janet Gregory, Dragon. Fire Inc. Canada − Spending time retesting features already tested ÞInclude automation time in your estimates ÞChose tools that encourage collaboration Þ Understand the power & risks of automation Þ Automation does not exclude the need for exploratory testing 5. Forgetting the big picture − Not delivering the right thing − Testing only individual stories ÞTest data to reflect real world (use examples and exploratory test) Þ Understand the story before coding starts ÞThink system impacts Td. T #28 - Euro. STAR conference 2014 - Dublin 12
Security testing Declan O’Riordan Testing IT UK 84% of attacks target the applications 90% of sites are vulnerable to application attacks scanners only find 40% of Web Application vulnerabilities http: //conference. eurostarsoftwaretesting. com/event/2014/testing-traps-to-avoid-in-agile-teams / Who should be doing what? • Security experts are experts in security, not your system! • We are the experts in our applications. • We can build security into the whole SDLC. • We need to understand the subject. • Identify what can be done now and what requires experts. • We need to make everyone aware of application security. Td. T #28 - Euro. STAR conference 2014 - Dublin 13 Top 10 security vulnerabilities (OWASP) [Open Web Application Security Project] 1. Injection 2. Broken Authentication and Session Management 3. Cross-Site Scripting (XSS) 4. Insecure Direct Object References 5. Security Misconfiguration 6. Sensitive Data Exposure 7. Missing Function Level Access Control 8. Cross-Site Request Forgery (CSRF) 9. Using Components with Known Vulnerabilities 10. Un-validated Redirects and Forwards. Declan O’Riordan wrote the articles • an Application Security Testing Procedure • Application Security Development Guidelines that can be found here: http: //www. testandverification. com/solutions/security/reducingthe-top-ten-most-critical-web-application-security-flaws/
5. Diversity in your team – embrace it or lose the best thing you have! Julie Gardiner, Redmind AB, Sweden The tester's style analysis • Based on a set of questions => 4 styles Keywords for “Pragmatic” style LIKES strategic / goals positive results /brief practical efficiency tasks DISLIKES indecision vagueness time-wasting unproductiveness Keywords for “Analysing” style LIKES accuracy attention to detail proof standards reliable all alternatives DISLIKES new / change untested / risks brief / speed letting go Keywords for “Pioneer” style LIKES new /ideas change openness results /efficiency involving others risks Keywords for “Facilitating” style LIKES networking positive team oriented consensus/sharing building bridges status quo http: //conference. eurostarsoftwaretesting. com/event/2014/diversity-in-your-team-embrace-it-or-lose-the-best-thing-you-have/ Td. T #28 - Euro. STAR conference 2014 - Dublin 14 DISLIKES standards detail ‘norm’ paper--‐work DISLIKES pressure / deadlines confrontation isolation dictated
5. Diversity in your team – embrace it or lose the best thing you have! How it relates to other models: Belbin Myers - Briggs Td. T #28 - Euro. STAR conference 2014 - Dublin 15
6. Changing Mindsets - Learn, Test, Lead [by Example] Alexandru Rotaru, Altom Consulting Romania Current testing mindset – Anybody can do testing. – Testers are failed developers. – You need to code to be a tester. – Testing should be cheap. – Testers are not needed, everything can be automated. The new testing mindset – Testing is a technical investigation that requires specific skills. – There are no Best Practices - the value of any practice depends on its context. – Good software testing is a challenging intellectual process. -> Continuous learning is required! http: //conference. eurostarsoftwaretesting. com/event/2014/changing-mindsets-learn-test-lead-by-example/ Td. T #28 - Euro. STAR conference 2014 - Dublin 16
6. Changing Mindsets - Learn, Test, Lead [by Example] How do we pass our mindset and knowledge to our colleagues? – In 2011 Tabara de Testare started in Bucharest – A national community with chapters in the 4 main IT cities – Find local testers that want to take ownership of the local chapter development – Spread the new approach within the testers in Romania Go beyond the office walls • Promote the new mindset • Workshops in cooperation with other communities • Annual Testing Camp • Monthly meetups with testers and non-testers • Events with international well known testers (James Bach, Maaret Pyhajarvi, Simon Benet, Michael Bolton) Td. T #28 - Euro. STAR conference 2014 - Dublin 17
How to go to the conference ? - The conference takes place once per year - In 2015 it will take place in Maastricht, The Netherlands (2 -5 November) -Register and book a ticket -There are 1, 2 or 3 days conference tickets and 1 day tutorial tickets (e. g. 1775 € 3 days) - Participate in contests organized by Tabăra de Testare and get a free conference ticket ! • Take business cards with you. • Be ready to get new ideas, share experience, find different visions and meet new people ! Td. T #28 - Euro. STAR conference 2014 - Dublin 18
Additional information - Conference website: http: //conference. eurostarsoftwaretesting. com/ - Presentation and various documents in the Files area on: http: //www. meetup. com/Tabara-de-Testare-Timisoara/ - Photos and videos: https: //www. facebook. com/Tabara. de. Testare Td. T #28 - Euro. STAR conference 2014 - Dublin 19
Gratefully ! A big THANK YOU to Tabăra de Testare and Haufe ! Td. T #28 - Euro. STAR conference 2014 - Dublin 20
For any further questions don’t hesitate to contact me: alin-ioan. groza@haufe-lexware. com Td. T #28 - Euro. STAR conference 2014 - Dublin 21
- Slides: 21