
Milan Starčević
I am a Principal Consultant, Architect and Software Developer with over 10 years of professional experience in various industries. Together with my teams, I created software for insurance, banking, telecom, transport & logistics, aviation, industrial production, medical and consumer industries.
I believe in cross-cultural and interdisciplinary collaboration and have worked in distributed teams worldwide. Projects ranged from discoveries and prototypes with a focused team, to scaled enterprise projects with multiple teams using SAFe and lasting many years in all phases of maturity.
My professional areas are architecture, web development, cybersecurity, team leadership and teaching.
Talks
Making Your Architecture a Reality: From Design to Implementation
Every software architect has experienced that sinking feeling: watching their carefully crafted architecture gradually erode as implementation diverges from design. Beautiful diagrams and thoughtful decisions become buried under the pressures of delivery timelines and growing technical debt. But what if you could ensure your architectural vision stays intact without becoming a bottleneck? In this session, we'll explore how modern architecture governance can empower teams to maintain architectural integrity without sacrificing project priorities. You'll learn how automated fitness functions can validate architectural compliance in real-time, and discover tools that have helped teams across different technology ecosystems enforce architectural boundaries effectively. Whether you're dealing with a greenfield project, maintaining a complex legacy system, or re-factoring into a new architecture, you'll leave this session with actionable knowledge to help your team build software that aligns with your architectural vision – not just on day one, but throughout your project's lifetime.
Get to know OAuth intimately
OAuth2 and OpenID Connect are omnipresent in today's systems. Yet how many developers have read the RFC docu-ments defining these protocols and their corollary specifications, like RFC 7519 which defines JWT? Well, who has the time! That’s why I did this for you and want to give you an understanding of how these various concepts build on top of each other and explain things like Scopes vs Claims, JWT vs Bearer or SSO vs OIDC. We'll also answer how to select the correct OIDC Flow and what are the common pitfalls when using libraries to implement OpenID Connect.