Vandana Verma, security architect at IBM India Software Labs and web application security expert, shares her advice on tools, training, and shifting left.
Learn how to combine static application security testing (SAST) and software composition analysis (SCA) to strengthen your software security program.
David Woodhouse at AWS, who maintains the open source OpenConnect VPN client, explains how he integrated Coverity Scan with GitLab CI.
With a software bill of materials (software BOM), you can respond quickly to the security, license, and operational risks that come with open source use.
For sustainable, long-term application security, both developers and information security professionals must embrace their new roles created by DevSecOps.
Smart organizations in the business of building software need to use a mix of application testing tools to ensure their code is high-quality and secure.
A security group should help lift the organization into a positive, proactive attitude and work security into all aspects of development and operations.
The Building Security In Maturity Model (BSIMM) can help you improve your software security program, regardless of industry, size, or application mix.
Open source might be free, but it’s not risk-free. Let’s examine the potential legal cost of open source use associated with license noncompliance.