Software Integrity

Author Archive

Synopsys Editorial Team

synedt


Posts by Synopsys Editorial Team:

 

Accelerate your agile security strategy

  “In the face of more rapid iterative and agile design and development efforts, the time required becomes even more precious. It’s not hard to understand why even the most well-intentioned manager will make the pragmatic decision to skip the effort, or pay it lip service.” -Gartner Testing tools help meet the challenges Automation is […]

Continue Reading...

Posted in Agile Methodology, Application Security, Featured, Infographic | No Comments »

 

Examining open source security and the road ahead in the 2017 Coverity Scan Report

Coverity Scan’s impact on open source software (OSS) is both extensive and largely unacknowledged. Since its inception, Scan has enabled developers to fix over 600,000 defects across some of the most important projects in open source. As part of that effort, it has also helped improve the maturity of the software development practices of active […]

Continue Reading...

Posted in Application Security, Open Source Security, Static Analysis (SAST) | Comments Off on Examining open source security and the road ahead in the 2017 Coverity Scan Report

 

Eliminate cyber supply chain security vulnerabilities at the point of introduction

Nordic IT Security is the key meeting place for the brave new world of IT security. On November 7, 2017, at the upcoming premier security conference, Synopsys’ Michael White presents an actionable and inspiring talk on how to enhance security measures throughout the software development life cycle (SDLC). What to expect at the Nordic IT […]

Continue Reading...

Posted in Application Security, Open Source Security | Comments Off on Eliminate cyber supply chain security vulnerabilities at the point of introduction

 

Key findings on proactive application security

As you’re probably well aware, application security is a major issue among software developers and users. After all, a breach caused by an overlooked issue, as was the case for Equifax’s recent attack, can impact millions around the globe. The rise of high-profile ransomware and DDoS attacks is causing more and more developers to realize […]

Continue Reading...

Posted in Application Security | Comments Off on Key findings on proactive application security

 

Silver Bullet Podcast celebrates women in cyber security

Over the past year, Synopsys’ Gary McGraw has hosted 12 women making an impact on the security industry in his monthly Silver Bullet Security Podcast. The podcast features in-depth conversations with security gurus. Past guests include technologists, academics, business leaders, and government officials. A year ago, McGraw set out to focus his efforts on finding […]

Continue Reading...

Posted in Application Security | Comments Off on Silver Bullet Podcast celebrates women in cyber security

 

Learn how to customize the OWASP Top 10 to fit your firm

A list of critical web application security vulnerabilities is a necessary risk management tool. Equally true is that each organization has a different set of vulnerabilities plaguing their applications. To complete a trifecta of fundamental truths, crowdsourced lists such as the OWASP Top 10 rarely reflect an individual organization’s priorities. Given all that, many organizations […]

Continue Reading...

Posted in OWASP, Security Risk Assessment, Threat Intelligence, Vulnerability Assessment | Comments Off on Learn how to customize the OWASP Top 10 to fit your firm

 

Fault Injection Podcast: Sammy Migues introduces BSIMM8

Fault Injection is a podcast from Synopsys that digs deep into software quality and security issues. This week, hosts Robert Vamosi, CISSP and security strategist at Synopsys, and Chris Clark, principal security engineer at Synopsys, interview Sammy Migues, principal scientist here at Synopsys, about the new Building Security In Maturity Model (BSIMM) 8 report. You […]

Continue Reading...

Posted in Application Security, Maturity Model (BSIMM) | Comments Off on Fault Injection Podcast: Sammy Migues introduces BSIMM8

 

Webinar: Update your AppSec strategy to run effectively in a DevOps world

DevOps enables you to release features and bug remediation efforts faster than ever before through Agile methodologies, CI/CD processes, and open source tools. While traditional security activities have trouble keeping pace with DevOps, it’s also critical not to let security fall behind. Is security tripping you up? As the DevOps revolution continues to advance, security […]

Continue Reading...

Posted in Agile Methodology, CI/CD, DevOps, Security Training | Comments Off on Webinar: Update your AppSec strategy to run effectively in a DevOps world

 

Fault Injection Podcast: Ken Modeste on the UL CAP program

Fault Injection is a podcast from Synopsys that digs deep into software quality and security issues. This week, hosts Robert Vamosi, CISSP and security strategist at Synopsys, and Chris Clark, principal security engineer at Synopsys, interview Ken Modeste of UL at this year’s codenomi-con 2017, held at the end of July at the House of […]

Continue Reading...

Posted in Application Security | Comments Off on Fault Injection Podcast: Ken Modeste on the UL CAP program

 

Fault Injection Podcast: Chenxi Wang on her Jane Bond Project

Fault Injection is a podcast from Synopsys that digs into software quality and security issues. This week, hosts Robert Vamosi, CISSP and security strategist at Synopsys, and Chris Clark, principal security engineer at Synopsys, interview Chenxi Wang at this year’s codenomi-con 2017, held at the end of July at the House of Blues in Mandalay […]

Continue Reading...

Posted in Application Security, Security Conference or Event | Comments Off on Fault Injection Podcast: Chenxi Wang on her Jane Bond Project