shift left - Tagged - Security Boulevard The Home of the Security Bloggers Network Tue, 26 Nov 2024 15:24:43 +0000 en-US hourly 1 https://wordpress.org/?v=6.7.1 https://securityboulevard.com/wp-content/uploads/2021/10/android-chrome-256x256-1-32x32.png shift left - Tagged - Security Boulevard 32 32 133346385 The Elephant in AppSec Talks Highlight: Shifting Left Doesn’t Mean Anything Anymore https://securityboulevard.com/2024/11/the-elephant-in-appsec-talks-highlight-shifting-left-doesnt-mean-anything-anymore/ https://securityboulevard.com/2024/11/the-elephant-in-appsec-talks-highlight-shifting-left-doesnt-mean-anything-anymore/#respond Tue, 26 Nov 2024 15:24:43 +0000 http://securityboulevard.com/?guid=7493c6691b1c90a2154843b3ec4a208a Discover key highlights from Tanya Janca's talk at The Elephant in AppSec Conference on shifting security to be present throughout the entire Software Development Lifecycle.

The post The Elephant in AppSec Talks Highlight: Shifting Left Doesn’t Mean Anything Anymore appeared first on Security Boulevard.

]]>
https://securityboulevard.com/2024/11/the-elephant-in-appsec-talks-highlight-shifting-left-doesnt-mean-anything-anymore/feed/ 0 2037631
The Elephant in AppSec Conference Panel Highlight: Why scaling AppSec is harder than you think https://securityboulevard.com/2024/11/the-elephant-in-appsec-conference-panel-highlight-why-scaling-appsec-is-harder-than-you-think/ https://securityboulevard.com/2024/11/the-elephant-in-appsec-conference-panel-highlight-why-scaling-appsec-is-harder-than-you-think/#respond Fri, 22 Nov 2024 13:00:20 +0000 http://securityboulevard.com/?guid=e5ebd670a65cb031baea61d30124f40c Key takeaways from highly experienced industry experts on how to scale application security from the panel in Track 1 of The Elephant in AppSec Conference.

The post The Elephant in AppSec Conference Panel Highlight: Why scaling AppSec is harder than you think appeared first on Security Boulevard.

]]>
https://securityboulevard.com/2024/11/the-elephant-in-appsec-conference-panel-highlight-why-scaling-appsec-is-harder-than-you-think/feed/ 0 2037357
Securing the Software Supply Chain: Checkmarx One Expands its Offerings https://securityboulevard.com/2024/11/securing-the-software-supply-chain-checkmarx-one-expands-its-offerings/ Wed, 20 Nov 2024 18:56:52 +0000 https://securityboulevard.com/?p=2037071 supply, chain, Blue Yonder, secure, Checkmarx Abnormal Security cyberattack supply chain cybersecurity

The software supply chain is under siege. Threat actors increasingly exploit weaknesses in code repositories, dependencies and mismanaged secrets to infiltrate and disrupt software development processes. In response, organizations are turning to robust strategies to safeguard their supply chains, including tools like SCA scanning, AI and container security, secrets detection and repository health monitoring. Checkmarx’s..

The post Securing the Software Supply Chain: Checkmarx One Expands its Offerings appeared first on Security Boulevard.

]]>
2037071
The Three Pillars of Shift-Left API Security https://securityboulevard.com/2024/10/the-three-pillars-of-shift-left-api-security/ Fri, 25 Oct 2024 15:53:48 +0000 https://securityboulevard.com/?p=2034295 Traceable AI, API security, APIs, Wallarm, Akamai, APIs, API security, threat modeling, ICS, VPNs, APIs, risk, left-of-bang, threats, vulnerabilities, XDR, zero-trust, attack, XDR API Skyhawk Security modeling threat CosmicStrand insider threats Threat Modeling - Secure Coding - Cybersecurity - Security

When it comes to proactive API security, there are three critical pillars: API Discovery, API Security Testing, and API Oversight.

The post The Three Pillars of Shift-Left API Security appeared first on Security Boulevard.

]]>
2034295
Why ‘Shift-Left’ Isn’t Good Enough? Our conversation with Chris Romeo https://securityboulevard.com/2024/09/why-shift-left-isnt-good-enough-our-conversation-with-chris-romeo/ Tue, 10 Sep 2024 10:40:03 +0000 http://securityboulevard.com/?guid=976b57c48c6fb09cbac0230ccfc9578f This blog is based on our conversation with Chris Romeo, founder of Devici, an AI-infused collaborative threat modeling tool. It explores how "shift-left" may be a useful tool in the security toolkit, but it’s far from the only one.

The post Why ‘Shift-Left’ Isn’t Good Enough? Our conversation with Chris Romeo appeared first on Security Boulevard.

]]>
2030100
APIs, Web Applications Under Siege as Attack Surface Expands https://securityboulevard.com/2024/08/apis-web-applications-under-siege-as-attack-surface-expands/ Tue, 06 Aug 2024 08:34:58 +0000 https://securityboulevard.com/?p=2026684 pen testing, Salt Security, API, APIs, attacks, testing, PTaaS, API security, API, cloud, audits, testing, API security vulnerabilities testing BRc4 Akamai security pentesting ThreatX red team pentesting API APIs Penetration Testing

Attackers are increasingly targeting web applications and APIs, with a nearly 50% year-over-year growth in web attacks, driven by the increased adoption of these technologies, which significantly expanded organizational attack surfaces, according to an Akamai report.

The post APIs, Web Applications Under Siege as Attack Surface Expands appeared first on Security Boulevard.

]]>
2026684
How Are You Protecting Your Company from API Security Breaches? https://securityboulevard.com/webinars/how-are-you-protecting-your-company-from-api-security-breaches/ Wed, 01 May 2024 15:00:00 +0000 https://securityboulevard.com/?post_type=tribe_events&p=2014222

71% of Internet Traffic* are API Calls, You Can’t Afford Not To Automate and Shift-Left Your API Testing A recent report* on the State of API Security in 2024 found that 71% of all Internet traffic was API calls. Other studies have found similar numbers. With APl security breaches the fastest-growing cyber attack vector, the..

The post How Are You Protecting Your Company from API Security Breaches? appeared first on Security Boulevard.

]]>
2014222
DAST is dead, why Business Logic Security Testing takes center stage https://securityboulevard.com/2024/04/dast-is-dead-why-business-logic-security-testing-takes-center-stage/ Thu, 18 Apr 2024 12:00:47 +0000 http://securityboulevard.com/?guid=4faff0183aecc343af2965ba43b0d397 DAST is dead, discover why business logic security testing takes center stage.

The post DAST is dead, why Business Logic Security Testing takes center stage appeared first on Security Boulevard.

]]>
2015429
The Evolution of ‘Shift Everywhere’ https://securityboulevard.com/webinars/the-evolution-of-shift-everywhere/ Thu, 21 Mar 2024 17:00:00 +0000 https://securityboulevard.com/?post_type=tribe_events&p=2007892 The Evolution of 'Shift Everywhere'

A few years ago, “shift left” was expanded to include a broader testing philosophy in which designs and other development artifacts were also tested as soon as they were ready—this was the beginning of “shift everywhere.” Today, firms are embracing the culture of shift everywhere in the software development pipeline, updating policy and strategy to..

The post The Evolution of ‘Shift Everywhere’ appeared first on Security Boulevard.

]]>
2007892
DevSecOps: A beginner’s guide https://securityboulevard.com/2023/12/devsecops-a-beginners-guide/ Mon, 04 Dec 2023 14:21:40 +0000 https://blog.sonatype.com/devsecops-a-beginners-guide DevSecOps: A beginner's guide

Creating software can be at equal times challenging and rewarding.  Developers face the unrelenting demand to deliver feature-rich applications and value to their users and customers. Open source components, which comprise up to 90% of modern applications, play a crucial role in empowering organizations to bring innovations to market. The software development process parallels a traditional manufacturing supply chain, with code repositories serving as digital warehouses for software components and applications that comprise a software supply chain.

The post DevSecOps: A beginner’s guide appeared first on Security Boulevard.

]]>
2001025