[Webinars] CI/CD optimization and automated testing, open source audit reports

Learn how our CloudBees partnership helps users optimize CI/CD and automate AppSec Testing, and steps to take after you get an open source audit report.
The post [Webinars] CI/CD optimization and automated testing, open source audit reports appeared f… Continue reading [Webinars] CI/CD optimization and automated testing, open source audit reports

Top open source licenses and legal risk for developers

Learn about the top open source licenses used by developers, including the 20 most popular open source licenses, and their legal risk categories.
The post Top open source licenses and legal risk for developers appeared first on Software Integrity Blog… Continue reading Top open source licenses and legal risk for developers

Ask the Experts: How can software engineers support security efforts?

We’ve gathered some expert opinions about how software engineers can contribute to, improve, and even lead their organization’s software security program.
The post Ask the Experts: How can software engineers support security efforts? appea… Continue reading Ask the Experts: How can software engineers support security efforts?

[Webinars] NVD data feed alternatives and software security metrics

Learn about a better, faster alternative to NVD vulnerability data feeds and how to measure software security effectiveness and use metrics to drive change.
The post [Webinars] NVD data feed alternatives and software security metrics appeared first on… Continue reading [Webinars] NVD data feed alternatives and software security metrics

Software Testing Tools Checklist: Do your tools empower your developers?

Developers need software testing tools that are accurate and easy to integrate. Evaluate your tools with this 7-step Software Testing Tools Checklist.
The post Software Testing Tools Checklist: Do your tools empower your developers? appeared first on … Continue reading Software Testing Tools Checklist: Do your tools empower your developers?

Coverity release ties in well to the latest MITRE CWE Top 25

MITRE’s 2019 CWE Top 25 list contains many code quality issues that can result in security vulnerabilities. Static analysis can help you mitigate them.
The post Coverity release ties in well to the latest MITRE CWE Top 25 appeared first on Softw… Continue reading Coverity release ties in well to the latest MITRE CWE Top 25

Synopsys consultant wins a leadership award from SC Media

We’re thrilled that Andrew van der Stock, senior principal consultant at Synopsys, has won an SC Media Reboot Leadership Award for Outstanding Educators.
The post Synopsys consultant wins a leadership award from SC Media appeared first on Softwa… Continue reading Synopsys consultant wins a leadership award from SC Media

BSIMM10: A decade of research on software security activities

BSIMM10 compiles a decade of research on software security activities in real-life firms into a guide for maturing your software security initiative.
The post BSIMM10: A decade of research on software security activities appeared first on Software Int… Continue reading BSIMM10: A decade of research on software security activities

[Webinar] M&A tech due diligence from the seller’s perspective

In technology M&A transactions, what do buyers need, and what can sellers do to prepare? We discuss how to prepare for the M&A tech due diligence process.
The post [Webinar] M&A tech due diligence from the seller’s perspective appear… Continue reading [Webinar] M&A tech due diligence from the seller’s perspective