Discrepancy In Security Beliefs vs. Security Practice

A new study shows a wide discrepancy between the level of security that executives believe their organization has implemented versus the actual amount of security implemented according to the security staff. 
The post Discrepancy In Security Beliefs vs… Continue reading Discrepancy In Security Beliefs vs. Security Practice

Getting IAST Results from DAST Testing

IAST is one of the latest buzzwords in security testing, and now required as part of the NIST SP800-53 Revision 5 security framework. Learn how to get IAST results using your existing DAST testing.
The post Getting IAST Results from DAST Testing appea… Continue reading Getting IAST Results from DAST Testing

Shine Theory / DevOps / Community

A podcast called The Allusionist (hosted by Helen Zaltzman) crossed my path that provided me with a light-bulb moment. The podcast focuses on language and etymology. This particular episode contextualised that focus around a fantastic story with guests… Continue reading Shine Theory / DevOps / Community

More Details on the NIST SP800-53 Revision 5 Finalized Security and Privacy Framework

Now that SP800-53 Revision 5 has been released in its final form, those with systems in the federal government and those enterprises that work with the federal government may be wondering when they need to be in compliance with the new security framewo… Continue reading More Details on the NIST SP800-53 Revision 5 Finalized Security and Privacy Framework

Centralize and Automate your AppSec or Risk Being Buried Alive!

We’re already halfway through the spookiest time of the year, National Cybersecurity Awareness Month! In our first piece,…
The post Centralize and Automate your AppSec or Risk Being Buried Alive! appeared first on ZeroNorth.
The post Centralize and Aut… Continue reading Centralize and Automate your AppSec or Risk Being Buried Alive!

Hottest 11 Cybersecurity Certifications

If you’re not busy during this pandemic and have been wondering how you can brush up on your resume to enhance your cybersecurity credentials, CRN has just the thing for you.  CRN published their list of the 11 hottest Cybersecurity Certifications for … Continue reading Hottest 11 Cybersecurity Certifications

Still Looking For RASP Resources? SANS Has A RASP Report

It turns out the SANS Institute created a report titled, “Runtime Application Self-Protection (RASP), Investigation of the Effectiveness of a RASP Solution in Protecting Known Vulnerable Target Applications” in April of 2019, and covers a lot of useful… Continue reading Still Looking For RASP Resources? SANS Has A RASP Report

The Joy of Secure DevOps Demands More Cooks in the Kitchen

In many ways, the DevOps process looks a lot like cooking for a large dinner party—with very short notice. DevOps requires…
The post The Joy of Secure DevOps Demands More Cooks in the Kitchen appeared first on ZeroNorth.
The post The Joy of Secure DevO… Continue reading The Joy of Secure DevOps Demands More Cooks in the Kitchen