Week Four Featuring Research From Forrester: See Why Secure DevOps is the Future of Speed

In Forrester’s recent “The State Of Application Security, 2020” report, analysts confirm what many security professionals…
The post Week Four Featuring Research From Forrester: See Why Secure DevOps is the Future of Speed appear… Continue reading Week Four Featuring Research From Forrester: See Why Secure DevOps is the Future of Speed

Week Three Featuring Research From Forrester: How to Make Open Source Software Work For You

Open source software (OSS) continues to grow in popularity and remains a key part of application development. The advantages…
The post Week Three Featuring Research From Forrester: How to Make Open Source Software Work For You appeared first on … Continue reading Week Three Featuring Research From Forrester: How to Make Open Source Software Work For You

Spotlight on the Cold, Hard Facts of Application Security

From security threats to compliance regulations to recognizing what businesses and the overall economy are going to…
The post Spotlight on the Cold, Hard Facts of Application Security appeared first on ZeroNorth.
The post Spotlight on the Cold, H… Continue reading Spotlight on the Cold, Hard Facts of Application Security

Improving and Automating Threat Intelligence for Better Cybersecurity

Devo is a sponsor of TechSpective Cybersecurity is challenging. It is a daunting exercise to protect a complex hybrid cloud infrastructure from a rapidly evolving and expanding threat landscape. Organizations invest significant time, money and resource… Continue reading Improving and Automating Threat Intelligence for Better Cybersecurity

Why You Need a Software Bill of Materials More Than Ever

Imagine that a new vulnerability in lodash was just announced. Applications using the npm package are being exploited through large scale automated DoS attacks. You need to act quickly to understand if your organization’s systems are at risk… Continue reading Why You Need a Software Bill of Materials More Than Ever

Nexus Lifecycle Now Integrates with Red Hat Clair to Secure Containers Across the SDLC

Developers are continuing to leverage containers to reliably move software applications between environments, making them an integral part of every DevOps pipeline. In fact, according to Sonatype’s 2019 State of the Software Supply Chain Rep… Continue reading Nexus Lifecycle Now Integrates with Red Hat Clair to Secure Containers Across the SDLC

What Toyota Unlocked Decades Ago Drives Software Supply Chain Management Today

What secrets did Toyota unlock decades ago that drive the success of today’s software supply chain?
Sonatype’s Matt Howard explained during a chat with Dave Bittner on an episode of The CyberWire Daily podcast.
The post What Toyota Unl… Continue reading What Toyota Unlocked Decades Ago Drives Software Supply Chain Management Today

Inner Circle Podcast Episode 020 – Ivan Novikov Chats about Fuzzing in Testing

An application is no longer a product. In the world of cloud, and DevOps, and containers, an application is a process. There is no distinct beginning or end to development. The application is a living thing that cycles through a feedback loop–con… Continue reading Inner Circle Podcast Episode 020 – Ivan Novikov Chats about Fuzzing in Testing

Security Strategies for DevOps, APIs, Containers and Microservices

More and more IT professionals see DevSecOps, a practice which integrates security measures earlier in the development process to improve production code quality, as a mainstay for future application development. Much of this stems from the growing tre… Continue reading Security Strategies for DevOps, APIs, Containers and Microservices