Six Months Left For NIST SP800-53 Compliance

Six months ago, NIST (National Institute of Standards and Technology) released a new version of their security and privacy framework, which had its last update seven years ago.  The new framework included requirements for RASP and IAST.
The post Six … Continue reading Six Months Left For NIST SP800-53 Compliance

Proving Zero Day Detection Capabilities

In today’s world of increasing zero day attacks and the increasing success of zero day attacks, the ability to detect and protect applications and workloads from zero day attacks is more important than ever. Find out about a recent test K2 ran on zero… Continue reading Proving Zero Day Detection Capabilities

280 Days to Fix a Vulnerability in Production

IBM’s 2020 report on the Cost of a Data Breach found that on average it takes 280 days to fix a vulnerability in production once a breach is discovered.  If you’ve got an application in production you may be wondering how you can protect the applicatio… Continue reading 280 Days to Fix a Vulnerability in Production

Defining Application Security

If you’re new to Application Security, you may be confused by the different terminology and where exactly Application Security fits relative to all the different phases of application development and during runtime of applications.
The post Defining Ap… Continue reading Defining Application Security

Most Security Pros Think a WAF is High Maintenance

Web Application Firewalls (WAFs) are a traditional application security tool used by many organizations in their arsenal against the cyber attacks inflicted on a continual basis on their infrastructure.  When they were introduced, they were seen as the… Continue reading Most Security Pros Think a WAF is High Maintenance

A New Book to Learn About Application Security

If you’re just starting out as an application developer or you’re a seasoned developer looking for a good review guide, there’s a new book from Wiley titled “Alice and Bob Learn Application Security” to assist with learning about the fundamentals of ap… Continue reading A New Book to Learn About Application Security

Three Application Security Fundamentals Every Developer Should Know

TechBeacon recently published an article on the Three Application Security Fundamentals Every Developer Should Know. The article bases its recommendations for developers on research that came out of a recent USENIX Security conference for developers an… Continue reading Three Application Security Fundamentals Every Developer Should Know

The State of Application Security: What the Statistics Tell Us

CSO Online ran an article last August covering some important application security statistics from a study run by the Enterprise Security Group (ESG).  The article titled The State of Application Security: What the Statistics Tell Us, covered an intere… Continue reading The State of Application Security: What the Statistics Tell Us

Getting Started with Web Application Security? Best Practices: A Developer’s Guide

If you are a developer of web applications and looking for a guide to help you with security best practices, you are in luck.  Back in October of 2020, Security Intelligence ran an article titled Web Application Security Best Practices: A Developer’s G… Continue reading Getting Started with Web Application Security? Best Practices: A Developer’s Guide

Top 50 Application Security Pros to Follow on Twitter

If you are like many in our online connected world, you get some of your news from Twitter, both personally and professionally.  For those that are security professionals, that have been looking to enhance your twitter feed with additional application … Continue reading Top 50 Application Security Pros to Follow on Twitter