GrammaTech CodeSonar SAST to help customers ‘shift left’ and develop more secure software

GrammaTech announced a new version of its CodeSonar SAST (static application security testing) product that helps developers build safer and more secure code without disrupting workflows. CodeSonar 6.0 features visualization and analysis enhancements, … Continue reading GrammaTech CodeSonar SAST to help customers ‘shift left’ and develop more secure software

Cloud Security Alliance Publishes New Paper, The Six Pillars of DevSecOps: Automation

Document provides practical advice for integrating automated security into software development lifecycle   SEATTLE  – July 7, 2020 – The Cloud Security Alliance (CSA), the world’s leading organization dedicated to defining standards, certifications an… Continue reading Cloud Security Alliance Publishes New Paper, The Six Pillars of DevSecOps: Automation

Accenture, Splunk and UTC join SAFECode, Veracode rejoins the organization

The Software Assurance Forum for Excellence in Code (SAFECode) announced that Accenture, Splunk and United Technologies joined SAFECode as new Associate Members, and Veracode rejoined the organization as an Associate Member. SAFECode is a non-profit, g… Continue reading Accenture, Splunk and UTC join SAFECode, Veracode rejoins the organization

Secure software development practices for developers, organizations and technology users

SAFECode announced today the publication of the Fundamental Practices for Secure Software Development: Essential Elements of a Secure Development Life Cycle Program (Third Edition). The authoritative best practices guide was written by SAFECode members… Continue reading Secure software development practices for developers, organizations and technology users

Software security assurance: Everybody’s invited

As more and more things in this world of ours run on software, software security assurance – i.e. confidence that software is free from vulnerabilities (either intentional or not) and functions as intended – is becoming more important than ever. The Software Assurance Forum for Excellence in Code (SAFECode) is a non-profit organization that aims to increase that confidence and the trust users have in information and communications technology products and services. SAFECode’s work to … More Continue reading Software security assurance: Everybody’s invited

Steve Lipner, SAFECode – Paul’s Security Weekly #513

Steve Lipner is the Executive Director of SAFECode, a non-profit organization dedicated to increasing trust in ICT products and services. He retired in 2015 as Partner Director of Software Security at Microsoft, where he was the creator and long-time l… Continue reading Steve Lipner, SAFECode – Paul’s Security Weekly #513