
Developers behaving badly: Why holistic AppSec is key
Mature organizations recognize that their AppSec approach has to keep pace with modern development teams. Here's why.

Freelance writer. Ericka Chickowski's award-winning writing on business and technology have appeared in dozens of trade and consumer magazines, including Entrepreneur, Consumers Digest, Channel Insider, CIO Insight, Dark Reading, DevOps.com and InformationWeek. She's made it her specialty to explain in plain English how technology trends affect real people.
find Ericka Chickowski on:

Mature organizations recognize that their AppSec approach has to keep pace with modern development teams. Here's why.

Ingrained development patterns and legacy testing tools are holdovers from a reactive era of AppSec. Here's how how to move software security forward.

Don't neutralize CI/CD business gains by failing to account for risk. Here are best practices to ensure that your software development pipeline is secure.

Application security veterans Mark Curphey and John Viega went on a CISO listening tour. Here's what they learned.

Doing just vulnerability management and piecemeal app sec testing are equivalent to paying only the interest on mounting security technical debt. Where does your organization stand?

GUAC-ALYTICs will use a new algorithmic engine to model risk across open-source software supply chain interdependencies. Here's what you need to know.

In addition to the extensive list of components in today's software, AI relies on open-source AI models and training data. What could possibly go wrong?

Hackers are having a field day targeting developers with supply chain attacks, which open doors to other compromises. Here's why — and what to do about it.

Your security operations team should be planning how to stay ahead of these emerging AI risks.
Get your 14-day free trial of Spectra Assure for Software Supply Chain Security
Get Free TrialMore about Spectra Assure Free Trial