Posted on

Securing the bigger picture: Lifecycle security maturity

"Securing the bigger picture: Lifecycle security maturity" title with SafeStack mascot image

What came first: security built into your software development lifecycle or security built into the design and implementation of your code?

When we talk about application security, there are two distinct camps emerging — lifecycle security maturity and product security maturity.


Continue reading Securing the bigger picture: Lifecycle security maturity

Posted on

Secure development: Finding and fixing API security vulnerabilities

2021 has been a big year of growth for us. We’ve expanded our team, as well as the number of countries our customers are in.

We never lost sight of our mission though, to bring accessible, inclusive, industry-aligned security skills to all our customers and partners.

And what a great way to wrap up the end of 2021 — by releasing our newest SafeStack Academy Secure Development course: Finding and Fixing API Security Vulnerabilities.

Continue reading Secure development: Finding and fixing API security vulnerabilities

Posted on

Secure development: Turning insecure design around

As the dust settles on the release of the latest version of the OWASP Top 10, our team has been talking about the inclusion of insecure design on the list. Specifically, we’ve been thinking about what that means for everyone involved in the delivery of software products.

Continue reading Secure development: Turning insecure design around

Posted on

Secure development: Top ten security training topics for your team

At SafeStack Academy we believe weaving cyber security throughout the entire software development life cycle is essential.

When we teach secure development, our goal is to help development teams build a set of vital skills that supports them to collaborate on security early and often, making it a shared responsibility that everyone has a solid understanding of.

Continue reading Secure development: Top ten security training topics for your team

Posted on

20 years of OWASP: Beyond syntax

This is a big week for those of us in the application security industry. One of our iconic foundation organisations, the Open Web Application Security Project (OWASP), reaches its 20th anniversary and that’s a time for us all to celebrate.

Continue reading 20 years of OWASP: Beyond syntax

Posted on

Microservice architectures: it starts with secure design

We’re excited to launch our newest SafeStack Academy Secure Development course today: Designing Secure Microservice Architectures.

Continue reading Microservice architectures: it starts with secure design