01.08.2019 Views

Cyber Defense eMagazine August 2019

Cyber Defense eMagazine August Edition for 2019 #CDM #CYBERDEFENSEMAG @CyberDefenseMag by @Miliefsky a world-renowned cybersecurity expert and the Publisher of Cyber Defense Magazine as part of the Cyber Defense Media Group

Cyber Defense eMagazine August Edition for 2019 #CDM #CYBERDEFENSEMAG @CyberDefenseMag by @Miliefsky a world-renowned cybersecurity expert and the Publisher of Cyber Defense Magazine as part of the Cyber Defense Media Group

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

The Top 4 Application Security <strong>Defense</strong>s You Didn’t Know You<br />

Needed<br />

By Jonathan DiVincenzo, Head of Product, Signal Sciences<br />

Application security isn’t a young buck anymore. The Open Web Application Security Project (OWASP) is<br />

15 years old. But while application security is well into its teenage years, vulnerabilities like SQL injection<br />

and XSS still dominate the rankings of the OWASP Top Ten. This is concerning. But what’s more concerning<br />

is that while attack vectors and techniques are still largely the same, software development models have<br />

completely shifted, as with the proliferation of microservices architectures, for example.<br />

One major change in software development is the delivery cadence of an application. Instead of a mainly<br />

static application that changes only a handful of times per year, deploys now happen continuous. Further,<br />

most software development teams have adopted DevOps and have operational insight (via dashboards and<br />

metrics) and operational control (via chatops) without root access.<br />

75

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!