Cyber Defense eMagazine August 2019
Cyber Defense eMagazine August Edition for 2019 #CDM #CYBERDEFENSEMAG @CyberDefenseMag by @Miliefsky a world-renowned cybersecurity expert and the Publisher of Cyber Defense Magazine as part of the Cyber Defense Media Group
Cyber Defense eMagazine August Edition for 2019 #CDM #CYBERDEFENSEMAG @CyberDefenseMag by @Miliefsky a world-renowned cybersecurity expert and the Publisher of Cyber Defense Magazine as part of the Cyber Defense Media Group
Create successful ePaper yourself
Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.
The Top 4 Application Security <strong>Defense</strong>s You Didn’t Know You<br />
Needed<br />
By Jonathan DiVincenzo, Head of Product, Signal Sciences<br />
Application security isn’t a young buck anymore. The Open Web Application Security Project (OWASP) is<br />
15 years old. But while application security is well into its teenage years, vulnerabilities like SQL injection<br />
and XSS still dominate the rankings of the OWASP Top Ten. This is concerning. But what’s more concerning<br />
is that while attack vectors and techniques are still largely the same, software development models have<br />
completely shifted, as with the proliferation of microservices architectures, for example.<br />
One major change in software development is the delivery cadence of an application. Instead of a mainly<br />
static application that changes only a handful of times per year, deploys now happen continuous. Further,<br />
most software development teams have adopted DevOps and have operational insight (via dashboards and<br />
metrics) and operational control (via chatops) without root access.<br />
75