Insights from experts shaping secure development
Access expert content on secure coding, AI governance, and software risk management.

New York Secure Code Showdown
SCW, OWASP and AWS invite you to improve your skills at the New York Secure Code Showdown on Thursday, February 19, 2026, from 11 am to 4 pm EST. This tournament challenges you to identify and fix vulnerabilities across your choice of major software languages. It’s a great way to master secure coding foundations while competing against your peers!

Product Security Virtual Summit
Secure Code Warrior is proud to partner with Cycode for this year’s Product Security Virtual Summit on January 28th. We’re diving into the future of secure software in the AI era and showing how to turn security alerts into developer superpowers.

Phishapalooza
SCW is honored to attend the 18th annual Phishapalooza to support the American Cancer Society. We look forward to connecting with the local cybersecurity community for a day of ice fishing and fundraising in the Twin Cities. Join us as we partner with GuidePoint Security to help drive impactful donations for this great cause.

OWASP BeNeLux Days
Visit our booth at OWASP BeNeLux Days happening in Mechelen, Belgium! This event brings you technical talks from experts in security, DevOps, and cloud, alongside hands-on training in top security areas. You'll also hear from industry leaders through keynote speeches, explore the latest security technology at vendor booths, and dive into activities like Capture The Flag and security tool training.

CISO Inspired Summit UK
This November, join us at the CISO Inspired Summit UK 2025! Connect with fellow cybersecurity leaders to tackle rising threats, strengthen your digital defenses, and build robust strategies for business resilience in today's rapidly evolving cyber landscape.
.avif)
Threat Modeling with AI: Turning Every Developer into a Threat Modeler
Walk away better equipped to help developers combine threat modeling ideas and techniques with the AI tools they're already using to strengthen security, improve collaboration, and build more resilient software from the start.

CISO Inspired Summit US
Join us at the CISO Inspired Summit New York 2025! This is your chance to connect with cybersecurity leaders, dive into proactive defense strategies, and build resilient security frameworks to confidently navigate today's evolving digital landscape.

OWASP Global AppSec 2025 USA
Come visit us at our Expo Space at The Marriott Marquis in downtown Washington, DC! You'll have the chance to connect with us and over 800 security experts who share a passion for all things security.

Finding Your Developers
Curriculum and Onboarding Manager Katelynd Trinidad walks through different methods for locating code contributors at your organization to help ensure they receive secure code training.
.avif)
SecTor
Come visit our booth #336 at SecTor 2025 in Toronto at the Metro Toronto Convention Centre! Us along with other security professionals will be sharing our latest research and techniques on underground threats and corporate defenses.
.avif)
The Power of Brand in AppSec DevSec DevSecOps (What's in an Acronym!?)
In AppSec, lasting program impact demands more than just tech—it needs a strong brand. A powerful identity ensures your initiatives resonate and drive sustained engagement within your developer community.

OWASP New Zealand Day
We are excited to attend OWASP New Zealand Day on the University of Auckland's campus! This conference is all about web and application security, with a mission to help Kiwi developers build more secure applications by focusing on robust architecture and development techniques. Be sure to visit our booth and connect with us to discuss our Developer Management Platform!

Melbourne AppSec & DevSecOps Summit
Get ready for an exciting day of insights and networking at the Melbourne AppSec & DevSecOps Summit! We can't wait to connect with security and development leaders like you, share ideas, and explore the latest trends in application security and DevSecOps. While you're there, let's schedule a brief meeting to discuss how our solutions can enhance your developer management strategies.

BSides Bournemouth
BSides Bournemouth is a community-driven cybersecurity conference set to take place on August 16, at the Royal Bath Hotel in Bournemouth, UK. Come join us and other great sponsors like JP Morgan Chase for a day of insightful talks, networking and hands-on activities.

The Future of Cyber Security Virtual Conference
The Future Of Cyber Security Conference series aims to help businesses to stay one step ahead of attackers through a number of insightful sessions not available at any other security conference. Can’t wait to virtually meet with you!
.avif)
New Risk Category on the OWASP Top Ten: Expecting the Unexpected
OWASP Top 10 2025 adds Mishandling of Exceptional Conditions at #10. Mitigate risks via "fail closed" logic, global error handlers, and strict input validation.

OWASP Top 10: 2025 – What’s New and How Secure Code Warrior Helps You Stay Aligned
Discover what changed in the OWASP Top 10: 2025 and how Secure Code Warrior makes the transition easy with updated Quests, Courses, and developer insights.

Adopt Agentic AI in Software Development FAST! (Spoiler: You Probably Shouldn't.)
Is the cybersecurity world moving too fast on agentic AI? The future of AI security is here, and it's time for experts to move from reflection to reality.

Kamer van Koophandel Sets the Standard for Developer-Driven Security at Scale
Kamer van Koophandel shares how it embedded secure coding into everyday development through role-based certifications, Trust Score benchmarking, and a culture of shared security ownership.
Going for Gold: Soaring Secure Code Standards at Paysafe
See how Paysafe's partnership with Secure Code Warrior led to a 45% boost in developer productivity and a major reduction in code vulnerabilities.

DigitalOcean Decreases Security Debt with Secure Code Warrior
DigitalOcean's use of Secure Code Warrior training has significantly reduced security debt, allowing teams to focus more on innovation and productivity. The improved security has strengthened their product quality and competitive edge. Looking ahead, the SCW Trust Score will help them further enhance security practices and continue driving innovation.

SD Times: AI-Assisted Development Multiplies Human Error: What’s Your AI Governance and Risk Management Strategy?
According to a recent report from Gartner, the rampant use of shadow AI and rogue automation is further fueling the proliferation of AI vulnerabilities. Gartner notes that 32% of IT workers using generative AI tools at work say they keep them hidden from cybersecurity teams. Combined with low-code/no-code platforms and vibe coding practices, the AI copilots are greatly expanding the enterprise attack surface.

Cybersecurity Tribe: What Separates Real AI Governance From Policy Theater
For this article, we asked a central question for security and risk leaders: "What differentiates a policy that genuinely mitigates enterprise risk from one that exists primarily to demonstrate that the organization has acknowledged AI risk?"
Trust Agent:AI - Secure and scale AI-Drive development
AI is writing code. Who’s governing it? With up to 50% of AI-generated code containing security weaknesses, managing AI risk is critical. Discover how SCW's Trust Agent: AI provides the real-time visibility, proactive governance, and targeted upskilling needed to scale AI-driven development securely.

The Power of OpenText Application Security + Secure Code Warrior
OpenText Application Security and Secure Code Warrior combine vulnerability detection with AI Software Governance and developer capability. Together, they help organizations reduce risk, strengthen secure coding practices, and confidently adopt AI-driven development.

Secure Code Warrior corporate overview
Secure Code Warrior is an AI Software Governance platform designed to enable organizations to safely adopt AI-driven development by bridging the gap between development velocity and enterprise security. The platform addresses the "Visibility Gap," where security teams often lack insights into shadow AI coding tools and the origins of production code.
.avif)






