Conference
|
Nov 5, 2026
OWASP Global AppSec USA
Register
Conference
|
Oct 29, 2026
OWASP LASCON
Register
Conference
|
Sep 24, 2026
Sommet Gartner sur la Sécurité et la Gestion des Risques 2026
Register
Blog
|
Aug 24, 2026
Enabler 7: Developer Recognition
read more
Blog
|
Jul 29, 2026
Named in the Gartner® Hype Cycle™ for Application Security 2026
read more
Blog
|
Jul 21, 2026
Are you a CISO or Engineering Leader worried about the Security and Cost of LLM code generation?
read more
Case Study
|
Jan 6, 2026
Kamer van Koophandel Sets the Standard for Developer-Driven Security at Scale
read more
Case Study
|
Oct 8, 2025
Going for Gold: Soaring Secure Code Standards at Paysafe
read more
Case Study
|
Aug 15, 2024
DigitalOcean Decreases Security Debt with Secure Code Warrior
read more
News Article
|
Aug 27, 2026
Forbes: A New Frontier: NSA Proposes “Security By Design” Considerations For AI Enablement
read more
Media Release
|
Aug 21, 2026
Techpartner.news: Secure Code Warrior introduces framework to govern AI use in software development
read more
News Article
|
Aug 19, 2026
DevOps.com: Are LLMs Equally Good (or Bad) at Building Secure Software?
read more
eBook
|
Jul 21, 2026
Which AI Model Codes Most Securely?
read more
One Pager
|
Jul 7, 2026
Citizen AI by Secure Code Warrior
read more
Whitepaper
|
Jun 23, 2026
Understand how AI is transforming software development—and how security must evolve with it.
read more
Resource library

Insights from experts shaping secure development

Access expert content on secure coding, AI governance, and software risk management.

Filters
clear
Showing 0 of 100
By Category
By Role
By Product
No items found.
Button Text
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
Webinar
events-webinars
January 11, 2024
March 20, 2023

Pourquoi le SBOM est-il important pour se préparer au Cyber Resilience Act ?

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
March 28, 2022

Comment un grand prestataire de santé a transformé sa culture de sécurité grâce à une approche axée sur les développeurs

Rejoignez ce webinar pour écouter Jeff Williams, cofondateur et CTO chez Contrast Security, et Matias Madou, cofondateur et CTO de Secure Code Warrior, nous guider à travers une conversation avec un grand prestataire de santé qui partage son expérience sur la transformation de sa culture.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
July 6, 2020

Systèmes embarqués et autonomisation de votre équipe

L'Internet des objets, le contrôle et la gestion automatisés des systèmes de production ne sont que quelques éléments stimulant le développement des systèmes embarqués. Mais alors que nous dépendons de plus en plus des logiciels embarqués, quels sont les impacts des vulnérabilités de sécurité et comment les atténuer ?

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
January 18, 2021

Au-delà de la conformité : Conseils pour offrir une sécurité des applications captivante

Vos équipes de développement considèrent-elles la formation à la sécurité des applications comme une simple formalité administrative ? Souhaitez-vous qu'elles s'engagent davantage dans la cybersécurité et en prennent la responsabilité ? Cette session couvre des conseils pour créer un programme de formation auquel les développeurs participeront spontanément !

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
October 8, 2020

Meilleures pratiques pour obtenir un excellent rapport SOC 2

Il peut parfois sembler extrêmement impressionnant d'aborder le projet d'un rapport SOC. C'est pourquoi nous nous sommes associés à des experts du secteur pour discuter de leurs meilleurs conseils lors de la recherche d'un rapport SOC 2.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
March 17, 2021

Sommet Exécutif des CISO 2021 HMG Live! Silicon Valley

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
July 14, 2021

Webinar : De DevOps à DevSecOps : fournir un développement de qualité et sécurisé dès le départ

Nos experts discuteront des considérations clés pour la mise en œuvre de la formation à la sécurité et de la sécurité des applications dans le SDLC, de la manière d'engager les développeurs grâce à l'apprentissage ludique et d'intégrer les tests de sécurité sans temps d'arrêt ni coûts exorbitants.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
November 8, 2021

Analyse approfondie des didacticiels dans les cours

Découvrez comment nos nouvelles activités de formation immersives et pratiques Walkthrough & Missions augmentent l'engagement des développeurs et renforcent progressivement leurs compétences grâce à une approche d'apprentissage échafaudée éprouvée.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
March 23, 2021

La montée en compétences, le maillon manquant pour combler le fossé de sécurité en AppSec

Écoutez Peter Robinson, responsable de la sécurité chez Zip, et Jaap Singh, cofondateur de Secure Code Warrior et formateur AppSec, pour une discussion enrichissante sur les raisons pour lesquelles le renforcement des compétences en cybersécurité au sein du personnel est essentiel pour combler le déficit de sécurité.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
March 20, 2023

Le ROI de la sécurité axée sur les développeurs

Tout le monde souhaite un bon retour sur investissement lorsqu'il s'agit d'investir dans sa pile technologique ou dans des programmes de formation supplémentaires, mais en matière de sécurité, il faut jouer sur le long terme au-delà d'un simple calcul de ROI. Découvrez comment l'investissement dans la sécurité axée sur les développeurs permet non seulement d'économiser sur le coût des violations coûteuses, la perte de productivité et la dette technique accumulée, mais crée également une stratégie proactive et rentable pour garder une longueur d'avance sur le paysage des menaces actuel.

Watch on demand
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
August 3, 2023

La voie vers les champions de la sécurité

Comment Workday a utilisé l'apprentissage sécurisé agile pour former ses développeurs.

Watch on demand
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
May 24, 2023
May 23, 2023

Humain, processus et technologie

Écoutez notre entretien avec Vis Chirravuri pour découvrir de première main comment il a développé les piliers humains, de processus et technologiques pour son programme de formation au code sécurisé

Watch on demand
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
April 18, 2023
April 17, 2023

Groupe d'Utilisateurs Secure Code Warrior APAC

Bienvenue au Groupe d'Utilisateurs SCW, une communauté pour échanger avec d'autres administrateurs et utilisateurs de SCW afin de découvrir comment ils gèrent leurs programmes de sécurité axés sur les développeurs. Profitez de conseils pratiques et posez toutes vos questions à l'équipe produit !

Watch on demand
This is some text inside of a div block.
No items found.
No items found.
Blog
blog-posts
July 25, 2023
July 25, 2023

Du code sorti de la cage : pourquoi les développeurs sécurisés peuvent expédier sans limites

Il semble surprenant que la plupart des développeurs qui travaillent sur du code qui alimente des infrastructures critiques, des automobiles, des technologies médicales, etc., le fassent sans avoir préalablement vérifié leurs prouesses en matière de sécurité. D'un autre côté, pourquoi les développeurs experts en sécurité, qui ont prouvé à plusieurs reprises qu'ils savaient comment créer des objets en toute sécurité, doivent-ils faire la queue avec tous les autres acteurs des pipelines de développement de plus en plus lents à cause de toutes les barrières de sécurité ?

Learn More
No items found.
No items found.
July 25, 2023
Blog
blog-posts
July 24, 2023
July 24, 2023

Le retour sur investissement d'une plateforme d'apprentissage agile

Le coût de la correction des vulnérabilités du code et de la dette technique est élevé et continue de réduire la productivité des équipes de développement logiciel. Découvrez comment la mise en œuvre d'une plateforme d'apprentissage agile pour le code sécurisé peut former plus efficacement les développeurs aux techniques de codage sécurisé afin de corriger les vulnérabilités plus rapidement et plus tôt dans le SDLC et de les prévenir dès le départ, afin de réduire considérablement les coûts. Ce blog explique comment réfléchir à l'impact financier et au retour sur investissement d'une plateforme d'apprentissage agile.

Learn More
No items found.
No items found.
July 24, 2023
Blog
blog-posts
July 13, 2023
July 13, 2023

Relever la barre en matière de codage sécurisé : intégrer l'apprentissage agile aux entreprises prêtes pour l'avenir

Nous avons annoncé la clôture de notre cycle de financement de série C, après avoir collecté 50 millions de dollars américains pour la prochaine phase de notre mission : aider davantage d'organisations pionnières à exploiter la puissance de leur cohorte de développement pour contrecarrer les vulnérabilités courantes.

Learn More
No items found.
No items found.
July 13, 2023
Blog
blog-posts
July 13, 2023
July 13, 2023

I guess this is growing up: Coming of age with CISA’s Secure-by-Design Guidelines

The recently released National Cybersecurity Strategy signals the need for a seismic cultural shift for most companies, with the most glaring recommendation coming in the form of security accountability falling primarily on software vendors. This is a positive step, though it is sure to cause teething problems, especially as many organizations struggle to accurately assess their security maturity across the board, particularly among the development cohort.

Learn More
No items found.
No items found.
July 13, 2023
Blog
blog-posts
July 13, 2023
July 13, 2023

Comment convaincre les développeurs grâce à l'apprentissage agile pour un code sécurisé

Découvrez comment une plateforme d'apprentissage agile pour le code sécurisé peut être intégrée aux flux de travail et aux outils des développeurs, et commencez à créer une culture d'apprentissage du code sécurisé.

Learn More
No items found.
No items found.
July 13, 2023
Blog
blog-posts
June 30, 2023
June 30, 2023

La norme PCI-DSS 4.0 sera disponible plus tôt que vous ne le pensez, et c'est l'occasion d'améliorer la cyberrésilience de votre organisation

Plus tôt cette année, le Conseil des normes de sécurité PCI a dévoilé la version 4.0 de sa norme de sécurité des données de l'industrie des cartes de paiement (PCI DSS). Les entreprises n'auront pas besoin d'être entièrement conformes à la version 4.0 avant mars 2025, mais cette mise à jour est la plus transformatrice à ce jour et obligera la plupart des entreprises à évaluer (et probablement à mettre à niveau) des processus de sécurité complexes et des éléments de leur infrastructure technologique. Cela s'ajoute à la mise en œuvre d'une formation de sensibilisation à la sécurité basée sur les rôles et d'une formation régulière au codage sécurisé pour les développeurs.

Learn More
No items found.
No items found.
June 30, 2023
Blog
blog-posts
June 22, 2023
June 22, 2023

De la formation à l'apprentissage agile : comment une plateforme d'apprentissage agile pour le code sécurisé révolutionne votre approche de la sécurisation des logiciels

Découvrez comment une plateforme d'apprentissage agile pour un code sécurisé permet d'améliorer les compétences des développeurs, de réduire les risques et de réduire la dette technique au fil du temps en commençant à gauche dans le SDLC.

Learn More
No items found.
No items found.
June 22, 2023
Blog
blog-posts
June 1, 2023
June 1, 2023

Repenser les logiciels dans la hiérarchie organisationnelle

En aidant à définir les responsabilités de nos applications et logiciels au sein d'une hiérarchie stricte, et en appliquant ces politiques avec le moins de privilèges possible, nous pouvons nous assurer que nos applications et logiciels survivent et prospèrent malgré le paysage de menaces auquel ils sont confrontés.

Learn More
No items found.
No items found.
June 1, 2023
Blog
blog-posts
May 19, 2023
May 19, 2023

Protection proactive : tirer parti de la stratégie nationale de cybersécurité pour une prévention avancée des menaces

La stratégie nationale de cybersécurité de la CISA représente notre meilleure chance d'améliorer les normes logicielles à tous les niveaux et, enfin, d'inaugurer une nouvelle ère de développeurs compétents en matière de sécurité.

Learn More
No items found.
No items found.
May 19, 2023
Blog
blog-posts
April 19, 2023
April 19, 2023

Un examen plus approfondi de la vulnérabilité MvcRequestMatcher Spring

Le 20 mars 2023, Spring Security Advisories a publié un article de blog faisant référence à une vulnérabilité découverte en interne, CVE-2023-20860. Aucune information détaillée n'a été divulguée, sauf qu'il s'agissait d'un problème de contrôle d'accès concernant l'utilisation de « MvcMatchers ». Les développeurs de Spring ont résolu le problème et une mise à jour de version est conseillée. La sécurité étant au cœur de nos préoccupations chez Secure Code Warrior, nous avons décidé d'approfondir cette vulnérabilité de MvcRequestMatchers et de déterminer où se situe le problème principal.

Learn More
No items found.
No items found.
April 19, 2023
Blog
blog-posts
April 14, 2023
April 14, 2023

Pieter Danhieux, PDG et cofondateur de Secure Code Warrior : « Tout le monde doit comprendre et accepter le rôle qu'il joue en matière de cybersécurité »

Questions-réponses sur CyberNews avec Pieter Danhieux, PDG et cofondateur de Secure Code Warrior.

Learn More
No items found.
No items found.
April 14, 2023
Blog
blog-posts
March 27, 2023
March 27, 2023

La clé pour accélérer la productivité et réduire les coûts dans le SDLC

L'une des plus grandes lacunes du cycle de vie du développement logiciel est le manque de temps dont disposent les développeurs pour apprendre à sécuriser leur code dès le début. Les développeurs perdent d'innombrables heures à retravailler et à corriger, ce qui se traduit par des millions de dollars en coûts d'opportunité manqués. Découvrez comment un codage rapide et sécurisé peut contribuer à combler ces lacunes et à accélérer la productivité.

Learn More
No items found.
No items found.
March 27, 2023
Blog
blog-posts
March 14, 2023
March 14, 2023

Nouveautés de Secure Code Warrior : directives des cours, gestion de la participation et nouveaux contenus

Nouveauté de Secure Code Warrior : découvrez de nouvelles méthodes de gestion des cours et explorez du contenu supplémentaire.

Learn More
No items found.
No items found.
March 14, 2023
Blog
blog-posts
March 2, 2023
March 2, 2023

La malveillance dans le métaverse : combattre les cybermenaces connues sur une nouvelle frontière

L'avènement du métaverse, le chouchou numérique du moment, ajoute une nouvelle surface d'attaque à la fois pour les vulnérabilités au niveau du code et pour l'ingénierie sociale. Et nous ne sommes tout simplement pas prêts à nous battre sur ce nouveau terrain de jeu où règne la fumée et les miroirs.

Learn More
No items found.
No items found.
March 2, 2023
Blog
blog-posts
February 15, 2023
February 15, 2023

Atténuer la dette technique grâce à une sécurité pilotée par les développeurs

Le coût de la résolution du code non sécurisé et de la dette technique qui en résulte est l'un des principaux obstacles auxquels la technologie est confrontée aujourd'hui. Découvrez comment la mise en œuvre d'un programme de formation au code sécurisé évolutif permet de réduire la dette technique en corrigeant les mauvais modèles de codage et en détectant les vulnérabilités dès le début du cycle de développement logiciel.

Learn More
No items found.
No items found.
February 15, 2023
Blog
blog-posts
February 10, 2023
February 10, 2023

Comment les développeurs définissent-ils le « codage sécurisé » ?

La perception de ce qui constitue un acte de codage sécurisé est sujette à débat. Selon une étude récente menée en collaboration avec Evans Data, ce sentiment a été révélé noir sur blanc. L'enquête State of Developer-Driven Security 2022 explore les principales informations et expériences de 1 200 développeurs actifs, mettant en lumière leurs attitudes et leurs défis dans le domaine de la sécurité.

Learn More
No items found.
No items found.
February 10, 2023
Blog
blog-posts
January 31, 2023
January 31, 2023

Coding Labs: Hands-on secure code for Developers

Learn how Coding Labs is like a personal trainer for developers- utilizing interactive, hands-on modules and intuitive feedback within a convenient in-browser IDE to help developers go from learning to doing faster than ever before.

Learn More
No items found.
No items found.
January 31, 2023
Blog
blog-posts
January 27, 2023
January 27, 2023

Secure Code Warrior fête ses 8 ans : tous à bord de la fusée

Cette semaine, nous célébrons officiellement les huit ans de Secure Code Warrior. D'une part, cela représente 350 fois la durée de la mission Apollo 11, et l'équivalent de 45 000 parties de football, soit 5 696 parties jouées à Super Mario Odyssey jusqu'à la fin. D'autre part, c'est juste un trentième de la durée de vie d'une tortue géante (250 ans, si vous vous demandez). Dans le monde d'une start-up à forte croissance, cela représente un parcours plein de rebondissements, de leçons et de réalisations, dont beaucoup étaient inimaginables lorsque nous avons rédigé notre plan d'affaires pour la première fois.

Learn More
No items found.
No items found.
January 27, 2023
Blog
blog-posts
December 14, 2022
December 14, 2022

Bilan de l'année 2022 : points forts, nouvelles innovations et ressources pour vous aider à tirer le meilleur parti de Secure Code Warrior

Chez Secure Code Warrior, nous innovons constamment pour aider les développeurs et les organisations à acquérir les compétences nécessaires pour relever les défis de sécurité en constante évolution d'aujourd'hui. Nous avons compilé les principales fonctionnalités et mises à jour de notre plateforme, ainsi que les ressources et les directives publiées cette année, afin d'aider votre organisation à sécuriser vos logiciels grâce à une sécurité pilotée par les développeurs au début du cycle de développement logiciel.

Learn More
No items found.
No items found.
December 14, 2022
Blog
blog-posts
December 8, 2022
December 8, 2022

Le retour sur investissement de la sécurité pilotée par les développeurs

Tout le monde souhaite obtenir un bon retour sur investissement lorsqu'il s'agit d'investir dans sa technologie ou dans des programmes de formation supplémentaires, mais en matière de sécurité, il faut jouer un long jeu qui va au-delà du simple calcul du retour sur investissement. Découvrez comment l'investissement dans la sécurité pilotée par les développeurs permettra non seulement de réduire les dépenses liées aux violations coûteuses, à la perte de productivité et à l'accumulation de dettes technologiques, mais aussi de créer une stratégie proactive et rentable pour garder une longueur d'avance sur le paysage des menaces actuel.

Learn More
No items found.
No items found.
December 8, 2022
Blog
blog-posts
November 24, 2022
November 24, 2022

Mise en place d'une approche cohérente de la sécurité dirigée par les développeurs

En réponse à des failles de sécurité majeures, telles que la campagne SolarWinds, qui a utilisé un processus de mise à jour logicielle pour infecter plus de 18 000 utilisateurs du célèbre logiciel de gestion Orion, dont de nombreuses grandes entreprises et agences gouvernementales, des efforts de sécurité plus efficaces dirigés par les développeurs sont de plus en plus sollicités. Les organisations de toutes tailles commencent à remettre en question leur « chaîne d'approvisionnement logicielle » et exigent que les développeurs qui élaborent leurs logiciels aient des compétences et des connaissances en matière de sécurité vérifiées.

Learn More
No items found.
No items found.
November 24, 2022
Blog
blog-posts
November 23, 2022
November 23, 2022

Intégrations SCW : réduisez le temps moyen de correction grâce au micro-apprentissage

Tout le monde connaît l'importance d'une technologie robuste. Lorsqu'il s'agit de détecter et de corriger les vulnérabilités dans le code, réduire le temps moyen de correction et utiliser des solutions fiables et robustes est l'objectif des intégrations de Secure Code Warrior. L'intégration de moments de micro-apprentissage dans les flux de travail des développeurs est la clé d'un meilleur apprentissage et d'une remédiation plus rapide.

Learn More
No items found.
No items found.
November 23, 2022
Blog
blog-posts
November 10, 2022
November 10, 2022

Déplacez-vous vers la gauche (et atteignez la conformité) grâce à des compétences de codage sécurisé répétables

De nos jours, presque toutes les équipes de développeurs proposent une forme ou une autre de formation à la conformité, que ce soit dans le cadre d'un processus de certification initial utilisé pour garantir qu'une entreprise respecte les limites des cadres industriels ou des réglementations gouvernementales, ou dans le cadre d'une exigence ou d'une révision annuelle. Il s'agit d'une étape importante, car si une organisation ne parvient pas à satisfaire aux exigences de conformité de base, ses employés ne pourront pas s'acquitter de leurs tâches de manière réaliste.

Learn More
No items found.
No items found.
November 10, 2022
Blog
blog-posts
November 3, 2022
November 3, 2022

De mauvais modèles de codage peuvent entraîner de graves problèmes de sécurité... alors pourquoi les encourager ?

Les développeurs n'auront pas d'impact positif sur la réduction des vulnérabilités sans une compréhension fondamentale de leur fonctionnement, de leur dangerosité, de leurs causes et des modèles de conception ou de codage qui les corrigent dans un contexte logique dans leur monde. Une approche échafaudée permet à des couches de connaissances de donner une image complète de ce que signifie coder en toute sécurité, défendre une base de code et se présenter comme un développeur soucieux de la sécurité.

Learn More
No items found.
No items found.
November 3, 2022
Blog
blog-posts
October 24, 2022
October 24, 2022

Secure Code Warrior reconnu par Gartner dans le classement Cool Vendors in Software Engineering : Enhancing Developer Productivity

L'importance des compétences des développeurs en matière de sécurité est soulignée dans le rapport Gartner Cool Vendors in Software Engineering 2022. En savoir plus et obtenir le rapport complet.

Learn More
No items found.
No items found.
October 24, 2022
Blog
blog-posts
October 20, 2022
October 20, 2022

Définition du code sécurisé

Les développeurs qui créent les logiciels, les applications et les programmes qui stimulent les activités numériques sont devenus la pierre angulaire de nombreuses organisations. La plupart des entreprises modernes ne seraient pas en mesure de fonctionner (de manière rentable) sans applications et programmes compétitifs, ou sans un accès 24 heures sur 24 à leurs sites Web et à d'autres infrastructures.

Learn More
No items found.
No items found.
October 20, 2022
Blog
blog-posts
October 3, 2022
October 3, 2022

Comprendre le bogue de traversée de chemin dans le module tarfile de Python

Récemment, une équipe de chercheurs en sécurité a annoncé la découverte d'un bogue vieux de quinze ans dans la fonctionnalité d'extraction de fichiers tar de Python. La vulnérabilité a été révélée pour la première fois en 2007 et identifiée sous le nom CVE-2007-4559. Une note a été ajoutée à la documentation officielle de Python, mais le bogue lui-même n'a pas été corrigé.

Learn More
No items found.
No items found.
October 3, 2022
Blog
blog-posts
September 22, 2022
September 22, 2022

Nouveautés de SCW : laboratoires de codage, intégrations LMS et bien plus

Nouveauté chez Secure Code Warrior : suivez une formation pratique pour les développeurs avec Coding Labs, intégrez votre programme de formation au code sécurisé à un LMS, et bien plus encore.

Learn More
No items found.
No items found.
September 22, 2022
Blog
blog-posts
September 21, 2022
September 21, 2022

Les informations d'identification codées en dur peuvent présenter des risques de sécurité

Apprenez-en davantage sur les risques associés aux informations d'identification codées en dur et à l'ingénierie sociale en discutant du récent incident de sécurité d'Uber et des raisons pour lesquelles il est si important pour les entreprises de tourner à gauche et de s'assurer que leurs développeurs sont au courant des meilleures pratiques en matière de codage sécurisé.

Learn More
No items found.
No items found.
September 21, 2022
Blog
blog-posts
September 9, 2022
September 9, 2022

La prévention à l'ère de la surface d'attaque sans fin

Le développement de logiciels n'est plus une mince affaire, et lorsque nous prenons en compte tous les aspects des risques liés aux logiciels, qu'il s'agisse du cloud, des systèmes intégrés dans les appareils et les véhicules, de notre infrastructure critique, sans oublier les API qui connectent tout cela, la surface d'attaque est sans frontières et incontrôlable.

Learn More
No items found.
No items found.
September 9, 2022
Blog
blog-posts
July 22, 2022
July 22, 2022

Sommes-nous suffisamment mûrs pour le plan de mobilisation pour la sécurité des logiciels libres ?

Le plan de mobilisation pour la sécurité des logiciels libres représente une étape positive pour la sécurité axée sur les développeurs. Cependant, nous devons tous faire le point et évaluer honnêtement si notre organisation est suffisamment mature - et si nos équipes de développement possèdent le niveau de sensibilisation et de compétences en matière de sécurité requis - pour mettre en œuvre les stratégies défensives les plus récentes et les plus efficaces.

Learn More
No items found.
No items found.
July 22, 2022
Blog
blog-posts
July 11, 2022
July 11, 2022

L'importance de la maturité en matière de sécurité dans les équipes de développement

L'effort de transition vers la gauche nécessite une amélioration collective et continue des connaissances et des compétences en matière de sécurité, au sein des équipes de développement

Learn More
No items found.
No items found.
July 11, 2022
Blog
blog-posts
June 6, 2022
June 6, 2022

Sécurisation des API : mission impossible ?

La sécurité des API est difficile, mais grâce à une formation adéquate, à une planification et à une concentration sur les meilleures pratiques, même les vulnérabilités les plus insidieuses peuvent être atténuées.

Learn More
No items found.
No items found.
June 6, 2022
Blog
blog-posts
June 2, 2022
June 2, 2022

Nouveau : connecteur SCW pour les flux de travail Okta

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
June 2, 2022
Blog
blog-posts
May 16, 2022
May 16, 2022

Nouveautés de Secure Code Warrior : mai 2022

Flux de création de cours plus simple et plus puissant, activation de l'accès anticipé et contenu de formation SAP ABAP.

Learn More
No items found.
No items found.
May 16, 2022
Blog
blog-posts
May 9, 2022
May 9, 2022

Nouveau : Expédiez du code SAP ABAP sécurisé plus rapidement grâce au contenu de formation ABAP

Formation pratique et efficace au codage sécurisé pour les développeurs ABAP.

Learn More
No items found.
No items found.
May 9, 2022
Blog
blog-posts
April 27, 2022
April 27, 2022

Signatures psychiques - ce que vous devez savoir

La vulnérabilité de Psychic Signature réside dans la cryptographie des signatures ECDSA, qui protège les systèmes pour des tâches critiques telles que l'authentification. Les pirates informatiques peuvent contourner toute vérification de signature grâce à cette vulnérabilité. Nous expliquerons ce que c'est et comment l'atténuer dans cet article.

Learn More
No items found.
No items found.
April 27, 2022
Blog
blog-posts
April 14, 2022
April 14, 2022

Prenez une longueur d'avance sur les vulnérabilités logicielles de NGINX et du service Microsoft Windows SMB Remote Procedure Call

NGINX a récemment révélé une vulnérabilité de type « jour zéro ». À peu près à la même époque, Microsoft a révélé une autre vulnérabilité critique, la vulnérabilité Windows RPC RCE. Dans cet article, vous pouvez découvrir qui est exposé à ces deux problèmes et comment nous pouvons les atténuer.

Learn More
No items found.
No items found.
April 14, 2022
Blog
blog-posts
April 5, 2022
April 5, 2022

Les attaques de type « jour zéro » sont en hausse. Il est temps de planifier un avantage défensif.

Les attaques « jour zéro », par définition, ne laissent pas le temps aux développeurs de détecter et de corriger les vulnérabilités existantes susceptibles d'être exploitées, car c'est l'auteur de la menace qui est intervenu le premier. Le mal est fait et c'est alors une course effrénée pour réparer à la fois le logiciel et l'atteinte à la réputation de l'entreprise. Les attaquants ont toujours un avantage, et il est crucial de réduire cet avantage autant que possible.

Learn More
No items found.
No items found.
April 5, 2022
Blog
blog-posts
April 5, 2022
April 5, 2022

Où se situe le code sécurisé dans la liste des priorités de l'équipe de développement ?

Pour la deuxième année consécutive, nous sommes associés à Evans Data Corp. pour mener une enquête complète auprès de la communauté mondiale des développeurs concernant les compétences, les perceptions et les comportements en matière de pratiques de codage sécurisées, ainsi que leur impact et leur pertinence perçus sur le cycle de vie du développement logiciel (SDLC). Les résultats ont été assez surprenants à bien des égards.

Learn More
No items found.
No items found.
April 5, 2022
Blog
blog-posts
April 1, 2022
April 1, 2022

Nouvelles vulnérabilités dans les bibliothèques Spring : comment savoir si vous êtes à risque et que faire

Récemment, les bibliothèques Spring, l'une des bibliothèques les plus populaires de la communauté Java, ont révélé deux vulnérabilités liées à l'exécution de code à distance (RCE). Nous avons détaillé les informations connues pour « Spring4Shell » et « Spring Cloud Function » afin de vous aider à comprendre si vous êtes à risque et que faire si c'est le cas.

Learn More
No items found.
No items found.
April 1, 2022
Blog
blog-posts
March 28, 2022
March 28, 2022

Les problèmes de cybersécurité que nous ne pouvons ignorer en 2022

Lorsqu'il s'agit de lutter contre les cybercriminels, nous devons rester aussi en phase que possible avec eux, en préemptant leurs terrains de jeu dans un esprit préventif. Voici où je pense qu'ils pourraient commencer à faire des vagues au cours de la prochaine année :

Learn More
No items found.
No items found.
March 28, 2022
Blog
blog-posts
February 23, 2022
February 23, 2022

Qu'est-ce que Trojan Source et comment se faufile-t-il dans votre code source

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
February 23, 2022
Blog
blog-posts
February 8, 2022
February 8, 2022

Champions contre entraîneurs : pourquoi chaque équipe de développement a besoin des deux

De nombreuses entreprises qui fixent des objectifs dans leur approche de la cybersécurité ont mis en place un programme officiel de champions de la sécurité, conférant des responsabilités clés en matière de sécurité, qu'il s'agisse de la liaison entre les équipes, du cheerleading général ou de la supervision des meilleures pratiques, aux personnes qui font preuve d'aptitude et de passion pour ce rôle.

Learn More
No items found.
No items found.
February 8, 2022
Blog
blog-posts
February 2, 2022
February 2, 2022

Comment éviter les erreurs Java courantes

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
February 2, 2022
Blog
blog-posts
January 27, 2022
January 27, 2022

Sept ans de Secure Code Warrior, et ça commence à devenir réalité

Les événements marquants de notre anniversaire sont un merveilleux rappel qui nous permet de réfléchir aux fruits de notre travail, de célébrer l'équipe et d'aborder l'année à venir avec confiance. Et maintenant, sept ans après sa création, je me demande : est-ce que nous y sommes parvenus ? S'agit-il déjà d'une vraie entreprise ? Bien sûr, nous avons atteint la maturité, mais j'espère que nous ne perdrons jamais le sens de la curiosité, de la passion et du geek que nous avons depuis le début.

Learn More
No items found.
No items found.
January 27, 2022
Blog
blog-posts
January 21, 2022
January 21, 2022

Pourquoi l'apprentissage par échafaudage permet de renforcer la sécurité des développeurs

En tant qu'industrie, nous ne devons jamais nous attendre à ce que les développeurs deviennent des experts en sécurité, mais les organisations peuvent adopter de nouvelles normes pour aider les développeurs à produire des logiciels de meilleure qualité.

Learn More
No items found.
No items found.
January 21, 2022
Blog
blog-posts
January 16, 2022
January 16, 2022

La vulnérabilité Log4j expliquée - Son vecteur d'attaque et comment l'empêcher

En décembre 2021, une faille de sécurité critique Log4Shell a été révélée dans la bibliothèque Java Log4j. Dans cet article, nous présentons la vulnérabilité Log4Shell de la manière la plus simple pour que vous puissiez en saisir les bases et vous présenter une mission : un terrain de jeu où vous pouvez essayer d'exploiter un site Web simulé en utilisant la connaissance de cette vulnérabilité.

Learn More
No items found.
No items found.
January 16, 2022
Blog
blog-posts
January 6, 2022
January 6, 2022

Analyse du secteur de la cybersécurité : une autre vulnérabilité récurrente à corriger

Nous ne recevons pas de conseils réalistes, ni de solutions les plus rapides, pour combattre l'assaut incessant qu'est la cybersécurité moderne. Bien entendu, chaque faille est différente à sa manière et de nombreux vecteurs d'attaque peuvent être exploités dans des logiciels vulnérables. Les conseils génériques réalisables seront limités, mais l'approche des meilleures pratiques semble de plus en plus imparfaite d'heure en heure.

Learn More
No items found.
No items found.
January 6, 2022
Blog
blog-posts
December 15, 2021
December 15, 2021

Votre programme de sécurité est-il axé sur la réponse aux incidents ? Tu le fais mal.

Le fait de mettre l'accent sur une approche préventive, par opposition à une approche réactive, peut ne pas être largement compris en dehors de l'équipe de sécurité, en particulier si aucun incident de sécurité grave ne s'est produit.

Learn More
No items found.
No items found.
December 15, 2021
Blog
blog-posts
December 1, 2021
December 1, 2021

Make unit tests readable with Sensei and AssertJ

Implement unit test coding guidelines uniformly and consistently

Learn More
No items found.
No items found.
December 1, 2021
Blog
blog-posts
November 30, 2021
November 30, 2021

API on Wheels : un voyage à la découverte de vulnérabilités risquées

Laisser la sécurité des API au hasard est un moyen infaillible d'introduire des problèmes plus tard, avec des conséquences potentiellement dévastatrices au pire, et des retouches frustrantes et, au mieux, de faibles performances.

Learn More
No items found.
No items found.
November 30, 2021
Blog
blog-posts
November 12, 2021
November 12, 2021

Migration de Joda-Time vers java.time

Migrez Joda-Time vers java.time de manière pratique

Learn More
No items found.
No items found.
November 12, 2021
Blog
blog-posts
November 11, 2021
November 11, 2021

Lever le voile sur les cybervulnérabilités des pipelines de la chaîne d'approvisionnement du gouvernement

Il est évident que la cybersécurité est importante, mais qu'est-ce que cela signifie réellement dans le contexte des chaînes d'approvisionnement ?

Learn More
No items found.
No items found.
November 11, 2021
Blog
blog-posts
October 29, 2021
October 29, 2021

Développeurs soucieux de la sécurité : AppSec a besoin de vous !

Les développeurs sont bien placés pour faire un saut lucratif dans AppSec.

Learn More
No items found.
No items found.
October 29, 2021
Blog
blog-posts
October 27, 2021
October 27, 2021

Comment convaincre votre patron d'investir dans une formation sécurisée au codage

L'apprentissage efficace du codage sécurisé et la conservation de ces connaissances peuvent donner l'impression que c'est intrinsèquement difficile, mais avec les bons outils et la bonne culture, ce n'est pas obligatoire. Cependant, il n'est pas toujours facile de convaincre les parties prenantes et les supérieurs d'investir dans le bon type de formation. Voici quelques conseils pratiques pour vous aider à gagner leur allégeance.

Learn More
No items found.
No items found.
October 27, 2021
Blog
blog-posts
October 19, 2021
October 19, 2021

Inciter les développeurs est la clé de meilleures pratiques de sécurité

Les développeurs professionnels souhaitent adopter DevSecOps et écrire du code sécurisé, mais leurs organisations doivent soutenir ce changement radical si elles veulent que cet effort se développe.

Learn More
No items found.
No items found.
October 19, 2021
Blog
blog-posts
October 18, 2021
October 18, 2021

Découvrez l'impact de la vulnérabilité Path Traversal à l'origine des récents problèmes d'Apache

Début octobre, Apache a publié la version 2.4.49 pour corriger une vulnérabilité liée à la traversée de chemins et à l'exécution de code à distance, puis la version 2.4.50 pour corriger le fait que le correctif était incomplet. Nous nous sommes donné pour mission de démontrer les risques dans un environnement réel. Essayez-le dès maintenant.

Learn More
No items found.
No items found.
October 18, 2021
Blog
blog-posts
October 14, 2021
October 14, 2021

Warrior Insider : Nelnet - Soutenez vos champions de la sécurité et créez une culture de développement sécurisé de l'intérieur

Micha Martinez est analyste en cybersécurité et directeur de la photographie chez Nelnet. Lorsqu'il a été chargé de créer un programme de formation pour les développeurs sur le codage sécurisé, il a adopté des moyens créatifs pour impliquer son équipe. Nous avons été tellement impressionnés par la façon dont il gère son programme de formation au code sécurisé que nous nous sommes entretenus avec lui pour en savoir plus.

Learn More
No items found.
No items found.
October 14, 2021
Blog
blog-posts
October 5, 2021
October 5, 2021

Le remaniement de la liste 2021 de l'OWASP : un nouveau plan de bataille et un ennemi principal

Les attaques par injection, tristement célèbre roi des vulnérabilités (par catégorie), ont perdu la première place au profit d'une violation du contrôle d'accès, en tant que pire des pires, et les développeurs doivent en tenir compte.

Learn More
No items found.
No items found.
October 5, 2021
Blog
blog-posts
September 23, 2021
September 23, 2021

Informations de sécurité avancées : cours guidés aidant les développeurs à se préparer au NIST

Les développeurs font partie de ceux qui maîtrisent le mieux le code, en plus des configurations de sécurité et du contrôle d'accès. Leurs compétences en matière de sécurité doivent être renforcées, et pour atteindre les normes élevées définies par le NIST, une structure de cours pratique pourrait bien être le moyen le plus efficace d'y remédier, en particulier pour les grandes cohortes de développement.

Learn More
No items found.
No items found.
September 23, 2021
Blog
blog-posts
August 30, 2021
August 30, 2021

Quand les micro-ondes fonctionnent mal : pourquoi la sécurité des systèmes embarqués est la prochaine bataille des développeurs

Tout comme les logiciels Web, les API et les appareils mobiles, le code vulnérable des systèmes embarqués peut être exploité s'il est découvert dans la nature par un attaquant.

Learn More
No items found.
No items found.
August 30, 2021
Blog
blog-posts
August 24, 2021
August 24, 2021

Le développement sécurisé devrait être le système immunitaire d'AppSec

En tant que professionnel de la sécurité des applications, il est de votre devoir de garantir la cybersécurité des applications de votre organisation. Vous n'êtes toutefois pas responsable de l'écriture du code sur lequel l'application s'exécute. Les ingénieurs de l'équipe de développement sont. Alors, comment s'assurer qu'ils développent ces systèmes en tenant compte de la sécurité ?

Learn More
No items found.
No items found.
August 24, 2021
Blog
blog-posts
August 19, 2021
August 19, 2021

Pourquoi la sécurité de bout en bout est importante pour les systèmes embarqués

Cet article donne un aperçu de la sécurisation des systèmes embarqués. Nous commencerons par une définition de base, puis aborderons les défis liés à la sécurité intégrée, certaines solutions typiques et les énigmes manquantes.

Learn More
No items found.
No items found.
August 19, 2021
Blog
blog-posts
August 17, 2021
August 17, 2021

MISRA C 2012 vs MISRA C2 - Comment effectuer un changement

Dans cet article, nous comparerons la norme MISRA C 2012 avec la norme C2 et vous guiderons tout au long du processus de passage à la nouvelle norme. Nous expliquerons pourquoi la conformité de MISRA est nécessaire pour construire des systèmes embarqués sécurisés.

Learn More
No items found.
No items found.
August 17, 2021
Blog
blog-posts
August 11, 2021
August 11, 2021

Développement de dispositifs embarqués et de systèmes embarqués : un aperçu

In this post, you will get an overview of embedded devices and embedded systems development.

Learn More
No items found.
No items found.
August 11, 2021
Blog
blog-posts
July 26, 2021
July 26, 2021

Warrior Insider : Contrast Security - Offrez aux développeurs une formation à la cybersécurité efficace grâce à un apprentissage contextuel

Nous nous sommes entretenus avec Larry Maccherone de Contrast Security pour discuter de la manière dont l'apprentissage contextuel fonctionne avec succès pour former les développeurs au codage sécurisé. Lisez la suite pour découvrir comment les entreprises proposent des formations clés en matière de sécurité aux développeurs sans perturber leurs responsabilités et leur flux de travail quotidiens.

Learn More
No items found.
No items found.
July 26, 2021
Blog
blog-posts
July 22, 2021
July 22, 2021

Pourquoi il ne faut jamais négliger le facteur humain en matière de cybersécurité

Nous avons récemment été très heureux de voir le premier article du Forbes Technology Council écrit par notre président-directeur général, Pieter Danhieux, être mis en ligne. L'article expliquait en quoi le renforcement des compétences des développeurs pour créer un code plus sécurisé est essentiel pour prévenir les cyberattaques et les violations de données.

Learn More
No items found.
No items found.
July 22, 2021
Blog
blog-posts
June 24, 2021
June 24, 2021

Des API qui fuient menacent de ternir la réputation des entreprises

La sécurité des API est un problème qui n'est pas loin de préoccuper la plupart des experts en sécurité, et nous devons nous doter des connaissances nécessaires pour le combattre.

Learn More
No items found.
No items found.
June 24, 2021
Blog
blog-posts
June 21, 2021
June 21, 2021

Agir avec le NIST : notre position dirigée par l'homme sur l'avenir de la cyberdéfense

Le récent décret sur la cybersécurité de l'administration Biden a certainement fait parler le secteur de la sécurité, en particulier ceux qui cherchent à convaincre les développeurs de l'importance d'appliquer les meilleures pratiques de codage sécurisé dans leur travail quotidien.

Learn More
No items found.
No items found.
June 21, 2021
Blog
blog-posts
June 16, 2021
June 16, 2021

Warrior Insider : Selligent : pourquoi la cybersécurité est importante pour développer votre activité

Nous avons récemment rencontré Dimitri Vanderhaeghe, ingénieur logiciel chez Selligent Marketing Cloud, une plateforme d'automatisation du marketing omnicanal hautement intégrée et alimentée par l'IA qui permet aux marketeurs B2C ambitieux de maximiser chaque moment d'interaction avec les consommateurs connectés d'aujourd'hui. Pour une entreprise technologique B2C dynamique, il est vital de se développer et de répondre aux demandes croissantes de son marché. Pour répondre à ces exigences, il faut notamment mettre l'accent sur la cybersécurité et, surtout, sur un programme de compétences en sécurité dirigé par les développeurs.

Learn More
No items found.
No items found.
June 16, 2021
Blog
blog-posts
June 10, 2021
June 10, 2021

L'essor de DevSecOps et ce que signifie réellement « basculer vers la gauche » pour votre organisation.

Qu'est-ce que c'est pour une statistique qui donne à réfléchir ? 60 % des PME font faillite dans les six mois suivant la réussite d'une cyberattaque. Les grandes entreprises font des hémorragies de millions (voire de milliards !) alors que la réputation de la marque s'efface. Alors que les organisations adoptent de plus en plus des pratiques de codage sécurisées, un « virage vers la gauche » est en train de se produire. Avec l'essor de DevSecOps, le code sécurisé est devenu une priorité dès le début du SDLC.

Learn More
No items found.
No items found.
June 10, 2021
Blog
blog-posts
June 9, 2021
June 9, 2021

Sensei Feature Highlight: Library Scope

Discover more about the most loved features of Sensei.

Learn More
No items found.
No items found.
June 9, 2021
Blog
blog-posts
June 3, 2021
June 3, 2021

Expédiez du code de qualité plus rapidement et en toute confiance : le pouvoir transformateur des pratiques de codage sécurisées.

Selon une étude d'IBM, il est trente fois plus coûteux de corriger les vulnérabilités après leur publication que de les détecter et de les corriger initialement. Dans cette optique, il n'est pas surprenant que les DSI tournés vers l'avenir mettent en œuvre des pratiques de codage sécurisées. Cela implique de former et d'équiper les développeurs pour qu'ils écrivent du code de manière plus sécurisée dès le départ, ce qui en fait la « première ligne de défense » de leur organisation.

Learn More
No items found.
No items found.
June 3, 2021
Blog
blog-posts
May 27, 2021
May 27, 2021

Formation sécurisée au code = meilleur code + dates de sortie plus rapides

Quels sont les impacts potentiels d'une formation au code sécurisé de qualité pour votre organisation, et serait-ce un investissement rentable ?

Learn More
No items found.
No items found.
May 27, 2021
Blog
blog-posts
May 20, 2021
May 20, 2021

Réaligner votre organisation autour du codage sécurisé : obstacles, préoccupations et solutions actives

Dans notre monde hyperconnecté, presque toutes les organisations ont un talon d'Achille commun. Une seule vulnérabilité, une seule faille exploitable dans leur code, peut entraîner le vol de données clients, une atteinte à la réputation et des pertes financières importantes. L'alignement organisationnel autour du codage sécurisé n'a jamais été aussi impératif, mais y parvenir est plus facile à dire qu'à faire.

Learn More
No items found.
No items found.
May 20, 2021
Blog
blog-posts
May 20, 2021
May 20, 2021

Sensibilisation certifiée à la sécurité : un décret visant à améliorer les compétences des développeurs

Le dernier décret du gouvernement fédéral américain aborde de nombreux aspects de la cybersécurité fonctionnelle, mais pour la première fois, il décrit spécifiquement l'impact des développeurs et la nécessité pour eux de disposer de compétences et de connaissances vérifiées en matière de sécurité.

Learn More
No items found.
No items found.
May 20, 2021
Blog
blog-posts
May 13, 2021
May 13, 2021

Les managers et les champions de la sécurité : les joueurs de premier plan et les principaux acteurs influençant les pratiques de codage sécurisé.

À l'heure actuelle, seuls 15 % des développeurs pensent que les pratiques de code sécurisées devraient être la responsabilité de chacun. Dans un monde où les menaces à la sécurité augmentent, cela ne suffit tout simplement pas. Il faut faire quelque chose. Pour créer une culture AppSec saine, il est essentiel de comprendre les principales influences (et influenceurs !) en train de jouer.

Learn More
No items found.
No items found.
May 13, 2021
Blog
blog-posts
May 12, 2021
May 12, 2021

Une cyberattaque se produit toutes les 39 secondes. Le gouvernement est-il enfin équipé pour riposter ?

Nous devons renforcer l'approche humaine des meilleures pratiques en matière de cybersécurité, et elle donnera de meilleurs résultats qu'une dépendance excessive à l'automatisation, aux outils et à la réaction à des problèmes déjà intégrés et découverts.

Learn More
No items found.
No items found.
May 12, 2021
Blog
blog-posts
May 6, 2021
May 6, 2021

Qu'est-ce qui empêche les équipes de développement de dormir la nuit lorsqu'il s'agit de sécuriser le codage ?

Le code non sécurisé coûte des millions aux entreprises. Alors, qu'est-ce qui les empêche d'adopter des pratiques de codage sécurisées ? Dans un monde qui repose sur les logiciels pour à peu près tout, il est essentiel de garantir la sécurité du code. La réputation de la marque et sa viabilité financière en dépendent. Cela dit, le codage sécurisé suscite de nombreuses préoccupations et de nombreux obstacles entravent son adoption complète et efficace. Plus que jamais, une nouvelle façon de travailler s'impose.

Learn More
No items found.
No items found.
May 6, 2021
Blog
blog-posts
April 29, 2021
April 29, 2021

Pourquoi le code sécurisé est la nouvelle mesure de réussite du développement logiciel

Ces dernières années, de nombreux aspects ont été sacrifiés sur l'autel de la rapidité de mise sur le marché, notamment la sécurité des réseaux, des téraoctets de données clients sensibles et la réputation inestimable des marques.

Learn More
No items found.
No items found.
April 29, 2021
Blog
blog-posts
April 29, 2021
April 29, 2021

Se cacher à la vue de tous : pourquoi l'attaque de SolarWinds a révélé bien plus qu'un cyberrisque malveillant

S'il y a quelque chose qui peut gâcher Noël dans le secteur de la cybersécurité, c'est bien une violation de données dévastatrice qui est en passe de devenir le plus grand événement de cyberespionnage jamais enregistré pour le gouvernement américain.

Learn More
No items found.
No items found.
April 29, 2021
Blog
blog-posts
April 22, 2021
April 22, 2021

Comment configurer la formation au code sécurisé pour de meilleurs résultats de codage sécurisé

En matière de formation au code sécurisé pour les développeurs, les résultats pédagogiques laissent beaucoup à désirer. De nombreuses entreprises dépensent beaucoup, mais obtiennent des rendements minimes dans la pratique. Et ce n'est pas étonnant.

Learn More
No items found.
No items found.
April 22, 2021
Blog
blog-posts
April 15, 2021
April 15, 2021

La formation actuelle sur le code sécurisé déçoit les développeurs

Alors que les violations de données et leurs coûts continuent d'augmenter, le volume de code produit dans le monde est trop important pour que les experts en sécurité puissent le gérer seuls. Les entreprises ont besoin de développeurs dotés de compétences de codage sécurisées, et les développeurs savent qu'ils ont besoin de ces compétences pour faire avancer leur carrière. Mais les formations actuelles en matière de code sécurisé les déçoivent. Que veulent donc les développeurs en matière de formation au code sécurisé ?

Learn More
No items found.
No items found.
April 15, 2021
Blog
blog-posts
April 8, 2021
April 8, 2021

Pourquoi la formation au code sécurisé n'est pas efficace (et ce que vous pouvez faire pour y remédier)

Ennuyeux, ennuyeux, ennuyeux ! C'est l'une des principales réponses que vous entendrez de la part des développeurs chaque fois qu'une formation au code sécurisé est mentionnée. Chez Secure Code Warrior, nous pensons qu'il doit y avoir une meilleure solution.

Learn More
No items found.
No items found.
April 8, 2021
Blog
blog-posts
April 7, 2021
April 7, 2021

Si les outils AppSec sont la solution miracle, pourquoi tant d'entreprises ne les utilisent-elles pas ?

Les outils AppSec ne sont pas utilisés comme on aurait pu s'y attendre pour plusieurs raisons. Il s'agit moins des outils et de leurs fonctionnalités que de la manière dont ils s'intègrent à un programme de sécurité dans son ensemble.

Learn More
No items found.
No items found.
April 7, 2021
Blog
blog-posts
April 6, 2021
April 6, 2021

Les développeurs ont envie de s'initier au codage sécurisé... alors pourquoi ne le font-ils pas ?

En ce qui concerne l'apprentissage du codage sécurisé, quelles sont les principales motivations des développeurs et comment les exploiter pour concevoir et mettre en œuvre un programme de sécurité des applications efficace ?

Learn More
No items found.
No items found.
April 6, 2021
Blog
blog-posts
March 30, 2021
March 30, 2021

Quel rôle joue l'élément humain dans l'avenir du codage sécurisé ?

Alors que le nombre de cybermenaces ne cesse de croître, les entreprises font des compromis quotidiens entre sécurité, praticité et rapidité, s'exposant ainsi à des risques.

Learn More
No items found.
No items found.
March 30, 2021
Blog
blog-posts
March 25, 2021
March 25, 2021

Nous avons besoin de héros pour sécuriser notre code. Les développeurs ont-ils ce qu'il faut ?

Dans un monde où les cybermenaces ne cessent de se multiplier, vos codeurs intensifient-ils leurs efforts ? L'élément humain du codage sécurisé, le développeur le plus important, est-il prêt à jouer son rôle dans la sécurisation de notre monde connecté ? Pour répondre à cette question, examinons quelques informations tirées d'une étude récente sur l'attitude des développeurs à l'égard du codage sécurisé, des pratiques de code sécurisées et des opérations de sécurité, menée par Secure Code Warrior avec Evans Data Corp.

Learn More
No items found.
No items found.
March 25, 2021
Blog
blog-posts
March 23, 2021
March 23, 2021

Passer d'une approche réactive à une approche proactive grâce à un codage sécurisé piloté par l'homme

Les 10 mêmes vulnérabilités logicielles ont causé plus de failles de sécurité au cours des 20 dernières années que toutes les autres. Pourtant, de nombreuses entreprises optent toujours pour des mesures correctives après une violation ou un événement, tout en confondant les conséquences humaines et commerciales de tout cela. Mais aujourd'hui, une nouvelle étude indique une nouvelle direction, dirigée par l'homme.

Learn More
No items found.
No items found.
March 23, 2021
Blog
blog-posts
March 17, 2021
March 17, 2021

Joyeux anniversaire, l'injection SQL, le bogue qui ne peut pas être corrigé

C'est le 22e anniversaire de l'injection SQL, et bien que cette vulnérabilité soit assez ancienne pour être consommée, nous la laissons prendre le dessus sur nous au lieu de l'éliminer définitivement.

Learn More
No items found.
No items found.
March 17, 2021
Blog
blog-posts
March 11, 2021
March 11, 2021

Sensei Product Update - March 2021

Discover the latest improvements to the user experience of Sensei, Secure Code Warrior's IntelliJ plugin and start writing quality code even faster.

Learn More
No items found.
No items found.
March 11, 2021
Blog
blog-posts
March 10, 2021
March 10, 2021

Instaurer la confiance : la voie vers une véritable synergie de sécurité entre AppSec et les développeurs

Il est préférable d'aborder une relation fondée sur les bases fragiles de la méfiance avec de faibles attentes. Malheureusement, il peut s'agir de l'état de la relation de travail entre les développeurs et l'équipe AppSec au sein d'une organisation.

Learn More
No items found.
No items found.
March 10, 2021
Blog
blog-posts
February 21, 2021
February 21, 2021

Essayez ce quiz Java Gotchas en ligne

Un petit quiz amusant sur Java Gotchas et un dépôt Github complémentaire montrant quelques pièges et comment les corriger

Learn More
No items found.
No items found.
February 21, 2021
Blog
blog-posts
February 15, 2021
February 15, 2021

Exécution d'inspections IntelliJ à partir d'une intégration continue

Apprenez à exécuter les actions d'intention de Sensei et IntelliJ en mode batch sous forme d'inspections dans l'EDI, à partir de la ligne de commande et en intégration continue.

Learn More
No items found.
No items found.
February 15, 2021
Blog
blog-posts
February 10, 2021
February 10, 2021

En commençant « de gauche à gauche » : le code sécurisé est-il toujours un code de qualité ?

Un code d'un certain niveau de qualité est par définition également sécurisé, mais tout code sécurisé n'est pas nécessairement de bonne qualité. Commencer « à gauche de gauche » est-il la formule pour garantir des normes de codage purement sécurisées ?

Learn More
No items found.
No items found.
February 10, 2021
Blog
blog-posts
February 7, 2021
February 7, 2021

Java Gotchas - Opérateurs bitwise ou booléens

Dans cet article de blog, nous examinons une erreur de codage Java courante (utilisation d'un opérateur au niveau du bit au lieu d'un opérateur conditionnel), l'erreur à laquelle elle rend notre code vulnérable et la manière dont nous pouvons utiliser Sensei pour corriger et détecter le problème.

Learn More
No items found.
No items found.
February 7, 2021
Blog
blog-posts
February 4, 2021
February 4, 2021

Pour aider les développeurs à éliminer la bête de la cybercriminalité, la formation est une quête en deux parties

Les règles du jeu entre les héros et les méchants en matière de cybersécurité sont notoirement injustes. Les données sensibles sont la nouvelle monnaie d'or, et les attaquants s'adaptent rapidement pour contourner les défenses, en exploitant les failles de sécurité, petites ou grandes, à des fins potentiellement rentables.

Learn More
No items found.
No items found.
February 4, 2021
Blog
blog-posts
February 1, 2021
February 1, 2021

Qu'est-ce que l'analyse statique ?

Découvrez l'analyse statique et comment elle peut vous aider à écrire un meilleur code grâce à des exemples de 5 approches et plugins basés sur l'IDE.

Learn More
No items found.
No items found.
February 1, 2021
Blog
blog-posts
January 27, 2021
January 27, 2021

Six ans de Secure Code Warrior : sommes-nous déjà grands ?

C'est cette période spéciale de l'année (pour nous, en tout cas) où je pense à notre dernier tour du soleil et à ce qui a été fait au cours des 365 derniers jours pour nous préparer à une nouvelle année pleine de croissance, de leçons et d'inévitables imprévus.

Learn More
No items found.
No items found.
January 27, 2021
Case Study
case-studies
January 6, 2026
January 6, 2026

Kamer van Koophandel Sets the Standard for Developer-Driven Security at Scale

Kamer van Koophandel shares how it embedded secure coding into everyday development through role-based certifications, Trust Score benchmarking, and a culture of shared security ownership.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
October 8, 2025
October 8, 2025

Going for Gold: Soaring Secure Code Standards at Paysafe

See how Paysafe's partnership with Secure Code Warrior led to a 45% boost in developer productivity and a major reduction in code vulnerabilities.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
August 15, 2024
August 15, 2024

DigitalOcean Decreases Security Debt with Secure Code Warrior

DigitalOcean's use of Secure Code Warrior training has significantly reduced security debt, allowing teams to focus more on innovation and productivity. The improved security has strengthened their product quality and competitive edge. Looking ahead, the SCW Trust Score will help them further enhance security practices and continue driving innovation.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
November 28, 2023
November 28, 2023

Devlympics 2023: In Review

Explore the Devlympics 2023 results in this report. Dive into developer engagement, tech stack and languages trends in each industry that participated, and key vulnerabilities and CWEs covered in the annual global event hosted by Secure Code Warrior.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
November 22, 2023
November 22, 2023

One Culture of Security: How Sage built their security champions program with agile secure code learning

Discover how Sage enhanced security with a flexible, relationship-focused approach, creating 200+ security champions and achieving measurable risk reduction.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
October 2, 2023
October 2, 2023

The path to security champions: How Workday utilized agile learning to upskill developers

Discover how Workday transformed developer training with agile learning through Secure Code Warrior. By empowering developer with hands-on, language-specific education, Workday reduced vulnerabilities early in the SDLC. See their impressive results and key takeaways to build a secure code culture.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
July 22, 2023
July 22, 2023

How Thales implemented developer-driven security

In this case study, learn how Thales has developed people, process, and technology approaches for an agile secure code learning program in order to engage developers to become active security champions.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
June 7, 2023
June 7, 2023

How Colgate-Palmolive boosted developer security skills and created a secure coding culture

Discover how retail giant Colgate-Palmolive reshaped its application security during its digital transformation journey. Facing challenges in secure coding, they innovated their approach by integrating bite-sized, in-context learning into the developer workflow.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
May 13, 2021
May 13, 2021

Security as culture: How Blue Prism cultivates world-class secure developers

Learn how Blue Prism, the global leader in intelligent automation for the enterprise, used Secure Code Warrior's agile learning platform to create a security-first culture with their developers, achieve their business goals, and ship secure code at speed

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
May 12, 2021
May 12, 2021

Supercharged Security Awareness: How Tournaments are Inspiring Developers at Erste Group

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
January 1, 2021
January 1, 2021

How a ‘Game of Codes’ is leading IAG Group to a more secure coding future

IAG Group is the name behind many of the leading insurancecompanies in the Asia-Pacific region, underwriting policies formillions of customers to the tune of approximately AUD $11.4 Billionin premiums per annum.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
January 1, 2021
January 1, 2021

Driving Actionable Awareness: FINRA's Push For Super-Secure Developers

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
January 1, 2021
January 1, 2021

Creating a revolutionary security certification experience

Learn how they created an in-house technology education initiative, aimed at supporting thousands of employees to learn practical, cutting-edge skills in a number of disciplines, including machine learning and cybersecurity.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
January 1, 2021
January 1, 2021

Beyond Compliance: Motorola Solutions Drives Winning Security Culture

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
January 1, 2021
January 1, 2021

ASRG's push for automotive software security

Explore this comprehensive case study to learn more about how they utilized Secure Code Warrior's tournaments to engage developers, increase awareness of key vulnerabilities affecting automotive software, and gain metrics across multiple languages and frameworks.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
January 1, 2021
January 1, 2021

Application Security @ NAB | Gamified Security Training: The Key to Scalable Developer Growth

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
August 27, 2026
August 27, 2026

Forbes: A New Frontier: NSA Proposes “Security By Design” Considerations For AI Enablement

​The cybersecurity industry, which has been advocating for “security by design” principles for more than a decade, stands in wide-eyed amazement at the risks posed by artificial intelligence (AI). As organizations rush to embrace AI enablement, a CISO’s most pressing priority is to avoid becoming a roadblock. However, without effective AI usage and governance, observability and traceability, organizations may be blindsided by their AI risk.​

Learn More
AI Governance
C-Suite
Security Teams
No items found.
This is some text inside of a div block.
Media Release
news-articles
August 21, 2026
August 21, 2026

Techpartner.news: Secure Code Warrior introduces framework to govern AI use in software development

Secure Code Warrior has introduced the SCW AI Adoption Model, a framework designed to help organisations govern AI use in software development as the industry shifts from the traditional software development lifecycle (SDLC) toward what the company calls the Agentic Development Lifecycle (ADLC).

Learn More
C-Suite
AI Governance
No items found.
This is some text inside of a div block.
News Article
news-articles
August 19, 2026
August 19, 2026

DevOps.com: Are LLMs Equally Good (or Bad) at Building Secure Software?

With many software engineering teams moving from AI coding assistants into full agentic AI code generation and increasing the amount of code they produce exponentially, ensuring the security of that code must be a top priority. The study produces practical guidance for organizations that are getting on board the AI-assisted or agentic code development train.

Learn More
AI Governance
Engineering Teams
Security Teams
No items found.
This is some text inside of a div block.
News Article
news-articles
August 14, 2026
August 14, 2026

TechRadar Pro: Beware the token trap: Why saving on inference might put your ADLC at risk

Token use can create unexpected, sizeable costs for organizations.

Learn More
AI Governance
C-Suite
No items found.
This is some text inside of a div block.
News Article
news-articles
August 11, 2026
August 11, 2026

KBI Media: AI Coding Boom Raises Fresh Cybersecurity Risks for Business

AI enables faster development cycles and allows developers to focus on higher-value work. For many businesses, these efficiencies are becoming essential to remaining competitive. The challenge, therefore, is not whether to adopt AI, but how to do so responsibly. Businesses that invest in developer education, governance frameworks, AI observability and robust security controls will be better positioned to capture the benefits while limiting the associated risks.

Learn More
AI Governance
Engineering Teams
No items found.
This is some text inside of a div block.
News Article
news-articles
August 11, 2026
August 11, 2026

In AI Today: AI's weakest link isn't the model but the software supply chain

The issue is no longer simply about protecting AI models themselves. Increasingly, attackers are focusing on the software ecosystem surrounding those models, including the development tools, middleware, open-source libraries, and automated deployment pipelines that organisations rely upon every day.

Learn More
AI Governance
No items found.
This is some text inside of a div block.
News Article
news-articles
August 10, 2026
August 10, 2026

The AI Journal: Investigating global AI regulation: Who is winning, and where to from here?

As we will unpack together, there is a lot of movement around the world, with some collaboration between nations, but the path forward is far from uniform or clear, particularly in business environments where AI adoption is often mandated before holistic safeguarding measures are in place.  

Learn More
AI Governance
No items found.
This is some text inside of a div block.
News Article
news-articles
July 27, 2026
July 27, 2026

Cyber Daily: The industry reacts to OpenAI’s agent ‘accidentally’ hacking Hugging Face

According to one expert, AI guardrails are not designed as “security boundaries” but rather to influence behaviour – but what if that behaviour is hacking one of your industry partners?

Learn More
No items found.
No items found.
This is some text inside of a div block.
Media Release
news-articles
July 24, 2026
July 24, 2026

SecurityBrief: Autonomous OpenAI agents breach Hugging Face in test

Cyber security experts have warned that the breach of Hugging Face infrastructure during an OpenAI security evaluation marks a turning point in the risks posed by autonomous AI agents. In the incident, AI models moved beyond a controlled test and carried out a live, multi-stage intrusion against the AI platform.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
July 24, 2026
July 24, 2026

Technology Decisions: AI generated code found to produce predictable weaknesses

AI-generated code introduces an average of 15 confirmed vulnerabilities per codebase, research published by Secure Code Warrior indicates.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
July 23, 2026
July 23, 2026

Forbes: OpenAI’s Hugging Face Breach Shows Frontier AI Guardrails Are Failing

Frontier AI is facing a PR crisis. After Hugging Face released a blog post on July 16 claiming an autonomous agent had breached its internal environment, OpenAI posted on July 21 that the incident occurred when GPT 5.6 Sol and a “pre-release model” escaped a controlled testing environment.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
July 22, 2026
July 22, 2026

In AI Today: Secure Code Warrior research reveals AI-generated code introduces an average of 15 vulnerabilities per codebase

Secure Code Warrior research reveals AI-generated code introduces an average of 15 vulnerabilities per codebase.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
July 21, 2026
July 21, 2026

VMBlog: Secure Code Warrior Research Reveals AI-Generated Code Introduces an Average of 15 Vulnerabilities Per Codebase

Secure Code Warrior introduced the SCW AI Trust Index, a living benchmark for AI coding security that grows with every new model, helping organizations understand and govern the security risks introduced by AI-generated code. Built on a methodology created with RMIT University, Australia, then extended by Secure Code Warrior, the research presents comprehensive benchmarks on how often leading LLMs produce insecure code, with material implications for every enterprise scaling AI-assisted development.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
July 21, 2026
July 21, 2026

Dark Reading: Choose Wisely: AI-Generated Coding Risk Varies, A Lot

AI-generated code introduces 15 vulnerabilities on average per codebase, but the actual risk depends on framework pairing more than the model used.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Media Release
news-articles
July 21, 2026
July 21, 2026

Secure Code Warrior Research Reveals AI-Generated Code Introduces an Average of 15 Vulnerabilities Per Codebase

New SCW AI Trust Index shows AI-generated coding risk is not random, it's predictable by model and framework, giving security leaders the data to safely scale AI-assisted development.

Learn More
C-Suite
AI Governance
Security Teams
No items found.
This is some text inside of a div block.
News Article
news-articles
July 16, 2026
July 16, 2026

ITWire: Eight Industry Executives Comment on Worldwide AI Appreciation Day

The challenges with AI implementation, constant updates, and the race for industry dominance are coming thick and fast, and security professionals are among the most affected by its vast risk profile.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
July 16, 2026
July 16, 2026

Cyber Daily: The industry speaks – part 3: AI Appreciation Day 2026

The Australian government has said AI is very much in the country’s future national interest – but where does it stand today? Here’s what the industry’s best and brightest have to say about artificial intelligence and its role in the modern enterprise.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
July 13, 2026
July 13, 2026

ITWire: Agentic AI Era Demands Overhaul of Governance Frameworks

The emergence of agentic AI marks a structural shift in software development, introducing systems that not only accelerate production cycles but also perform autonomous reasoning and action beyond direct human control.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
July 2, 2026
July 2, 2026

SecurityWeek: How to Conduct a Successful Audit of AI-Driven Software Development

As AI-generated code becomes commonplace, CISOs need new audit strategies to measure developer practices, govern AI tool usage, and identify software risks before they reach production.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
July 1, 2026
July 1, 2026

SD Times: Platform Engineering & Developer Experience: Making Engineers Faster Without Making Them Reckless: SD Times 100

This category has taken on new urgency in 2026 for a reason that’s specific to this moment: AI coding tools and agents are dramatically increasing how much code gets written and how often it needs to be deployed, tested, and provisioned for. Platform engineering is the layer that determines whether that increased velocity translates into shipped value or into chaos.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
April 10, 2026
April 10, 2026

SD Times: AI-Assisted Development Multiplies Human Error: What’s Your AI Governance and Risk Management Strategy?

According to a recent report from Gartner, the rampant use of shadow AI and rogue automation is further fueling the proliferation of AI vulnerabilities. Gartner notes that 32% of IT workers using generative AI tools at work say they keep them hidden from cybersecurity teams. Combined with low-code/no-code platforms and vibe coding practices, the AI copilots are greatly expanding the enterprise attack surface.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 31, 2026
March 31, 2026

Cybersecurity Tribe: What Separates Real AI Governance From Policy Theater

For this article, we asked a central question for security and risk leaders: "What differentiates a policy that genuinely mitigates enterprise risk from one that exists primarily to demonstrate that the organization has acknowledged AI risk?"

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 31, 2026
March 31, 2026

ISMG: AI Coding Tools Raise Hidden Security Risks

Secure Code Warrior's Pieter Danhieux on Managing AI-Driven Development Risks

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 30, 2026
March 30, 2026

ITWire: Decoding AI Coding “Personalities” Critical to Managing Development Risk

As generative AI cements its place in enterprise software development, a familiar discipline is taking on new urgency: risk management.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 24, 2026
March 24, 2026

In AI Today: Secure Code Warrior launches Trust Agent: AI to enable safe, scalable AI-driven development

Secure Code Warrior have today announced SCW Trust Agent: AI, the industry’s first governance solution designed to make Artificial Intelligence (AI) influence in software development visible, attributable, and enforceable at the point of commit — enabling enterprises to scale AI coding tools with measurable control over software risk.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 23, 2026
March 23, 2026

DEVOPSdigest: 25 Years of the Agile Manifesto, and the End of the Road for AppSec?

Even as we restructure the SDLC around the most impactful elements of the Agile methodology with careful, DevSecOps-centric security considerations, is this the end of the road for AppSec as we know it?

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 23, 2026
March 23, 2026

Cyber Defense Magazine: Global InfoSec Awards 2026 Secure Code Warrior Wins Outstanding Achievement in Cybersecurity Risk Management and Compliance Excellence

Global InfoSec Awards 2026 Secure Code Warrior Wins Outstanding Achievement in Cybersecurity Risk Management and Compliance Excellence

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 19, 2026
March 19, 2026

ITWire: Secure Code Warrior Launches Trust Agent: AI to Enable Safe, Scalable AI-Driven Development

New AI Software Governance solution makes AI-generated code visible at commit, enforces policy before production, and connects real development behavior to measurable risk reduction.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 19, 2026
March 19, 2026

DevOps.com: Secure Code Warrior AI Agent Applies Policies to AI Generated Code

Secure Code Warrior (SCW) this week added an artificial intelligence (AI) agent that both identifies code generated by an AI coding tool and automatically applies the appropriate governance policies.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 18, 2026
March 18, 2026

SecurityBrief UK: Secure Code Warrior unveils AI tool to govern code risk

Secure Code Warrior has launched SCW Trust Agent: AI, a software governance product that tracks the use of AI coding tools in development and links that usage to software risk when developers commit code.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 17, 2026
March 17, 2026

2026 Globee® Awards for Cybersecurity: Secure Code Warrior Wins Gold Globee for Software Development Cybersecurity Solutions (Best Of)

2026 Globee® Awards for Cybersecurity: Secure Code Warrior Wins Gold Globee for Software Development Cybersecurity Solutions (Best Of)

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 17, 2026
March 17, 2026

DEVOPSdigest: Secure Code Warrior Releases Trust Agent

Secure Code Warrior announced SCW Trust Agent: AI, a governance solution designed to make AI influence in software development visible, attributable, and enforceable at the point of commit — enabling enterprises to scale AI coding tools with measurable control over software risk.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 17, 2026
March 17, 2026

TalkDev: Secure Code Warrior Launches Trust Agent: AI to Enable Safe, Scalable AI-Driven Development

Secure Code Warrior today announced SCW Trust Agent: AI, the industry’s first governance solution designed to make AI influence in software development visible, attributable, and enforceable at the point of commit — enabling enterprises to scale AI coding tools with measurable control over software risk. For the first time, organizations can trace which AI models influenced specific commits, correlate that influence to vulnerability exposure, and take corrective action before insecure code reaches production.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 17, 2026
March 17, 2026

Help Net Security: SCW Trust Agent: AI tracks AI influence in code to reduce software risk

Secure Code Warrior has announced SCW Trust Agent: AI, a governance solution designed to make AI influence in software development visible, attributable, and enforceable at the point of commit, enabling enterprises to scale AI coding tools with measurable control over software risk. Organizations can trace which AI models influenced specific commits, correlate that influence with vulnerability exposure, and take corrective action before insecure code reaches production.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Media Release
news-articles
March 17, 2026
March 17, 2026

Secure Code Warrior Launches Trust Agent: AI to Enable Safe, Scalable AI-Driven Development

New AI Software Governance solution makes AI-generated code visible at commit, enforces policy before production, and connects real development behavior to measurable risk reduction.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 13, 2026
March 13, 2026

Security Boulevard: Threat Modeling with AI: A Developer-Driven Boon for Enterprise Security

Developers have long struggled to truly claim a seat at the table in traditional threat modeling programs, but with the right skills, they have the opportunity to wield AI responsibly to seriously cut risk and rework in their codebase.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 9, 2026
March 9, 2026

The AI Journal: Understanding LLM Coding Personalities Is Now Key to Developer Risk Management

AI-generated code may be “made by machine”, but taking a cookie-cutter approach to securing that code would fall well short of mitigating the vulnerabilities LLMs can introduce. Organizations need to establish precise security reviews, with human developers anchoring the process to implement effective security controls while also managing the specific coding temperament of each LLM used. AI-generated code must undergo the same personalized risk assessments as code written by human developers.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 2, 2026
March 2, 2026

SecurityBrief: The security challenges in AI-assisted software development

s artificial intelligence (AI) tools become more widely used in the software development process, their impact on security is becoming clearer. According to recent research, nearly 70% of organisations have discovered vulnerabilities caused by AI tools while one in five have experienced a serious incident as a result of those vulnerabilities.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 2, 2026
March 2, 2026

KBI Media: Eliminating the Technical Debt Caused by AI-Assisted Software Development

According to research company Forrester[1], the tech debt for 75% of organisations will increase to a moderate or high level during this year, due to the rapid expansion of AI usage across a range of areas including software development.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
February 20, 2026
February 20, 2026

Forbes: Security Self-Governance: Addressing The Regulatory Gap In AI-Assisted Software Development

While it’s early into 2026, we’re seeing new research that reveals the extent of cyber risks caused by artificial intelligence (AI)-assisted software development: Nearly 7 in 10 organizations have discovered vulnerabilities introduced by AI-generated code, and 1 in 5 have suffered a serious incident tied directly to the vulnerabilities.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
February 19, 2026
February 19, 2026

ITWire: Why AI Is Dulling Cybersecurity’s Most Important Edge

Artificial intelligence (AI) has rapidly become indispensable to modern software development. From large language models that generate code on demand to agentic systems that automate entire workflows, AI tools promise dramatic gains in productivity and efficiency.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
February 12, 2026
February 12, 2026

SecurityWeek: How to Eliminate the Technical Debt of Insecure AI-Assisted Software Development

Developers must view AI as a collaborator to be closely monitored, rather than an autonomous entity to be unleashed. Without such a mindset, crippling tech debt is inevitable.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
February 9, 2026
February 9, 2026

CSO Online: Software developers: Prime cyber targets and a rising risk vector for CISOs

From technical compromise to AI-driven attacks, cyber criminals increasingly see software developers as prime targets, creating systemic risks CISOs must address.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
January 30, 2026
January 30, 2026

SMBtech: Tech Industry Leaders React To Data Privacy Week 2026

It’s Online Privacy Week, a time of year where individuals and organisations are all reminded to check their digital footprint(s). Some might say that’s a futile gesture at a time where major social media and marketing players know absolutely everything about you and are cheerfully selling all that data to anyone who’ll buy it; when Microsoft is performing every trick in the book to get Windows users to put all their data in the cloud where it’s available for government agencies to snoop upon without letting you know; when a personal computer crisis means many people will be moved on to dumb-client computing landscape where everything from data storage to major processing tasks will be taking place in the cloud; and when people think that clicking ‘Accept’ on website pop-ups does something that meaningfully protects them. But, what do the experts say?

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
January 29, 2026
January 29, 2026

Security brief: AI heightens data privacy risks & reshapes digital trust

Technology and data specialists have warned that artificial intelligence and weak data governance are sharpening privacy risks for organisations, as businesses mark World Data Privacy Day.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
January 27, 2026
January 27, 2026

ITWire: Data Privacy Week 2026

“Data Privacy Week" presents a great reminder for organisations to reassess their customer privacy policies and prioritise transparent data collection in their marketing strategies.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
January 27, 2026
January 27, 2026

Dynamic Business: Data Protection Day 2026: Five experts on the privacy risks threatening your business

Five leading cybersecurity experts warn AI is being integrated faster than security policies can manage the risk, creating urgent privacy gaps for SMEs ahead of Data Protection Day on 28 January.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
January 22, 2026
January 22, 2026

Information Security Buzz: OWASP Top 10 2025: New Enemies, Old Foes, and an Approach to Vulnerability Remediation That Must Evolve

The OWASP Foundation has been a guiding light for security professionals and enthusiasts alike, providing critical, practical advice on the most insidious software vulnerabilities across a plethora of categories and platforms. It has been the first major update since 2021 to the flagship OWASP Top 10 Web Vulnerabilities, and in that time, the industry has been rocked by a stampede of AI technology, tools, and code, each creating a dichotomy of security efficiency and risk for both cybersecurity and software engineering professionals.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
January 22, 2026
January 22, 2026

DEVOPSdigest: What Software Developers Need to Know About Secure Coding and AI Red Flags

The bottom line: AI tools are not safe for enterprise use unless the code output is reviewed and implemented by a security-proficient human. 30% of security experts admit that they don't trust(link is external) the accuracy of code generated by AI itself. That's why security leaders must prioritize the education and upskilling of developer teams, to ensure they have the necessary skills and capabilities to mitigate AI-assisted code vulnerabilities as early as possible. This will lead to the cultivation of a "security first" team culture and safer AI use.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
January 15, 2026
January 15, 2026

Stack Overflow: If you're a Zoomer, this one's for you: Everything Gen Z needs to know about the 2025 tech landscape

Here's the lowdown on all the tech from 2025 that you, dear Zoomer, should know about.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
January 15, 2026
January 15, 2026

SC Media: CISOs can’t wait for the EU AI Act to take shape

CISOs hoping for the EU Artificial Intelligence Act to offer a solid framework for AI governance may be a little confused or disappointed by recent updates surrounding the implementation of AI restrictions.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
January 14, 2026
January 14, 2026

SecurityBrief: Agentic AI double agents expose dangerous security gaps

An alleged nation-state attacker used Claude Code and a range of tools in the developer ecosystem to almost autonomously target specific companies with benign open-source hacking tools at scale. Of the more than thirty attacks, several were successful, and proved that AI agents could indeed execute large-scale, malicious tasks with little to no human intervention.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
January 14, 2026
January 14, 2026

DEVOPSdigest: 2026 DevSecOps Predictions

DEVOPSdigest's Prediction Series continues with 2026 DevSecOps Predictions — Industry experts offer predictions on how DevSecOps will evolve and impact the industry in 2026.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
January 12, 2026
January 12, 2026

ITWire: OWASP Names Latest Top 10 Application Vulnerabilities

The Open Worldwide Application Security Project (OWASP) has unveiled its latest top 10 vulnerabilities list, and it contains some surprising insights into important vulnerability classes.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
December 24, 2025
December 24, 2025

Channel Insider: Cybersecurity Experts Predict AI, Nation-State Threats in 2026

Cybersecurity experts outline 2026 predictions, from AI-driven attacks and quantum risk to nation-state threats, OT security gaps, and automation pressures.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
December 15, 2025
December 15, 2025

Security Journal UK: The rise of AI coding tools and the skills gap they expose

Pieter Danhieux, Co-founder and CEO of Secure Code Warrior warns that while AI coding tools promise speed and efficiency, they also introduce new risks.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
December 15, 2025
December 15, 2025

ITWire: Predictions on State of AI in 2026

2026 is shaping up to be the year AI evolves from instrument to partner, transforming how we work, create and solve problems.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
December 15, 2025
December 15, 2025

Fortune: AI coding tools exploded in 2025. The first security exploits show what could go wrong

While a breach of the tools hasn’t so far caused a wide-scale attack, there have been a few exploits and near-misses, and cyberthreat researchers have discovered critical vulnerabilities in several popular tools that make clear what could go horribly wrong.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
December 10, 2025
December 10, 2025

SMBtech: Australian Tech Industry Leaders Make Their Predictions for 2026

It’s that time of year where the technology industry predictions start rolling-in. Here’s what you can (apparently) expect in 2026.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
December 9, 2025
December 9, 2025

Technology Decisions: The importance of effective security when deploying AI tools

The concern is straightforward: development teams may place undue confidence in AI tools that are not equipped to interpret the nuanced context in which many security vulnerabilities arise. Large language models, for instance, can struggle to understand an application’s authentication or authorisation architecture, increasing the likelihood of missing critical safeguards.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
December 8, 2025
December 8, 2025

ITWire: Five Steps to Improve the Security of AI Developed Code

Industry guidance on managing the risks of AI-generated code increasingly points to the same conclusion: effective safeguards rely on close collaboration between humans and machines, with developers remaining firmly in the loop.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
December 1, 2025
December 1, 2025

SecurityBrief Australia: Agentic AI to transform APJ businesses & security by 2026

Agentic artificial intelligence (AI) is set to reshape the enterprise landscape in the Asia-Pacific and Japan (APJ) region in 2026, according to industry executives. Organisations are expected to embrace increasingly autonomous software agents, raising both productivity and new categories of risk across business domains.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
December 1, 2025
December 1, 2025

SC Magazine UK: Why Firms Can’t Ignore Agentic AI

How big a threat does agentic AI pose to businesses currently? And what should security leaders be doing to address the risk?

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
November 25, 2025
November 25, 2025

VMBlog: Cybersecurity Predictions: What AI will (and won't) do for us in 2026

My co-founder and CTO, Matias Madou, Ph.D., and I consulted our crystal ball (or should that be our NVIDIA GPUs?), and this is what we believe 2026 has in store for us from an AI security perspective.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
November 21, 2025
November 21, 2025

SD Times: Pumping the Brakes on Agentic AI Adoption in Software Development

An alleged nation-state attacker used Claude Code and a range of tools in the developer ecosystem, namely Model Context Protocol (MCP) systems, to almost autonomously target specific companies with benign open-source hacking tools at scale. Of the over thirty attacks, several were successful, and proved that AI agents could indeed execute large-scale, malicious tasks with little to no human intervention. Maybe it’s time we went a little slower, stopped to reflect on what is at stake here, and how best to defend ourselves.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
November 20, 2025
November 20, 2025

AIthority: Building Secure and Ethical AI Practices in Software Development

AI is now a key piece of modern software development. More than four out of five developers use AI coding tools daily or weekly – with many relying on multiple tools in parallel. Teams must understand where automation ends, and where accountability begins.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
November 18, 2025
November 18, 2025

SC Media: Secure Coding as Critical Thinking Instead of Vulnspotting – Matias Madou – ASW #357

Secure code should be grounded more in concepts like secure by default and secure by design than by “spot the vuln” thinking. Matias Madou shares his experience in secure coding training and the importance of teaching critical thinking. He also discusses why critical thinking is so closely related to threat modeling and how LLMs can be a tool for helping developers get beyond the superficial advice of, “Think like an attacker.”

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
November 17, 2025
November 17, 2025

Forbes: How CISOs Can Increase Their Influence In AI-Obsessed Boardrooms

Organizations are at an inflection point driven by the explosive adoption of AI, which promises significant changes in how businesses operate. That leaves CISOs on unsteady ground. As the gatekeepers of their organization’s data and access, they must ensure the security of the enterprise. However, the prospects of a headlong charge into wide-ranging, and possibly unchecked, use of AI could create a flood of security issues that many CISOs, under their current organizational structures, aren’t equipped to handle.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
November 14, 2025
November 14, 2025

Security Boulevard: Security Degradation in AI-Generated Code: A Threat Vector CISOs Can’t Ignore

Security leaders and developers alike are already acutely aware that AI coding assistants and agentic agents can introduce vulnerabilities into the code they generate. A recent study unveiled another critical concern to keep them up at night — LLMs used for making iterative code improvements may introduce new vulnerabilities over time, even when explicitly asked to make code more secure.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
November 13, 2025
November 13, 2025

Information Week: Make your own mandate: How CISOs can implement GenAI governance

Government bodies are trying to develop rules and regulations for safe AI use, but enterprises can't afford to wait. They need to address the risks now.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
November 12, 2025
November 12, 2025

CFOtech Australia: How women can continue to foster fulfilling high-tech careers in the AI age

In the sphere of cybersecurity in general and application security in particular, human oversight remains an absolute 'must' to harness the benefits of AI productivity.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
November 11, 2025
November 11, 2025

Tanium: Vibe coding may be unstoppable—but here’s how to rein in the risks

Like the meteoric rise of ChatGPT, vibe coding is all anybody can talk about this year. In fact, it just became a word in the dictionary. But beware the boom: These new AI coding tools offer speed, savings—and astounding vulnerabilities.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
November 11, 2025
November 11, 2025

[PODCAST] Stack Overflow: AI code means more critical thinking, not less

Ryan is joined by Secure Code Warrior’s co-founder and CTO Matias Madou to discuss the implications of LLMs’ variability on code security, the future of developer training as AI coding assistants become more popular, and the importance of critical thinking—especially for junior developers—in the age of AI.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
November 9, 2025
November 9, 2025

Cybersecurity Insiders: Use It or Lose It: Overreliance on AI Diminishes Critical Cybersecurity Thinking Skills

Software developers reap a host of benefits from making use of artificial intelligence assistants, whether in the form of Large Language Model (LLM) code creators or agentic AI agents. But recent reports, highlighted by a new study at MIT, warn that heavy use of AI can result in a loss of critical thinking skills among users.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
November 3, 2025
November 3, 2025

Security Week: How Software Development Teams Can Securely and Ethically Deploy AI Tools

To deploy AI tools securely and ethically, teams must balance innovation with accountability—establishing strong governance, upskilling developers, and enforcing rigorous code reviews.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
November 3, 2025
November 3, 2025

Dark Reading: AI Developed Code: 5 Critical Security Checkpoints for Human Oversight

To write secure code with LLMs developers must have the skills to use AI as a collaborative assistant rather than an autonomous tool, Madou argues.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
October 23, 2025
October 23, 2025

Techstrong.tv: Secure Code Warrior in the Age of AI with Pieter Danhieux

Secure Code Warrior’s Chief Executive Officer, Chairman, and Co-Founder Pieter Danhieux explains his transition from offensive cybersecurity to promoting secure software development. Founded in 2015, Secure Code Warrior aims to help developers build secure code from the start, a practice Danhieux and host Alan Shimel agree is more effective than fixing vulnerabilities later. The two also discuss the impact of AI on software development, noting that while AI increases coding speed and accessibility for more people, the security of AI-generated code still lags. They emphasize the growing need for developers to master secure coding practices amidst these technological advancements.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
October 20, 2025
October 20, 2025

SMBtech: Cybersecurity Awareness Month 2025: Australian Industry Reactions and Commentary

October is Australia’s Cybersecurity Awareness Month, the annual reminder for Aussies to stay vigilant online. This year’s theme, ‘Building our cyber safe culture’ once again highlights the importance of taking personal responsibility for staying secure in an increasingly digital world.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
October 16, 2025
October 16, 2025

SecurityBrief: SMEs urged to cut data & boost cyber defences as attacks rise

Cybersecurity Awareness Month has brought renewed attention to the increasing risks faced by organisations of all sizes, with a particular focus on the growing threat to small and medium-sized enterprises (SMEs) in Australia and the UK.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
October 14, 2025
October 14, 2025

ITBrief: Our biggest security risk isn’t our software - it’s our thinking

In the world of cybersecurity, we face creative and unconventional threats every day. But our greatest vulnerability isn't a flaw in our software, but a flaw in our collective thinking.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
October 10, 2025
October 10, 2025

KBI Media: Overcoming the Security Risks of Using AI In Software Development

Development teams face relentless pressure to deliver, yet they must continue to prioritise building secure, high-quality software. Leaders play a crucial role in reinforcing how a Secure by Design approach, supported by observability, benchmarking, and ongoing education, directly enhances code quality. By embedding these practices, organisations can close governance gaps and fully capture the benefits of AI-driven productivity and efficiency, while reducing the risk of security flaws or costly rework during the SDLC.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
October 1, 2025
October 1, 2025

In AI Today: The looming security challenges posed by Agentic AI

While agentic AI holds the promise of delivering significant business benefits, it also comes with significant caveats. The technology’s capabilities and autonomy present a potent enterprise threat vector beyond the realm of existing security concerns.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 25, 2025
September 25, 2025

Help Net Security: Secure Code Warrior gives CISOs visibility into developer AI tool usage

Secure Code Warrior has launched a beta program to expand the AI capabilities of its Trust Agent product. The new offering provides CISOs with security traceability, visibility, and governance over developers’ use of AI coding tools.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 25, 2025
September 25, 2025

Cyber Risk Leaders: Secure Code Warrior Launches AI Traceability

Secure Code Warrior have released a beta program for a major expansion of AI capabilities within its Trust Agent product. The upgrade, collectively referred to as Trust Agent: AI, leverages a combination of key signals, including AI coding tool usage, vulnerability data, code commit data and developer secure coding skills, to provide visibility into how AI development tools are impacting risk within the software development lifecycle (SDLC).

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 25, 2025
September 25, 2025

CSO Online: AI coding assistants amplify deeper cybersecurity risks

Although capable of reducing trivial mistakes, AI coding copilots leave enterprises at risk of increased insecure coding patterns, exposed secrets, and cloud misconfigurations, research reveals.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Media Release
news-articles
September 24, 2025
September 24, 2025

Secure Code Warrior Launches Industry-First AI Traceability to Enable Secure Developers and Supercharge Safe Productivity

New capabilities in SCW Trust Agent provide visibility and control over LLM usage for security leaders and CISOs.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 24, 2025
September 24, 2025

ITOps Times: Secure Code Warrior announces new solution that provides visibility and governance for AI coding tools

Secure Code Warrior is trying to provide organizations with greater visibility and control over developers’ use of AI coding tools with the launch of its new solution, Trust Agent: AI.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 24, 2025
September 24, 2025

DevOps Digest: Secure Code Warrior Introduces AI Traceability

Secure Code Warrior announced the launch of a beta program for a major expansion of AI capabilities within its Trust Agent product.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 24, 2025
September 24, 2025

CyberWire: Business Briefing for 09.24.25

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 24, 2025
September 24, 2025

Betanews: AI is an even playing field -- how secure by design can tip the scale [Q&A]

Vibe coding is currently all the rage, with more than 97 percent of respondents to a survey earlier this year reporting having used AI coding tools at work. The adoption of these tools only continues to grow but it comes with a catch, attackers are also employing the same techniques. We spoke to Pieter Danhieux, co-founder and CEO of Secure Code Warrior, to discuss how vibe coding is redefining the software development landscape, how malicious actors are also leveraging this technology and the need for organizations to implement secure by design strategies from the outset.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 22, 2025
September 22, 2025

SD Times: Benchmarking AI-assisted developers (and their tools) for superior AI governance

If the tech stack lacks tools that oversee not only developer security proficiency, but also the trustworthiness of approved AI coding companions each developer uses, then it is likely that efforts to uplift the overall security program and the developers working within it will be short of the appropriate data insights to effect change.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 22, 2025
September 22, 2025

ITWire: The Benefits and Risks of Using AI Tools in Software Development

The process of software development is undergoing a period of expedited change. Thanks to massive advances in artificial intelligence (AI) technology, projects can be completed more rapidly and by people with little or no prior experience.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 10, 2025
September 10, 2025

LeadDev: Ethics are being forgotten as the AI race heats up

Is the tech industry capable of the change needed to curb ethical and environmental concerns?

Learn More
No items found.
No items found.
This is some text inside of a div block.
Media Release
news-articles
September 9, 2025
September 9, 2025

Secure Code Warrior Expands Commitment to Secure by Design Best Practices with Free Secure Code Video Series for Developers

Launch of new 12-week video series on AI/LLM security empowers developers to safely adopt AI coding and mitigate emerging security risks.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 9, 2025
September 9, 2025

CSO Online: When AI nukes your database: The dark side of vibe coding

As developers lean on Copilot and GhostWriter, experts warn of insecure defaults, hallucinated dependencies, and attacks that slip past traditional defenses.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 8, 2025
September 8, 2025

The AI Journal: Resilience and Developer Risk Management: Two Pillars of Success in the Era of Secure by Design and AI Coding

Change is afoot in cybersecurity governance, and it couldn’t come at a more transformative time for security leaders worldwide. The White House issued a recent Executive Order (EO) designed to “reprioritize cybersecurity efforts to protect America”, and with it, reduce friction related to overzealous government oversight to focus on protecting critical digital assets and enhanced secure technology practices. Coupled with significant cuts to CISA, one could be forgiven for being apprehensive of the right approach going forward, especially in the wake of rapid AI technology progression and Secure by Design initiatives.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 5, 2025
September 5, 2025

SecurityWeek: How to Close the AI Governance Gap in Software Development

Widespread adoption of AI coding tools accelerates development—but also introduces critical vulnerabilities that demand stronger governance and oversight.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 3, 2025
September 3, 2025

teiss: When regulations aren’t enough

Pieter Danhieux at Secure Code Warrior explains why “Secure by Design” has emerged as mission critical for software development

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 2, 2025
September 2, 2025

Information Age: Vibe coding is a hot skill – and security experts are worried

GenAI tools are building insecure apps faster than ever.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
August 26, 2025
August 26, 2025

CXFocus Magazine: Going above and beyond in 2026

Today’s customers are an exacting lot with little tolerance for suppliers that fail to meet their ever-increasing expectations. Almost 94 per cent of Australian consumers stopped purchasing from at least one company after a negative experience, according to CPM’s 2025 The State of Customer Experience in Australia Report.

Learn More
No items found.
No items found.
This is some text inside of a div block.
eBook
downloads
July 21, 2026
July 21, 2026

Which AI Model Codes Most Securely?

See how 16 leading AI models actually code, scored across 11 real-world frameworks and 1,760 codebases — the framework matters as much as the model.

Learn More
AI Governance
No items found.
This is some text inside of a div block.
One Pager
downloads
July 7, 2026
July 7, 2026

Citizen AI by Secure Code Warrior

AI risk doesn't stop at engineering. Get the one-pager on Citizen AI — build AI literacy and safe habits across your whole workforce.

Learn More
Engineering Teams
No items found.
This is some text inside of a div block.
Whitepaper
downloads
June 23, 2026
June 23, 2026

Understand how AI is transforming software development—and how security must evolve with it.

From AI autocomplete to autonomous agents—explore how software development is evolving and what it means for security, governance, and your team.

Learn More
No items found.
No items found.
This is some text inside of a div block.
One Pager
downloads
June 9, 2026
June 9, 2026

SCW named in new Agentic Coding Security category

Gartner named SCW twice in the 2026 Hype Cycle for Secure Software Engineering. Here's why it matters for AI-driven development.

Learn More
Security Teams
No items found.
This is some text inside of a div block.
Guide
downloads
May 15, 2026
May 15, 2026

SCW Learning Content for KnowBe4

Secure Code Warrior content available through KnowBe4 helps technical teams build secure coding and AI governance awareness through structured learning covering OWASP Top 10 risks, AI-assisted development, and modern secure coding practices.

Learn More
Learning & Development
No items found.
This is some text inside of a div block.
One Pager
downloads
May 13, 2026
May 13, 2026

Secure AI-driven development with KnowBe4 + Secure Code Warrior

Secure Code Warrior joins KnowBe4 to bring hands-on secure coding training into security awareness programs — covering OWASP, AI development, and 10 languages.

Learn More
Engineering Teams
Security Teams
No items found.
This is some text inside of a div block.
One Pager
downloads
April 1, 2026
April 1, 2026

Trust Agent:AI - Secure and scale AI-Drive development

AI is writing code. Who’s governing it? With up to 50% of AI-generated code containing security weaknesses, managing AI risk is critical. Discover how SCW's Trust Agent: AI provides the real-time visibility, proactive governance, and targeted upskilling needed to scale AI-driven development securely.

Learn More
No items found.
No items found.
This is some text inside of a div block.
One Pager
downloads
March 23, 2026
March 23, 2026

The Power of OpenText Application Security + Secure Code Warrior

OpenText Application Security and Secure Code Warrior combine vulnerability detection with AI Software Governance and developer capability. Together, they help organizations reduce risk, strengthen secure coding practices, and confidently adopt AI-driven development.

Learn More
No items found.
No items found.
This is some text inside of a div block.
One Pager
downloads
March 19, 2026
March 19, 2026

Secure Code Warrior corporate overview

Secure Code Warrior is an AI Software Governance platform designed to enable organizations to safely adopt AI-driven development by bridging the gap between development velocity and enterprise security. The platform addresses the "Visibility Gap," where security teams often lack insights into shadow AI coding tools and the origins of production code.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Brochure
downloads
March 11, 2026
March 11, 2026

Secure code training topics & content

Our industry-leading content is always evolving to fit the ever changing software development landscape with your role in mind. Topics covering everything from AI to XQuery Injection, offered for a variety of roles from Architects and Engineers to Product Managers and QA. Get a sneak peek of what our content catalog has to offer by topic and role.

Learn More
No items found.
No items found.
This is some text inside of a div block.
One Pager
downloads
January 20, 2026
January 20, 2026

Cyber Resilience Act (CRA) Aligned Learning Pathways

SCW supports Cyber Resilience Act (CRA) readiness with CRA-aligned Quests and conceptual learning collections that help development teams build the Secure by Design, SDLC, and secure coding skills aligned with the CRA’s secure development principles.

Learn More
No items found.
No items found.
This is some text inside of a div block.
eBook
downloads
December 23, 2025
December 23, 2025

OWASP Top 10 2025 eBook

Want to dominate the OWASP Top 10? Download the No-BS Guide to Defending Your Applications Against the OWASP Top 10:2025

Learn More
No items found.
No items found.
This is some text inside of a div block.
One Pager
downloads
September 24, 2025
September 24, 2025

Trust Agent: AI by Secure Code Warrior

This one-pager introduces SCW Trust Agent: AI, a new set of capabilities that provide deep observability and governance over AI coding tools. Learn how our solution uniquely correlates AI tool usage with developer skills to help you manage risk, optimize your SDLC, and ensure every line of AI-generated code is secure.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
July 9, 2025
July 9, 2025

AI Coding Assistants: A Guide to Security-Safe Navigation for the Next Generation of Developers

Large language models deliver irresistible advantages in speed and productivity, but they also introduce undeniable risks to the enterprise. Traditional security guardrails aren’t enough to control the deluge. Developers require precise, verified security skills to identify and prevent security flaws at the outset of the software development lifecycle.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
April 28, 2025
April 28, 2025

Secure by Design: Defining Best Practices, Enabling Developers and Benchmarking Preventative Security Outcomes

In this research paper, Secure Code Warrior co-founders, Pieter Danhieux and Dr. Matias Madou, Ph.D., along with expert contributors, Chris Inglis, Former US National Cyber Director (now Strategic Advisor to Paladin Capital Group), and Devin Lynch, Senior Director, Paladin Global Institute, will reveal key findings from over twenty in-depth interviews with enterprise security leaders including CISOs, a VP of Application Security, and software security professionals.

Learn More
No items found.
No items found.
This is some text inside of a div block.
One Pager
downloads
April 16, 2025
April 16, 2025

Turn Awareness Into Action This Cyber Awareness Month

This October, turn awareness into action. Make Cyber Awareness Month memorable for your developers with a high-impact, high-participation experience—led by Secure Code Warrior's Professional Services team.

Learn More
No items found.
No items found.
This is some text inside of a div block.
One Pager
downloads
April 2, 2025
April 2, 2025

Professional Services - Accelerate with expertise

Secure Code Warrior’s Program Strategy Services (PSS) team helps you build, enhance, and optimize your secure coding program. Whether you're starting fresh or refining your approach, our experts provide tailored guidance.

Learn More
No items found.
No items found.
This is some text inside of a div block.
One Pager
downloads
March 19, 2025
March 19, 2025

Quests: Industry leading learning to keep developers ahead of the game mitigating risk.

Quests is a learning platform that helps developers mitigate software security risks by enhancing their secure coding skills. With curated learning paths, hands-on challenges, and interactive activities, it empowers developers to identify and prevent vulnerabilities.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
October 15, 2024
October 15, 2024

Benchmarking Security Skills: Streamlining Secure-by-Design in the Enterprise

The Secure-by-Design movement is the future of secure software development. Learn about the key elements companies need to keep in mind when they think about a Secure-by-Design initiative.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Video
downloads
August 15, 2024
August 15, 2024

Trust Agent in action

SCW Trust Agent gives you the tools you need to deliver secure code faster, ensuring developers have the knowledge and skills to implement security best practices in the specific programming language of their code commits.

Learn More
No items found.
No items found.
This is some text inside of a div block.
One Pager
downloads
July 23, 2024
July 23, 2024

Trust Agent by Secure Code Warrior

Are you confident that every line of code committed is backed by a developer with the necessary secure coding skills? Many organizations face this critical gap, leading to preventable vulnerabilities and reduced development velocity. SCW Trust Agent offers unparalleled visibility across your code repositories, analyzing commits directly against developer security proficiency. With policy gates, Trust Agent enables you to apply governance at the commit level, with policies to ensure code contributors have the secure code knowledge you require for your business-critical applications. Download our one-pager today to learn how SCW Trust Agent can help you strengthen your security posture, optimize your development lifecycle, and significantly reduce vulnerabilities.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Video
downloads
June 28, 2024
June 28, 2024

SCW Trust Score - The best way to build, measure, and optimize your security program

Learn more about Secure Code Warrior Trust Score, the best way to build, measure and optimize your security program.

Learn More
Security Teams
No items found.
This is some text inside of a div block.
One Pager
downloads
April 26, 2024
April 26, 2024

Trust Score by Secure Code Warrior

Discover SCW Trust Score, an industry-first benchmark to help measure your security program's effectiveness. Benchmark against industry peers, optimize your security posture, and drive data-driven decisions for enhanced software security.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
April 26, 2024
April 26, 2024

Preparing for PCI-DSS 4.0 Compliance

Evaluate your software security infrastructure to support PCI-DSS requirements

Learn More
No items found.
No items found.
This is some text inside of a div block.
Guide
downloads
April 5, 2024
April 5, 2024

The ultimate guide to security trends in financial services

Financial services institutions face an array of challenges that hinge on their ability to make efficient, effective use of technology in a fast-evolving financial world. Organizations are operating in a time of rapid changes—both internally and across the industry—in a highly competitive, cloud-based business environment. In pursuing their ongoing digital transformations, for example, organizations are working to get around the organizational friction that hinders investments into new technologies, such as artificial intelligence, that could accelerate payment processes and other procedures.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Report
downloads
March 24, 2024
March 24, 2024

Predicts 2024: Generative AI is reshaping software engineering

Explore how generative AI is revolutionizing software development across the SDLC, as highlighted in Gartner's report, advising Application Security leaders on the importance of scrutinizing AI-generated software.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
March 7, 2024
March 7, 2024

PCI DSS 4.0 Unraveled

This guide offers practical strategies to engage development teams in PCI DSS 4.0 compliance. It outlines the modern developer's requirements for compliance, strategies for security professionals and development managers to collaborate on developer-focused security programs, and step-by-step advice on effective training initiatives to mitigate vulnerabilities permanently.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
March 4, 2024
March 4, 2024

Developer security maturity quiz

Secure Code Warrior outlines three security maturity stages for developer teams: defining, adopting, and scaling. How security-savvy are your developers? Take our quiz to find out.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
February 22, 2024
February 22, 2024

Script Testing please ignore

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Infographic
downloads
February 1, 2024
February 1, 2024

ROI of Secure Code Learning

Explore the long-term ROI of secure coding education. Learn how investing in agile, proactive learning strategies enhances security and offers cost-effective protection against today's cyber threats.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
January 30, 2024
January 30, 2024

Why developers need security skills to effectively navigate AI development tools

The promise of artificial intelligence writing complex code at the touch of a button is intriguing, but the reality is that AI will need a lot of help from human developers to craft truly secure and reliable code.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Infographic
downloads
January 29, 2024
January 29, 2024

Top 10 predictions for 2024

Check out what SCW experts are predicting in the world of cybersecurity and software security in 2024.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
November 30, 2023
November 30, 2023

Agile learning platforms: ROI of developer-driven security

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
September 12, 2023
September 12, 2023

Forge your fortress: Six essential pillars of developer enablement in software security

In this white paper, security expert and Secure Code Warrior CTO & Co-Founder Matias Madou, Ph.D. will discuss:The six pillars you need to roll out effective security education and enablement for your development cohort. Lessons learned from ten executives implementing security programs at the enterprise level, and common pitfalls to avoid on your road to success.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Video
downloads
September 1, 2023
September 1, 2023

The Agile Learning Platform

Empower your development team with Secure Code Warrior, the agile learning platform designed to tackle the evolving challenges of application security. Stay ahead in the battle against security breaches and regulatory complexities with our industry-leading, up-to-date content, ensuring a proactive and engaging approach to secure code education.

Learn More
No items found.
No items found.
This is some text inside of a div block.
eBook
downloads
August 14, 2023
August 14, 2023

OWASP Top 10 API 2023: A tactical guide for smart developers

Explore the Latest in API Security. Dive into our 2023 OWASP Top 10 guide. Elevate your coding skills, tackle vulnerabilities, and stay agile in the ever-evolving world of API development. Download now for an insightful journey!

Learn More
No items found.
No items found.
This is some text inside of a div block.
eBook
downloads
July 17, 2023
July 17, 2023

The secure code learning blueprint

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
eBook
downloads
December 13, 2022
December 13, 2022

Your handbook to developer-driven security and agile learning

Start shifting left with developer-driven security. This handbook will show you how to engage with developers to upskill and increase their security knowledge, as well as how to go about measuring impact to write more secure code.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
July 28, 2022
July 28, 2022

Software is your colleague: A new perspective to strengthen access control and API security

APIs act like flawed humans; is treating them as such the key to better cybersecurity?

Learn More
No items found.
No items found.
This is some text inside of a div block.
eBook
downloads
July 21, 2022
July 21, 2022

The secure code training blueprint

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Infographic
downloads
July 1, 2022
July 1, 2022

The developer security maturity matrix

Building security maturity in development teams can be approached in stages. Based on our experience with 400+ organizations, we've identified common practices and traits in three different stages of security maturity - defining, adopting, and scaling.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
July 1, 2022
July 1, 2022

The importance of security maturity in developer teams

By assessing and understanding a development team’s security maturity, organizations can formulate a plan with the right stakeholders, process, and technology to build and support the necessary skills and capabilities.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Infographic
downloads
July 1, 2022
July 1, 2022

Development Team Security Maturity

Security maturity in development teams should be a continuous cycle of improvement with realistic goals along the way. As development teams increase their security maturity, they reduce the amount of rework and minimize risk, while also allowing automation to help create efficiency in the SDLC.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Report
downloads
June 30, 2022
June 30, 2022

Report: The state of developer driven security 2022

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
June 30, 2022
June 30, 2022

Whitepaper: The challenges (and opportunities) to improve software security

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Brief
downloads
June 20, 2022
June 20, 2022

Brief: A cohesive approach to developer-led security

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
June 16, 2022
June 16, 2022

Security and privacy at Secure Code Warrior

Secure Code Warrior is committed to safeguarding our information assets, and those of our customers, against misuse, abuse or compromise. We adopt and foster a risk-based approach to managing information security, with the goal of consistently implementing appropriate risk management and mitigation measures to address the threat landscape posed to the security of the platform, customer data and information. As Secure Code Warrior continues to succeed as a major player providing services to our customers, we will continue to build security capabilities as part of our security and privacy programs. Read our whitepaper for more information.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Brief
downloads
May 3, 2022
May 3, 2022

Shift left (and achieve compliance) with repeatable secure coding skills

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Brief
downloads
May 3, 2022
May 3, 2022

Defining secure code

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
February 17, 2022
February 17, 2022

Why you need more than scanning tools to create secure code

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
eBook
downloads
February 14, 2022
February 14, 2022

Your guide to defense against the dark art of zero-day attacks

Zero-day attacks can be the stuff of nightmares, but when an organization commits to using all available tools in their security arsenal towards a preventative strategy, security professionals can sleep a little easier.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Guide
downloads
January 14, 2022
January 14, 2022

A plan to upskill and engage your developers

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
January 13, 2022
January 13, 2022

The preventative, developer-driven approach to software security

Learn more about how security-aware developers represent a vast and largely untapped resource that can support cyber defenses by consistently standing against modern threats.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
November 11, 2021
November 11, 2021

Security and Privacy Whitepaper

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
October 19, 2021
October 19, 2021

Convince Your CISO/CTO Kit (for starting a demo)

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
eBook
downloads
September 24, 2021
September 24, 2021

OWASP Top 10 API: Strategies for Smart Developers

Download the practical guide to defeating common API security baddies in your code.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Guide
downloads
September 20, 2021
September 20, 2021

How to unify your security and development teams to stand together against security risk

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
August 4, 2021
August 4, 2021

How AppSec can reduce vulnerabilities and achieve compliance - leaving them free to tackle larger beasts

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Guide
downloads
July 28, 2021
July 28, 2021

Buyers Checklist: Secure Development Learning Platforms

Buyer’s Checklist: Secure Development Learning Platforms is aimed at decision makers and technology buyers looking to evaluate secure development learning platforms.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
July 18, 2021
July 18, 2021

Shared Assessments SIG Lite Questionnaire

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
July 18, 2021
July 18, 2021

SCW Pen Test Summary

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
July 18, 2021
July 18, 2021

SCW Cyber Insurance Certificate

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
June 4, 2021
June 4, 2021

Shifting from reaction to prevention: The changing face of software security 2021 - Whitepaper

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
June 3, 2021
June 3, 2021

Cybersecurity Executive Order: A deliberate approach to improve software security with developer skills

While this Executive Order for touches on many aspects of functional cybersecurity, it specifically outlines, for the first time, the impact of developers, and the need for them to have verified security skills and awareness.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
May 18, 2021
May 18, 2021

FSQS-NL Certificate

Secure Code Warrior is now FSQS-NL registered. This registration is an important milestone in our continuous efforts to being compliant with regulations within the financial industry.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
May 17, 2021
May 17, 2021

Platform Architecture Diagram

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
May 16, 2021
May 16, 2021

Information Security Policy

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
May 16, 2021
May 16, 2021

CAIQ Questionnaire

Secure Code Warrior has completed a publicly available Consensus Assessment Initiative Questionnaire (CAIQ), based on the results of our due diligence self-assessment.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
May 12, 2021
May 12, 2021

The DevSecOps Super Bowl: How security champions can support your team to victory against late-stage vulnerabilities

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
March 16, 2021
March 16, 2021

Executive Roundtable Whitepaper - Visma & Blue Prism

How has 2020 changed the way we look at software security, an executive roundtable with Visma.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
March 9, 2021
March 9, 2021

The women of mimmit koodaa movement dive into secure coding

Mimmit Koodaa (women who code in Finland) tell us about their secure coding experiences.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
March 9, 2021
March 9, 2021

Teams in a global financial institution go head-to-head in secure coding contest.

See how a global financial organization promoted the importance of securing their banking applications across the world. With fun interactive tournaments.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Brochure
downloads
February 15, 2021
February 15, 2021

Missions - Experience the impact of poor code in real-world simulations

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Brochure
downloads
February 15, 2021
February 15, 2021

Courses - Build Secure Coding Skills and Competency

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Video
downloads
January 1, 2021
January 1, 2021

A Step-By-Step Guide to Tournaments

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Engineering Teams
No items found.
This is some text inside of a div block.
eBook
downloads
January 1, 2021
January 1, 2021

Your Battle Plan to Defeat the OWASP Top 10

The ten most common security vulnerabilities don’t stand a chance against secure development superheroes like you. This free eBook is your ultimate field guide to understanding each infamous entry in the OWASP Top 10 2021, gaining insight into how each bug operates.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
January 1, 2021
January 1, 2021

Triumph with OWASP and Secure Code Warrior Tournaments - Whitepaper

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Brochure
downloads
January 1, 2021
January 1, 2021

Tournaments - Build organizational awareness and developer engagement, making secure coding top of mind

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
eBook
downloads
January 1, 2021
January 1, 2021

The Infamous 8: Infrastructure as Code Vulnerabilities to Find and Fix

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
January 1, 2021
January 1, 2021

The Five-Step Road to DevSecOps Success: How AppSec Professionals Can Thrive in Their Dream Team

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
January 1, 2021
January 1, 2021

The Fastest and Easiest Way to Improve Your Software Security Program

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Guide
downloads
January 1, 2021
January 1, 2021

The Creative CISO's Guide to Transforming Their Security Program

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
January 1, 2021
January 1, 2021

Take the pain out of PCI-DSS Compliance Whitepaper

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
January 1, 2021
January 1, 2021

Introduction to Secure Code Warrior

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
January 1, 2021
January 1, 2021

Empowering developers to write secure code

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Brochure
downloads
January 1, 2021
January 1, 2021

Empower developers to be the first line of defense and grow your organization's security posture

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Brochure
downloads
January 1, 2021
January 1, 2021

Assessments - Benchmark the secure coding skills of your developers, and build your security posture.

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Guide
downloads
January 1, 2021
January 1, 2021

AppSec Checklist

Download the AppSec checklist and see if you’re in need of a security lifeline.

Learn More
No items found.
No items found.
This is some text inside of a div block.
eBook
downloads
January 1, 2021
January 1, 2021

6 Critical Steps Before You Roll Out a Security Uplift Program

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
January 1, 2021
January 1, 2021

2019 AppSec Trend Report

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
December 1, 2019
December 1, 2019

ISO 27001 Compliance Certificate

Secure Code Warrior is ISO 27001:2013 certified

Learn More
No items found.
No items found.
This is some text inside of a div block.
No resources found. Try another search!