Conference
|
Nov 5, 2026
OWASP グローバル AppSec USA
Register
Conference
|
Oct 29, 2026
OWASP LASCON
Register
Conference
|
Sep 24, 2026
Gartner セキュリティ & リスクマネジメント サミット 2026
Register
Blog
|
Aug 24, 2026
Enabler 7: Developer Recognition
read more
Blog
|
Jul 29, 2026
Named in the Gartner® Hype Cycle™ for Application Security 2026
read more
Blog
|
Jul 21, 2026
Are you a CISO or Engineering Leader worried about the Security and Cost of LLM code generation?
read more
Case Study
|
Jan 6, 2026
Kamer van Koophandel Sets the Standard for Developer-Driven Security at Scale
read more
Case Study
|
Oct 8, 2025
Going for Gold: Soaring Secure Code Standards at Paysafe
read more
Case Study
|
Aug 15, 2024
DigitalOcean Decreases Security Debt with Secure Code Warrior
read more
News Article
|
Aug 27, 2026
Forbes: A New Frontier: NSA Proposes “Security By Design” Considerations For AI Enablement
read more
Media Release
|
Aug 21, 2026
Techpartner.news: Secure Code Warrior introduces framework to govern AI use in software development
read more
News Article
|
Aug 19, 2026
DevOps.com: Are LLMs Equally Good (or Bad) at Building Secure Software?
read more
eBook
|
Jul 21, 2026
Which AI Model Codes Most Securely?
read more
One Pager
|
Jul 7, 2026
Citizen AI by Secure Code Warrior
read more
Whitepaper
|
Jun 23, 2026
Understand how AI is transforming software development—and how security must evolve with it.
read more
Resource library

Insights from experts shaping secure development

Access expert content on secure coding, AI governance, and software risk management.

Filters
clear
Showing 0 of 100
By Category
By Role
No items found.
By Product
No items found.
Button Text
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
Webinar
events-webinars
January 11, 2024
March 20, 2023

サイバーレジリエンス法への備えとして SBOM が重要である理由

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
March 28, 2022

大手ヘルスケアプロバイダーが開発者主導のアプローチでセキュリティ文化を変化させた方法

Contrast Security の Jeff Williams と Secure Code Warrior の Matias Madou による、ヘルスケアプロバイダーの文化変革に関する対話をお聞きください。

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
July 6, 2020

組み込みシステムとチームの能力強化

IoT や生産システムの自動制御・管理は、組み込みシステム開発を加速させている要因の一部です。しかし、組み込みソフトウェアへの依存度が高まる中、セキュリティ上の影響と軽減策はどうあるべきでしょうか?

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
January 18, 2021

コンプライアンスを超えて:魅力的なアプリケーションセキュリティを提供するヒント

開発チームはアプリケーションセキュリティトレーニングを単なる形式的な作業として扱っていませんか?開発者が自発的に参加するトレーニングプログラムを作成するためのヒントをご紹介します!

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
October 8, 2020

素晴らしい SOC 2 報告書を取得するためのベストプラクティス

SOC報告書プロジェクトに取り組む際、非常に圧倒されることがあります。そのため、業界の専門家と協力してSOC2報告書を取得するための主要なヒントを話し合いました。

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
March 17, 2021

2021 HMG Live! シリコンバレー CISO エグゼクティブ・リーダーシップ・サミット

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
July 14, 2021

ウェビナー:DevOpsからDevSecOpsへ:最初から品質と安全性の高い開発を提供

当社の専門家が、SDLCにセキュリティトレーニングとアプリケーションセキュリティを実装するための主要な考慮事項、ゲーミフィケーション学習を通じて開発者を引き込む方法、ダウンタイムや膨大なコストをかけずにセキュリティテストを組み込む方法について議論します。

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
November 8, 2021

コースにおけるウォークスルーの深掘り

新しいウォークスルーとミッション(Walkthrough & Missions)の没入型ハンズオントレーニングアクティビティが、開発者のエンゲージメントを高め、実績のある段階的学習アプローチでスキルを順次向上させる方法をご紹介します。

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
March 23, 2021

リスキリング:AppSecセキュリティのギャップを埋める欠けたピース

Zipのセキュリティ責任者であるPeter Robinson氏と、Secure Code Warriorの共同創業者兼AppSecトレーナーであるJaap Singhによる、セキュリティのギャップを埋めるために従業員のサイバーセキュリティスキルを向上させることが不可欠である理由に関する深い議論をお聞きください。

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
March 20, 2023

開発者主導のセキュリティのROI

テックスタックや追加のトレーニングプログラムに投資する際、誰もが優れた投資対効果(ROI)を望みますが、セキュリティに関しては、単純なROI計算を超えた長期的な視点が必要です。開発者主導のセキュリティ投資が、高額な侵害費用や生産性の損失を削減し、積極的でコスト効率の高い戦略を生み出す方法を学びましょう。

Watch on demand
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
August 3, 2023

セキュリティ・チャンピオンへの道

Workdayが開発者のスキルアップのためにアジャイルなセキュリティ学習をどのように活用したかをご紹介します。

Watch on demand
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
May 24, 2023
May 23, 2023

人、プロセス、テクノロジー

Vis Chirravuri との対話に参加し、彼がセキュアコード学習プログラムのために人、プロセス、テクノロジーのアプローチをどのように開発したかを学びましょう。

Watch on demand
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
April 18, 2023
April 17, 2023

Secure Code Warrior ユーザーグループ APAC

他の管理者とつながり、開発者主導のセキュリティプログラムの管理方法を学ぶコミュニティです。ヒントやコツを学びましょう!

Watch on demand
This is some text inside of a div block.
No items found.
No items found.
Blog
blog-posts
July 25, 2023
July 25, 2023

すぐに使えるコード:安全な開発者が制限なくリリースできる理由

重要なインフラストラクチャ、自動車、医療技術、その他すべてを支えるコードに取り組むほとんどの開発者が、最初にセキュリティ能力を検証せずにそうしているのは不可解に思えます。一方で、物を安全に構築する方法を理解していることを繰り返し証明してきたセキュリティスキルのある開発者が、すべてのセキュリティゲートが原因で、常に速度が遅くなる開発パイプラインで他の開発者と一緒に列に並ぶ必要があるのはなぜでしょうか。

Learn More
No items found.
No items found.
July 25, 2023
Blog
blog-posts
July 24, 2023
July 24, 2023

アジャイル・ラーニング・プラットフォームのROI

コードの脆弱性や技術的負債に対処するためのコストは高額であり、ソフトウェア開発チームの生産性を低下させ続けています。セキュアコードのためのアジャイル学習プラットフォームを実装することで、SDLCの早い段階で脆弱性を修正し、そもそも脆弱性を未然に防ぎ、大幅なコスト回避につながるセキュアコーディング技術について開発者をより効果的にトレーニングする方法をご紹介します。このブログでは、アジャイル学習プラットフォームの財務的影響と ROI について考える方法を概説しています。

Learn More
No items found.
No items found.
July 24, 2023
Blog
blog-posts
July 13, 2023
July 13, 2023

安全なコーディングの水準を引き上げる:将来を見据えた企業へのアジャイル学習の導入

シリーズCの資金調達ラウンドの終了を発表しました。これにより、より多くの先駆的な組織が共通の脆弱性を阻止するために開発コホートの力を活用できるよう支援するという私たちの使命の次の段階に向けて、5,000万米ドルを調達しました。

Learn More
No items found.
No items found.
July 13, 2023
Blog
blog-posts
July 13, 2023
July 13, 2023

I guess this is growing up: Coming of age with CISA’s Secure-by-Design Guidelines

The recently released National Cybersecurity Strategy signals the need for a seismic cultural shift for most companies, with the most glaring recommendation coming in the form of security accountability falling primarily on software vendors. This is a positive step, though it is sure to cause teething problems, especially as many organizations struggle to accurately assess their security maturity across the board, particularly among the development cohort.

Learn More
No items found.
No items found.
July 13, 2023
Blog
blog-posts
July 13, 2023
July 13, 2023

安全なコードのためのアジャイルラーニングで開発者を魅了する方法

安全なコードのためのアジャイル学習プラットフォームを開発者のワークフローやツールに組み込む方法を学び、安全なコード学習の文化を築き始めましょう。

Learn More
No items found.
No items found.
July 13, 2023
Blog
blog-posts
June 30, 2023
June 30, 2023

PCI-DSS 4.0は思ったより早く登場し、組織のサイバーレジリエンスを高める機会となります

今年初め、PCIセキュリティ標準委員会はペイメントカード業界データセキュリティ標準(PCI DSS)のバージョン4.0を発表しました。組織は 2025 年 3 月まで 4.0 に完全に準拠する必要はありませんが、今回の更新はこれまでで最も大きな変革をもたらし、ほとんどの企業が複雑なセキュリティプロセスや自社の技術スタックの要素を評価 (そして場合によってはアップグレード) する必要があります。これに加えて、ロールベースのセキュリティ意識向上トレーニングや、開発者向けの定期的なセキュア・コーディング教育も実施することになります。

Learn More
No items found.
No items found.
June 30, 2023
Blog
blog-posts
June 22, 2023
June 22, 2023

トレーニングからアジャイル学習まで:セキュアコードのためのアジャイル学習プラットフォームがセキュアソフトウェアへのアプローチに革命をもたらす方法

SDLCの左から始めることで、安全なコードのためのアジャイル学習プラットフォームがどのように開発者のスキルアップ、リスクの軽減、技術的負債の軽減につながるかを学びましょう。

Learn More
No items found.
No items found.
June 22, 2023
Blog
blog-posts
June 1, 2023
June 1, 2023

組織階層におけるソフトウェアの再考

アプリとソフトウェアの責任を厳密な階層の中で定義し、それらのポリシーを最小限の権限で適用できるようにすることで、さまざまな脅威環境があってもアプリやソフトウェアが存続し、繁栄できるようにすることができます。

Learn More
No items found.
No items found.
June 1, 2023
Blog
blog-posts
May 19, 2023
May 19, 2023

プロアクティブな保護:高度な脅威防止のための国家サイバーセキュリティ戦略の活用

CISAの国家サイバーセキュリティ戦略は、ソフトウェア標準を全面的に引き上げ、最終的にはセキュリティスキルのある開発者の新時代の到来を告げる絶好の機会です。

Learn More
No items found.
No items found.
May 19, 2023
Blog
blog-posts
April 19, 2023
April 19, 2023

MVC リクエストマッチャースプリングのブリュネズシュート

2023 年 3 月 20 日、2008 春春サクラン、VIN838で838性 CVE-2023-20860 始業者の皆さん。「MVCMatcher」Spring Devendesai、olunginafefea。セキュア・コード・ウォリアーズ(Secure Code Warrior2008)で、MVC リクエストマッチャーズ(Secure Code Warrior Warrior Warrior Warchers)

Learn More
No items found.
No items found.
April 19, 2023
Blog
blog-posts
April 14, 2023
April 14, 2023

Secure Code WarriorのCEO兼共同創設者であるPieter Danhieux氏は、「誰もがサイバーセキュリティにおける自分の役割を理解し、受け入れるべきだ」と述べています。

セキュア・コード・ウォリアーのCEO兼共同創設者であるピーター・ダンヒュー氏によるサイバーニュースに関する質疑応答

Learn More
No items found.
No items found.
April 14, 2023
Blog
blog-posts
March 27, 2023
March 27, 2023

SDLC における生産性の向上とコスト削減のカギ

ソフトウェア開発ライフサイクルにおける最大のギャップの1つは、開発者がコードの保護方法を最初から学ぶ時間がないことです。開発者は手直しや修正に数え切れないほどの時間を浪費し、その結果、何百万ドルもの機会損失が発生しています。セキュアなコーディングを迅速に行うことで、こうしたギャップを埋め、生産性を向上させる方法をご紹介します。

Learn More
No items found.
No items found.
March 27, 2023
Blog
blog-posts
March 14, 2023
March 14, 2023

セキュア・コード・ウォリアーの新機能:コースガイドライン、参加管理、新コンテンツ

Secure Code Warriorの新機能:コースを管理する新しい方法を体験し、追加コンテンツを探索してください。

Learn More
No items found.
No items found.
March 14, 2023
Blog
blog-posts
March 2, 2023
March 2, 2023

メタバースにおける悪意:新たなフロンティアにおける既知のサイバー脅威との戦い

現在のデジタル最愛の要素であるメタバースの出現により、コードレベルの脆弱性とソーシャルエンジニアリングの両方に新たな攻撃対象領域が加わりました。そして、私たちは煙と鏡の上で繁栄するこの新しい競争の場での戦いに備えていないだけです。

Learn More
No items found.
No items found.
March 2, 2023
Blog
blog-posts
February 15, 2023
February 15, 2023

開発者主導のセキュリティによる技術的負債の軽減

安全でないコードとその後の技術的負債に対処するためのコストは、今日のテクノロジーが直面している最大の障害の1つです。スケーラブルで安全なコードトレーニングプログラムを実装することで、不適切なコーディングパターンに対処し、ソフトウェア開発サイクルの早い段階で脆弱性を検出することで、技術的負債を減らすのにどのように役立つかをご覧ください。

Learn More
No items found.
No items found.
February 15, 2023
Blog
blog-posts
February 10, 2023
February 10, 2023

開発者は「セキュアコーディング」をどのように定義していますか?

何がセキュアコーディング行為を構成するのかという認識については、議論の余地があります。Evans Dataと共同で行った最近の調査によると、この感情は白黒で明らかになっています。開発者主導型セキュリティ2022の現状調査では、1,200人のアクティブな開発者の主要な洞察と経験を掘り下げ、セキュリティ分野における彼らの態度と課題を明らかにしています。

Learn More
No items found.
No items found.
February 10, 2023
Blog
blog-posts
January 31, 2023
January 31, 2023

Coding Labs: Hands-on secure code for Developers

Learn how Coding Labs is like a personal trainer for developers- utilizing interactive, hands-on modules and intuitive feedback within a convenient in-browser IDE to help developers go from learning to doing faster than ever before.

Learn More
No items found.
No items found.
January 31, 2023
Blog
blog-posts
January 27, 2023
January 27, 2023

ゆーあコ・ウ・イイハー8歳分:産毛車中

今週、treux-a・ウォアーの8周年という祝福の日。どうも、このアフロ11の350倍の時間、45,000ウォット、またはろろくろパロプスイーイと5696回輪輪輪輪輪輪輪輪輪輪車。他人、ジャイ・タイ・サスの福301(新生、250年)。グラプラズズズズスイブラ、ププシーラー、レヴニオン、教訓、大金大人、.、、、

Learn More
No items found.
No items found.
January 27, 2023
Blog
blog-posts
December 14, 2022
December 14, 2022

2022年を振り返る-セキュア・コード・ウォリアーを最大限に活用するのに役立つハイライト、新しいイノベーション、リソース

Secure Code Warriorでは、開発者や組織が今日の絶え間なく変化するセキュリティ課題に取り組むための適切なスキルを身に付けることができるように、常に革新を続けています。ソフトウェア開発サイクルの開始時に、開発者主導のセキュリティを通じて組織がソフトウェアを保護できるように、プラットフォームの主な機能と更新、および今年公開されたリソースとガイドラインをまとめました。

Learn More
No items found.
No items found.
December 14, 2022
Blog
blog-posts
December 8, 2022
December 8, 2022

開発者主導型セキュリティのROI

テクノロジースタックや追加のトレーニングプログラムへの投資に関しては、誰もが投資収益率を高めたいと考えていますが、セキュリティに関しては、単純な ROI の計算にとどまらない長い時間をかけて取り組む必要があります。開発者が主導するセキュリティに投資することで、高額な情報漏えい、生産性の低下、蓄積された技術負債の費用を節約できるだけでなく、今日の脅威環境の一歩先を行くための積極的で費用対効果の高い戦略を構築する方法を学びましょう。

Learn More
No items found.
No items found.
December 8, 2022
Blog
blog-posts
November 24, 2022
November 24, 2022

開発者主導のセキュリティに対するまとまりのあるアプローチの確立

多くのトップ企業や政府機関を含む人気のOrion管理ソフトウェアの18,000人以上のユーザーにソフトウェア更新プロセスを利用して感染させたSolarWindsキャンペーンのような大規模なセキュリティ侵害への対応として、開発者主導のより効果的なセキュリティ対策を求める声が高まっています。あらゆる規模の組織が、自社の「ソフトウェアサプライチェーン」に疑問を持ち始めており、ソフトウェアを開発する開発者には検証済みのセキュリティスキルと知識を持っていることを求めています。

Learn More
No items found.
No items found.
November 24, 2022
Blog
blog-posts
November 23, 2022
November 23, 2022

SCW 統合:マイクロラーニングによる平均修復時間の短縮

堅牢な技術スタックの重要性は誰もが知っています。コード内の脆弱性の発見と修正に関しては、平均修復時間を短縮し、信頼できる堅牢なソリューションを使用することが、Secure Code Warriorの統合の目標です。マイクロラーニングの瞬間を開発者のワークフローに統合することが、より良い学習と迅速な修復の鍵です。

Learn More
No items found.
No items found.
November 23, 2022
Blog
blog-posts
November 10, 2022
November 10, 2022

繰り返し使える安全なコーディングスキルで左にシフトし、コンプライアンスを達成

最近のほとんどすべての開発者チームは、企業が業界の枠組みや政府規制の範囲内にとどまっていることを確認するために使用される最初の認定プロセスの一部であるか、年次要件またはレビューの一部であるかにかかわらず、何らかの形のコンプライアンストレーニングを採用しています。これは重要なステップです。なぜなら、組織が基本的なコンプライアンス要件を満たせなければ、その従業員は現実的に職務を遂行できないからです。

Learn More
No items found.
No items found.
November 10, 2022
Blog
blog-posts
November 3, 2022
November 3, 2022

不適切なコーディングパターンは大きなセキュリティ問題につながる可能性があります... では、なぜ私たちはそれらを奨励するのでしょうか?

開発者は、脆弱性の仕組み、なぜ危険なのか、どのようなパターンが脆弱性を引き起こすのか、どのような設計やコーディングパターンが脆弱性を修正するのかを理解していなければ、脆弱性の軽減にプラスの影響を与えることはできません。足場型のアプローチにより、知識を重ねることで、安全にコーディングすることの意味の全体像を把握し、コードベースを守り、セキュリティを意識した開発者として立ち上がることができます。

Learn More
No items found.
No items found.
November 3, 2022
Blog
blog-posts
October 24, 2022
October 24, 2022

Secure Code Warriorがガートナーの「ソフトウェアエンジニアリングのクールベンダー:開発者の生産性の向上」に選ばれました

開発者のセキュリティスキルの重要性は、2022年のガートナー社の「ソフトウェアエンジニアリングにおけるクールベンダー」で強調されています。詳細を読み、レポート全文を入手してください。

Learn More
No items found.
No items found.
October 24, 2022
Blog
blog-posts
October 20, 2022
October 20, 2022

セキュアコードの定義

定番組、プロ、プラ、プラ、コープサン、懐かしくなった、ぎょうwebサイト&noldg&nold&nold&gula、()

Learn More
No items found.
No items found.
October 20, 2022
Blog
blog-posts
October 3, 2022
October 3, 2022

Pythonのtarfile モジュールパトラバーサバグキンクー

きょう、パシフィックパークは、Pythonのタータールグラダに15年前のおかしい。2007 年秋新聞、CVE-2007-4559 まで。Python のリビングニニニニププププサダママス。

Learn More
No items found.
No items found.
October 3, 2022
Blog
blog-posts
September 22, 2022
September 22, 2022

SCW 新型:サボボ、LMS VAPYなど

セキュア・コード・ウォリアー新型:コーディング・ラボでクンフククニニニニセセセセセコード・ウォリアー新型、コードミスターと合成。

Learn More
No items found.
No items found.
September 22, 2022
Blog
blog-posts
September 21, 2022
September 21, 2022

ハードコードされた認証情報はセキュリティリスクを招く可能性があります

ハードコーディングされた認証情報やソーシャルエンジニアリングに関連するリスクについて、Uber の最近のセキュリティインシデントや、組織が左にシフトして開発者が安全なコーディングのベストプラクティスを常に把握しておくことがなぜそれほど重要なのかを説明しているので、詳細をご覧ください。

Learn More
No items found.
No items found.
September 21, 2022
Blog
blog-posts
September 9, 2022
September 9, 2022

攻撃対象領域が終わらない時代における防止

ソフトウェア開発はもはや孤島ではなく、クラウド、電化製品や車両に組み込まれたシステム、重要なインフラストラクチャ、すべてをつなぐAPIなど、ソフトウェアを原動力とするリスクのあらゆる側面を考慮すると、攻撃対象領域は境界がなく、制御不能になります。

Learn More
No items found.
No items found.
September 9, 2022
Blog
blog-posts
July 22, 2022
July 22, 2022

私たちはオープンソース・ソフトウェア・セキュリティ・モビリゼーション・プランに向けて十分に成熟していますか?

オープンソース・ソフトウェア・セキュリティ・モビリゼーション・プランは、開発者主導のセキュリティにとって前向きな一歩です。しかし、私たちは皆、最新かつ最高の防御戦略を実装するのに十分なほど組織内で成熟しているかどうか、そして開発チームが適切なレベルのセキュリティ意識とスキルを持っているかどうかを評価し、正直に評価する必要があります。

Learn More
No items found.
No items found.
July 22, 2022
Blog
blog-posts
July 11, 2022
July 11, 2022

開発チームにおけるセキュリティ成熟度の重要性

左にシフトする取り組みには、開発チーム内でセキュリティの知識とスキルを集団的かつ継続的に改善する必要があります

Learn More
No items found.
No items found.
July 11, 2022
Blog
blog-posts
June 6, 2022
June 6, 2022

API の保護:ミッションは不可能?

API セキュリティは厳しいものですが、十分なトレーニング、計画、ベストプラクティスへの注力があれば、どんなに厄介な脆弱性でも軽減できます。

Learn More
No items found.
No items found.
June 6, 2022
Blog
blog-posts
June 2, 2022
June 2, 2022

新規:Okta ワークフロー用 SCW コネクタ

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
June 2, 2022
Blog
blog-posts
May 16, 2022
May 16, 2022

セキュア・コード・ウォリアーの新機能:2022年5月

より簡単でパワフルなコース作成フロー、早期アクセスの切り替え、SAP ABAPトレーニングコンテンツ

Learn More
No items found.
No items found.
May 16, 2022
Blog
blog-posts
May 9, 2022
May 9, 2022

新規:ABAP トレーニングコンテンツを使用して、安全な SAP ABAP コードをより迅速に発送

ABAP開発者向けの実践的かつ効果的なセキュア・コーディング・トレーニング。

Learn More
No items found.
No items found.
May 9, 2022
Blog
blog-posts
April 27, 2022
April 27, 2022

サイキック・シグネチャー-知っておくべきこと

Psychic Signatureの脆弱性は、認証などの重要なタスクでシステムを保護するECDSA署名の暗号にあります。この脆弱性により、ハッカーはあらゆる署名チェックを回避できます。この投稿では、その内容と軽減方法について説明します。

Learn More
No items found.
No items found.
April 27, 2022
Blog
blog-posts
April 14, 2022
April 14, 2022

NGINX および Microsoft Windows SMB リモートプロシージャコールサービスにおけるソフトウェアの脆弱性を未然に防ぎましょう

最近、NGINXはゼロデイ脆弱性を公開しました。同じ頃、マイクロソフトは Windows RPC RCE の脆弱性というもう 1 つの重大な脆弱性を公開しました。この投稿では、この 2 つの問題が発生するリスクに誰がさらされているのか、またそのリスクを軽減する方法について説明しています。

Learn More
No items found.
No items found.
April 14, 2022
Blog
blog-posts
April 5, 2022
April 5, 2022

ゼロデイ攻撃が増加しています。今こそディフェンシブエッジを計画する時です。

ゼロデイ攻撃は、当然のことながら、攻撃者が最初に侵入するため、開発者が悪用される可能性のある既存の脆弱性を発見してパッチを適用する時間がまったくありません。被害が発生したら、ビジネスに対するソフトウェアと評判の低下の両方を修正しようとすると、狂ったような争いが繰り広げられます。攻撃者は常に有利な立場にあり、そのエッジをできる限り塞ぐことが重要です。

Learn More
No items found.
No items found.
April 5, 2022
Blog
blog-posts
April 5, 2022
April 5, 2022

セキュアコードは開発チームの優先事項のリストのどこにありますか?

2年目となる今回は、Evans Data Corp. と提携して、セキュアコーディング手法に関するスキル、認識、行動、およびそれらがソフトウェア開発ライフサイクル(SDLC)に与える影響と関連性について、世界の開発者コミュニティを対象に包括的な調査を実施しました。結果は多くの点で非常に驚くべきものでした。

Learn More
No items found.
No items found.
April 5, 2022
Blog
blog-posts
April 1, 2022
April 1, 2022

Springライブラリの新しい脆弱性:危険にさらされているかどうかを知る方法と対処方法

最近、Java コミュニティで最も人気のあるライブラリの 1 つである Spring ライブラリが、リモートコード実行 (RCE) に関連する 2 つの脆弱性を公開しました。「Spring4Shell」と「Spring Cloud Function」の既知の詳細を分類して、リスクにさらされているかどうか、またリスクにさらされている場合の対処方法を理解しやすくしました。

Learn More
No items found.
No items found.
April 1, 2022
Blog
blog-posts
March 28, 2022
March 28, 2022

2022年に無視できないサイバーセキュリティ問題

サイバー犯罪者との戦いに関しては、予防的な考え方でサイバー犯罪者の遊び場を先取りし、できる限り彼らと歩調を合わせる必要があります。来年、彼らが波を起こし始めるかもしれないと思うのは次の点です。

Learn More
No items found.
No items found.
March 28, 2022
Blog
blog-posts
February 23, 2022
February 23, 2022

トロイの木馬ソースとは何か、そしてどのようにソースコードに侵入するのか

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
February 23, 2022
Blog
blog-posts
February 8, 2022
February 8, 2022

チャンピオン対コーチ:すべての開発チームに両方が必要な理由

サイバーセキュリティアプローチで目標を掲げている企業の多くは、公式のセキュリティチャンピオンプログラムを実施し、そのような役割に適性と情熱を示す個人に、チーム間の連絡や一般的なチアリーディングからベストプラクティスの監督まで、主要なセキュリティ責任を課しています。

Learn More
No items found.
No items found.
February 8, 2022
Blog
blog-posts
February 2, 2022
February 2, 2022

つなつや Java ミミミロリとぐぐる

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
February 2, 2022
Blog
blog-posts
January 27, 2022
January 27, 2022

セキュア・コード・ウォリアーに7年間携わり、それが現実味を帯び始めている

私たちの誕生日のマイルストーンは、私たちの努力の成果を振り返り、チームを祝い、自信を持って次の年に取り組むことを思い出させる素晴らしい機会です。そして、設立から7年が経過した今、私は疑問に思っています。私たちはそれを成し遂げたのか?これはもう本物の会社なの?もちろん、成熟には至りましたが、創業以来持っていた好奇心、情熱、マニアックさを決して失わないことを願っています。

Learn More
No items found.
No items found.
January 27, 2022
Blog
blog-posts
January 21, 2022
January 21, 2022

足場型学習がセキュリティに強い開発者を育てる理由

業界として、開発者がセキュリティの専門家になることを期待すべきではありませんが、組織はより高品質のソフトウェアを作成できるように、開発者支援のための新しい標準を採用することができます。

Learn More
No items found.
No items found.
January 21, 2022
Blog
blog-posts
January 16, 2022
January 16, 2022

Log4jの近親相-v788とその近く

2021 年 12 月、Java ライブラリー Log4j に性 Log4Shell の公開日。有、Log4Shell の銀種種種

Learn More
No items found.
No items found.
January 16, 2022
Blog
blog-posts
January 6, 2022
January 6, 2022

サイバーセキュリティ業界分析:繰り返し発生しているもう 1 つの脆弱性

現代のサイバーセキュリティという絶え間ない猛攻撃に対抗するための現実的なアドバイスも、最速の解決策も得られていません。もちろん、侵害はそれぞれ独自の方法で異なり、脆弱なソフトウェアに悪用される可能性のある攻撃ベクトルは数多くあります。実行可能な一般的なアドバイスは限られていますが、ベストプラクティスのアプローチは、時間ごとに欠陥が増えていくものです。

Learn More
No items found.
No items found.
January 6, 2022
Blog
blog-posts
December 15, 2021
December 15, 2021

セキュリティプログラムはインシデント対応に重点を置いていますか?あなたのやり方は間違っています。

事後対応型ではなく予防型のアプローチに重点を置くことは、特に大規模で重大なセキュリティインシデントが発生していない場合、セキュリティチーム以外ではあまり理解されない可能性があります。

Learn More
No items found.
No items found.
December 15, 2021
Blog
blog-posts
December 1, 2021
December 1, 2021

Make unit tests readable with Sensei and AssertJ

Implement unit test coding guidelines uniformly and consistently

Learn More
No items found.
No items found.
December 1, 2021
Blog
blog-posts
November 30, 2021
November 30, 2021

API on Wheels: リスクの高い脆弱性のロードトリップ

API セキュリティを偶然に任せることは、後で問題を起こす確実な方法であり、最悪の場合は壊滅的な結果を招き、やり直しはイライラさせられ、せいぜいパフォーマンスが低下します。

Learn More
No items found.
No items found.
November 30, 2021
Blog
blog-posts
November 12, 2021
November 12, 2021

ジョダ・タイムからjava.timeへのマイグレーション

Joda-Time を便利な方法で java.time に移行する方法

Learn More
No items found.
No items found.
November 12, 2021
Blog
blog-posts
November 11, 2021
November 11, 2021

政府のサプライチェーンパイプラインにおけるサイバー脆弱性の覆いを解く

サイバーセキュリティが重要であることは明らかですが、サプライチェーンの観点から見ると、サイバーセキュリティは実際には何を意味するのでしょうか。

Learn More
No items found.
No items found.
November 11, 2021
Blog
blog-posts
October 29, 2021
October 29, 2021

セキュリティ意識の高い開発者:AppSecにはあなたが必要です!

開発者は、AppSecに有利な形で参入できる絶好の立場にあります。

Learn More
No items found.
No items found.
October 29, 2021
Blog
blog-posts
October 27, 2021
October 27, 2021

時ごろろろろろと、いしみみっけいっこうこうもりん、つるとみずず、みずずずずず。、利、。、。

Learn More
No items found.
No items found.
October 27, 2021
Blog
blog-posts
October 19, 2021
October 19, 2021

開発者にインセンティブを与えることは、より良いセキュリティ慣行の鍵です

プロの開発者はDevSecOpsを採用して安全なコードを書きたいと考えていますが、その取り組みを拡大したいのであれば、組織はこの大きな変化をサポートする必要があります。

Learn More
No items found.
No items found.
October 19, 2021
Blog
blog-posts
October 18, 2021
October 18, 2021

最近の Apache の問題の原因となったパストラバーサルの脆弱性の影響を体験してください

10月の初めに、Apacheはパストラバーサルとリモートコード実行の脆弱性を修正するバージョン2.4.49をリリースし、修正が不完全だったという事実に対処するバージョン2.4.50をリリースしました。私たちは、現実の環境におけるリスクを実証するという使命を掲げました。今すぐ試してみてください。

Learn More
No items found.
No items found.
October 18, 2021
Blog
blog-posts
October 14, 2021
October 14, 2021

Warrior Insider: Nelnet-セキュリティチャンピオンを育成し、内部から安全な開発を行う文化を築きましょう

Micha Martinezは、Nelnetのサイバーセキュリティアナリスト兼撮影監督です。セキュアコーディングに関する開発者向けトレーニングプログラムの作成を任されたとき、彼はチームを巻き込むための創造的な方法を採用しました。彼がどのようにセキュアコードトレーニングプログラムを運営しているかに感銘を受けたので、私たちは彼に話を聞いて詳細を学びました。

Learn More
No items found.
No items found.
October 14, 2021
Blog
blog-posts
October 5, 2021
October 5, 2021

OWASPの2021年リストシャッフル:新しいバトルプランと主な敵

悪名高い脆弱性の王様であるインジェクション攻撃(カテゴリー別)は、アクセス制御の破れによる最悪の攻撃としてトップの座を失っており、開発者は注意が必要です。

Learn More
No items found.
No items found.
October 5, 2021
Blog
blog-posts
September 23, 2021
September 23, 2021

高度なセキュリティインテリジェンス:開発者がNISTに対応できるよう支援するガイド付きコース

開発者は、セキュリティ設定やアクセス制御に加えて、コードを最も詳しく扱っています。彼らのセキュリティスキルを養う必要があり、NISTが概説しているような高い基準を達成するには、特に大規模な開発コホートでは、実践的なコース構成が効率的な方法かもしれません。

Learn More
No items found.
No items found.
September 23, 2021
Blog
blog-posts
August 30, 2021
August 30, 2021

優れたマイクロ波が故障した場合:組込みシステムのセキュリティが開発者にとって次なるボス戦となる理由

Web ベースのソフトウェア、API、モバイルデバイスと同様に、組み込みシステム内の脆弱なコードが、攻撃者によって実際に発見されれば悪用される可能性があります。

Learn More
No items found.
No items found.
August 30, 2021
Blog
blog-posts
August 24, 2021
August 24, 2021

安全な開発はAppSecの免疫システムであるべき

アプリケーションセキュリティの専門家として、組織のアプリケーションのサイバーセーフティを確保するのがあなたの仕事です。ただし、アプリケーションを実行するコードを書く責任はあなたにはありません。開発チーム内のエンジニアが担当します。では、セキュリティを念頭に置いてシステムを開発していることを確認するにはどうすればよいでしょうか。

Learn More
No items found.
No items found.
August 24, 2021
Blog
blog-posts
August 19, 2021
August 19, 2021

エンドツーエンドのセキュリティが組み込みシステムにとって重要な理由

この記事では、組み込みシステムのセキュリティ保護の概要について説明します。基本的な定義から始めて、組み込みセキュリティにおける課題、代表的な解決策、足りないパズルは何かについて説明します。

Learn More
No items found.
No items found.
August 19, 2021
Blog
blog-posts
August 17, 2021
August 17, 2021

ミスラ C 2012 対 MISRA C2-レボアユー

アポリ、MISRA C 2012 とC2 ヴァングインプラシ、WERGVING CODOWLISISISSA。ABINARKNALTたりMISRAのせいせいせいでもうなずく。

Learn More
No items found.
No items found.
August 17, 2021
Blog
blog-posts
August 11, 2021
August 11, 2021

組込みデバイスと組込みシステム開発-概要

この投稿では、組み込みデバイスと組み込みシステム開発の概要を説明します。

Learn More
No items found.
No items found.
August 11, 2021
Blog
blog-posts
July 26, 2021
July 26, 2021

Warrior Insider: Contrast Security-コンテキストラーニングを活用したインパクトのあるサイバーセキュリティトレーニングを開発者に提供

Contrast SecurityのLarry Maccherone氏に、コンテキスト学習がセキュアコーディングの開発者のトレーニングにどのように役立つかについて説明しました。以下では、組織が日々の責任やワークフローを中断することなく、開発者に重要なセキュリティトレーニングを提供する方法をご紹介します。

Learn More
No items found.
No items found.
July 26, 2021
Blog
blog-posts
July 22, 2021
July 22, 2021

サイバーセキュリティにおけるヒューマンファクターを決して見過ごしてはいけない理由

最近、会長兼CEOのピーター・ダンヒューによるフォーブス・テクノロジー・カウンシルの最初の投稿が公開されたことを非常に嬉しく思います。この投稿では、より安全なコードを作成するために開発者のスキルを向上させることが、サイバー攻撃やデータ漏えいを防ぐための鍵となることを詳しく説明しました。

Learn More
No items found.
No items found.
July 22, 2021
Blog
blog-posts
June 24, 2021
June 24, 2021

リーク性のある API は企業の評判を海に流す恐れがある

API セキュリティは、ほとんどのセキュリティ専門家が気にする問題であり、対処するための知識を身に付ける必要があります。

Learn More
No items found.
No items found.
June 24, 2021
Blog
blog-posts
June 21, 2021
June 21, 2021

NISTで行動を起こす:サイバー防衛の未来に関する人間主導の立場

バイデン政権による最近のサイバーセキュリティ大統領令により、セキュリティ業界、特に日常業務にセキュアコーディングのベストプラクティスを適用することの重要性を開発者に理解してもらいたいと考えているセキュリティ業界は注目を集めています。

Learn More
No items found.
No items found.
June 21, 2021
Blog
blog-posts
June 16, 2021
June 16, 2021

Warrior Insider: Selligent-ビジネスを拡大する際にサイバーセキュリティが重要な理由

最近、Selligent Marketing CloudのソフトウェアエンジニアであるDimitri Vanderhaegheに話を聞きました。Selligent Marketing Cloudは、高度に統合されたAIを活用したオムニチャネルマーケティング自動化プラットフォームで、野心的なB2Cマーケターが今日のネット接続された消費者とのあらゆるやり取りを最大限に活用できるようにします。ペースの速いB2Cテクノロジー企業にとって、規模を拡大し、市場の高まる需要に応えることは極めて重要です。これらの要求に応えるためには、サイバーセキュリティに重点を置くことが挙げられます。最も重要なのは、開発者主導のセキュリティスキルプログラムです。

Learn More
No items found.
No items found.
June 16, 2021
Blog
blog-posts
June 10, 2021
June 10, 2021

DevSecOpsの台頭、そして組織にとって「左へのシフト」が実際に意味するもの

これは地味な統計としてどうだ?中小企業の 60% は、サイバー攻撃が成功してから6か月以内に廃業します。大企業は何百万(あるいは数十億!)もの大企業が大量倒産しています。一方、ブランドの評判は薄れていきました。安全なコーディング手法を採用する組織が増えるにつれ、「シフトレフト」が起こっています。DevSecOps の台頭に伴い、SDLC が始まった当初から安全なコードが焦点になりつつあります。

Learn More
No items found.
No items found.
June 10, 2021
Blog
blog-posts
June 9, 2021
June 9, 2021

Sensei Feature Highlight: Library Scope

Discover more about the most loved features of Sensei.

Learn More
No items found.
No items found.
June 9, 2021
Blog
blog-posts
June 3, 2021
June 3, 2021

高品質のコードをより迅速に、自信を持って出荷できます。安全なコーディングプラクティスがもたらす変革の力です。

IBMの調査によると、リリース後に脆弱性を修正する方が、最初に脆弱性を発見して修正する場合の30倍の費用がかかります。このことを念頭に置けば、将来を見据えたCIOがセキュア・コーディング・プラクティスを導入しているのは当然のことです。つまり、最初からより安全なコードを書けるように開発者を訓練し、身につけること、つまり開発者を組織の「最前線」にすることを意味します。

Learn More
No items found.
No items found.
June 3, 2021
Blog
blog-posts
May 27, 2021
May 27, 2021

安全なコードトレーニング = より良いコード + より迅速なリリース日

質の高い安全なコードトレーニングが組織に与える潜在的な影響はどのようなものですか?また、投資する価値はありますか?

Learn More
No items found.
No items found.
May 27, 2021
Blog
blog-posts
May 20, 2021
May 20, 2021

セキュア・コーディングを中心とした組織の再編—障壁、懸案事項、積極的な解決策

高度に接続されたこの世界では、ほぼすべての組織が共通のアキレス腱を共有しています。コード内の 1 つの脆弱性が悪用されるだけで、顧客データの盗難、評判の低下、および重大な経済的損失を引き起こす可能性があります。安全なコーディングに関する組織の連携はかつてないほど必要不可欠ですが、それを達成することは口で言うほど簡単ではありません。

Learn More
No items found.
No items found.
May 20, 2021
Blog
blog-posts
May 20, 2021
May 20, 2021

認定セキュリティ意識:開発者を昇格させるための行政命令

米国連邦政府からの最新の大統領令は、機能的なサイバーセキュリティの多くの側面に触れていますが、開発者の影響と、開発者が検証済みのセキュリティスキルと認識を持つ必要性を具体的に概説したのは初めてです。

Learn More
No items found.
No items found.
May 20, 2021
Blog
blog-posts
May 13, 2021
May 13, 2021

マネージャーとセキュリティチャンピオン — セキュア・コーディング・プラクティスのパイパーであり、重要な影響力を持つ人々です。

現在、安全なコードの実践は全員の責任であるべきだと回答した開発者はわずか 15% です。セキュリティ上の脅威が増大する世界では、それだけでは十分ではありません。何かしなくてはいけない。健全なアプリケーションセキュリティ文化を築くための鍵の 1 つは、主要な影響力 (およびインフルエンサー) を理解することです。プレイ中。

Learn More
No items found.
No items found.
May 13, 2021
Blog
blog-posts
May 12, 2021
May 12, 2021

サイバー攻撃は39秒ごとに発生します。政府はついに反撃する準備が整ったのか?

サイバーセキュリティのベストプラクティスに対する人間主導のアプローチを強化する必要があります。そうすれば、自動化やツール、すでに埋め込まれて発見されている問題への対応に大きく依存するよりも、より良い結果が得られるでしょう。

Learn More
No items found.
No items found.
May 12, 2021
Blog
blog-posts
May 6, 2021
May 6, 2021

安全なコーディングに関して、開発チームが夜更かししている理由は何でしょうか?

安全でないコードは企業に何百万ドルもの損害を与えます。では、安全なコーディング慣行の採用を妨げるものは何でしょうか。ほとんどすべてがソフトウェアに依存している世界では、コードの安全性を確保することが極めて重要です。ブランドの評判と財務的存続可能性はソフトウェアにかかっています。とはいえ、セキュアコーディングには多くの懸念事項があり、完全かつ効果的に導入するには多くの障壁があります。これまで以上に、新しい働き方が求められています。

Learn More
No items found.
No items found.
May 6, 2021
Blog
blog-posts
April 29, 2021
April 29, 2021

セキュアコードがソフトウェア開発の新しい成功指標である理由

ここ数年、ネットワークセキュリティ、数テラバイトに及ぶ機密性の高い顧客データ、貴重なブランド評判など、市場投入までの時間を短縮するために、多くのことが犠牲になっています。

Learn More
No items found.
No items found.
April 29, 2021
Blog
blog-posts
April 29, 2021
April 29, 2021

目に見えない隠れ家:SolarWinds攻撃が悪意のあるサイバーリスク以上のものを明らかにした理由

サイバーセキュリティ業界でクリスマスを台無しにする何かがあったとしたら、それは壊滅的なデータ侵害であり、米国政府に影響を及ぼした記録上最大のサイバースパイ活動になる見込みです。

Learn More
No items found.
No items found.
April 29, 2021
Blog
blog-posts
April 22, 2021
April 22, 2021

よりセキュアなコーディング結果を得るためのセキュアコードトレーニングの設定方法

開発者向けのセキュアなコードトレーニングに関しては、教育上の成果にはまだまだ多くの課題があります。多くの企業が多額の費用を費やしても、実際には最小限の利益しか得られません。そして、少し不思議ではありません。

Learn More
No items found.
No items found.
April 22, 2021
Blog
blog-posts
April 15, 2021
April 15, 2021

現在のセキュアコードトレーニングは開発者を失望させている

データ漏えいとそのコストが増え続ける中、世界で生成されるコードの量は、セキュリティの専門家だけでは処理できないほど大きくなっています。企業には安全なコーディングスキルを持つ開発者が必要であり、開発者はキャリアアップのためにこれらのスキルが必要であることを知っています。しかし、現在のセキュア・コード・トレーニングは彼らを失望させています。では、セキュア・コード・トレーニングに関して、開発者は何を求めているのでしょうか。

Learn More
No items found.
No items found.
April 15, 2021
Blog
blog-posts
April 8, 2021
April 8, 2021

セキュア・コード・トレーニングがうまくいかない理由 (そしてそれに対してできること)

つまらない、つまらない、つまらない!これは、セキュア・コード・トレーニングについて言及されるたびに、開発者からよく聞く回答の 1 つです。セキュア・コード・ウォリアーでは、もっと良い方法があるはずだと考えています。

Learn More
No items found.
No items found.
April 8, 2021
Blog
blog-posts
April 7, 2021
April 7, 2021

AppSecツールが特効薬だとしたら、なぜこれほど多くの企業がそれを採用しないのでしょうか。

AppSecツールが予想どおりに利用されていない理由はいくつかありますが、それはツールとその機能ではなく、セキュリティプログラム全体との統合方法に関するものです。

Learn More
No items found.
No items found.
April 7, 2021
Blog
blog-posts
April 6, 2021
April 6, 2021

開発者にはセキュア・コーディングを学びたいという動機があるのに、なぜそうではないのでしょうか?

セキュアコーディングについて学ぶ場合、開発者の主な動機は何か。また、それらを活用して成功するアプリケーションセキュリティプログラムを設計および実装するにはどうすればよいか。

Learn More
No items found.
No items found.
April 6, 2021
Blog
blog-posts
March 30, 2021
March 30, 2021

セキュアコーディングの将来において、人的要素はどのような役割を果たすのでしょうか?

サイバー脅威の数が増え続ける中、組織はセキュリティ、実用性、スピードの間で日々トレードオフを行っており、その過程でリスクにさらされています。

Learn More
No items found.
No items found.
March 30, 2021
Blog
blog-posts
March 25, 2021
March 25, 2021

コードを保護するにはヒーローが必要です。デベロッパーは必要なものを手に入れたのか?

サイバー脅威が増え続けている世界で、コーダーはステップアップしていますか?セキュアコーディングの人的要素、つまり最も重要な開発者が、私たちのコネクテッドワールドのセキュリティ保護において果たすべき役割を果たす準備はできていますか?この質問に答えるために、Secure Code WarriorがEvans Data Corp. と共同で実施した、安全なコーディング、安全なコードプラクティス、およびセキュリティ運用に対する開発者の態度に関する最近の調査から得られた洞察を見てみましょう。

Learn More
No items found.
No items found.
March 25, 2021
Blog
blog-posts
March 23, 2021
March 23, 2021

人間主導の安全なコーディングによる事後対応型から事前対応型への焦点の移行

過去20年以上にわたり、同じ10件のソフトウェアの脆弱性が、他のどの脆弱性よりも多くのセキュリティ侵害を引き起こしています。それでも、多くの企業はいまだに侵害後や事後からの修復を選択しており、そのすべてがもたらす人的影響とビジネス上の影響に悩まされています。しかし今、新しい調査研究により、人間が主導する新しい方向性が示されました。

Learn More
No items found.
No items found.
March 23, 2021
Blog
blog-posts
March 17, 2021
March 17, 2021

ハッピーバースデー SQL インジェクション、潰せないバグ

SQL インジェクションは 22 周年を迎えました。この脆弱性は十分に古くから存在していますが、私たちはこの脆弱性を永久に潰すのではなく、弱体化させています。

Learn More
No items found.
No items found.
March 17, 2021
Blog
blog-posts
March 11, 2021
March 11, 2021

Sensei Product Update - March 2021

Discover the latest improvements to the user experience of Sensei, Secure Code Warrior's IntelliJ plugin and start writing quality code even faster.

Learn More
No items found.
No items found.
March 11, 2021
Blog
blog-posts
March 10, 2021
March 10, 2021

信頼の構築:AppSecと開発者の間の真のセキュリティシナジーへの道

不信という不安定な基盤の上に築かれた関係は、まあ、期待を低くして取り組むのが一番です。残念なことに、これは組織内の開発者とアプリケーション・セキュリティ・チームとの協力関係の状態かもしれません。

Learn More
No items found.
No items found.
March 10, 2021
Blog
blog-posts
February 21, 2021
February 21, 2021

このオンラインJavaの落とし穴クイズをお試しください

いくつかの落とし穴とその修正方法を示す、おもしろい Java の落とし穴クイズと Github リポジトリのサポート

Learn More
No items found.
No items found.
February 21, 2021
Blog
blog-posts
February 15, 2021
February 15, 2021

継続的インテグレーションによる IntelliJ インスペクションの実行

SenseiとIntelliJのインテンションアクションを、IDE内のインスペクションとして、コマンドラインから、そして継続的インテグレーションでバッチモードで実行する方法を説明します。

Learn More
No items found.
No items found.
February 15, 2021
Blog
blog-posts
February 10, 2021
February 10, 2021

「左から左へ」から始める:セキュアコードは常に品質の高いコードなのか?

ある程度の品質のコードもその定義上安全ですが、すべての安全なコードが必ずしも高品質であるとは限りません。純粋に安全なコーディング標準を確保するには、「左から左へ」から始めるのが公式なのでしょうか?

Learn More
No items found.
No items found.
February 10, 2021
Blog
blog-posts
February 7, 2021
February 7, 2021

Java の落とし穴-ビット演算子とブール演算子

このブログ記事では、よくあるJavaコーディングの間違い (条件演算子の代わりにビット演算子の使用)、それによってコードが脆弱になるエラー、およびSenseiを使用して問題を修正および検出する方法について見ていきます。

Learn More
No items found.
No items found.
February 7, 2021
Blog
blog-posts
February 4, 2021
February 4, 2021

サイバー犯罪の猛獣を倒す手助けをする開発者にとって、トレーニングは2つの部分に分かれています

サイバーセキュリティにおけるヒーローと悪役の競争の場は、不公平なことで有名です。機密データは新たな金であり、攻撃者は大小さまざまなセキュリティバグを悪用して潜在的な利益を得て、防御を回避することに素早く適応します。

Learn More
No items found.
No items found.
February 4, 2021
Blog
blog-posts
February 1, 2021
February 1, 2021

静的解析とは

5つのIDEベースのアプローチとプラグインの例を参考に、静的解析がコードの記述にどのように役立つかを学びましょう。

Learn More
No items found.
No items found.
February 1, 2021
Blog
blog-posts
January 27, 2021
January 27, 2021

セキュア・コード・ウォリアーの6年:私たちはもう大人になったのか?

今は(とにかく、私たちにとって)特別な時期。直近の太陽の周りを一周し、過去365日間に何が行われたかを振り返り、成長、教訓、そして避けられない予測不可能な新年に向けて準備を整えるために何が行われてきたかを振り返ります。

Learn More
No items found.
No items found.
January 27, 2021
Case Study
case-studies
January 6, 2026
January 6, 2026

Kamer van Koophandel Sets the Standard for Developer-Driven Security at Scale

Kamer van Koophandel shares how it embedded secure coding into everyday development through role-based certifications, Trust Score benchmarking, and a culture of shared security ownership.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
October 8, 2025
October 8, 2025

Going for Gold: Soaring Secure Code Standards at Paysafe

See how Paysafe's partnership with Secure Code Warrior led to a 45% boost in developer productivity and a major reduction in code vulnerabilities.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
August 15, 2024
August 15, 2024

DigitalOcean Decreases Security Debt with Secure Code Warrior

DigitalOcean's use of Secure Code Warrior training has significantly reduced security debt, allowing teams to focus more on innovation and productivity. The improved security has strengthened their product quality and competitive edge. Looking ahead, the SCW Trust Score will help them further enhance security practices and continue driving innovation.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
November 28, 2023
November 28, 2023

Devlympics 2023: In Review

Explore the Devlympics 2023 results in this report. Dive into developer engagement, tech stack and languages trends in each industry that participated, and key vulnerabilities and CWEs covered in the annual global event hosted by Secure Code Warrior.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
November 22, 2023
November 22, 2023

One Culture of Security: How Sage built their security champions program with agile secure code learning

Discover how Sage enhanced security with a flexible, relationship-focused approach, creating 200+ security champions and achieving measurable risk reduction.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
October 2, 2023
October 2, 2023

The path to security champions: How Workday utilized agile learning to upskill developers

Discover how Workday transformed developer training with agile learning through Secure Code Warrior. By empowering developer with hands-on, language-specific education, Workday reduced vulnerabilities early in the SDLC. See their impressive results and key takeaways to build a secure code culture.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
July 22, 2023
July 22, 2023

How Thales implemented developer-driven security

In this case study, learn how Thales has developed people, process, and technology approaches for an agile secure code learning program in order to engage developers to become active security champions.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
June 7, 2023
June 7, 2023

How Colgate-Palmolive boosted developer security skills and created a secure coding culture

Discover how retail giant Colgate-Palmolive reshaped its application security during its digital transformation journey. Facing challenges in secure coding, they innovated their approach by integrating bite-sized, in-context learning into the developer workflow.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
May 13, 2021
May 13, 2021

Security as culture: How Blue Prism cultivates world-class secure developers

Learn how Blue Prism, the global leader in intelligent automation for the enterprise, used Secure Code Warrior's agile learning platform to create a security-first culture with their developers, achieve their business goals, and ship secure code at speed

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
May 12, 2021
May 12, 2021

Supercharged Security Awareness: How Tournaments are Inspiring Developers at Erste Group

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
January 1, 2021
January 1, 2021

How a ‘Game of Codes’ is leading IAG Group to a more secure coding future

IAG Group is the name behind many of the leading insurancecompanies in the Asia-Pacific region, underwriting policies formillions of customers to the tune of approximately AUD $11.4 Billionin premiums per annum.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
January 1, 2021
January 1, 2021

Driving Actionable Awareness: FINRA's Push For Super-Secure Developers

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
January 1, 2021
January 1, 2021

Creating a revolutionary security certification experience

Learn how they created an in-house technology education initiative, aimed at supporting thousands of employees to learn practical, cutting-edge skills in a number of disciplines, including machine learning and cybersecurity.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
January 1, 2021
January 1, 2021

Beyond Compliance: Motorola Solutions Drives Winning Security Culture

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
January 1, 2021
January 1, 2021

ASRG's push for automotive software security

Explore this comprehensive case study to learn more about how they utilized Secure Code Warrior's tournaments to engage developers, increase awareness of key vulnerabilities affecting automotive software, and gain metrics across multiple languages and frameworks.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Case Study
case-studies
January 1, 2021
January 1, 2021

Application Security @ NAB | Gamified Security Training: The Key to Scalable Developer Growth

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
August 27, 2026
August 27, 2026

Forbes: A New Frontier: NSA Proposes “Security By Design” Considerations For AI Enablement

​The cybersecurity industry, which has been advocating for “security by design” principles for more than a decade, stands in wide-eyed amazement at the risks posed by artificial intelligence (AI). As organizations rush to embrace AI enablement, a CISO’s most pressing priority is to avoid becoming a roadblock. However, without effective AI usage and governance, observability and traceability, organizations may be blindsided by their AI risk.​

Learn More
No items found.
No items found.
This is some text inside of a div block.
Media Release
news-articles
August 21, 2026
August 21, 2026

Techpartner.news: Secure Code Warrior introduces framework to govern AI use in software development

Secure Code Warrior has introduced the SCW AI Adoption Model, a framework designed to help organisations govern AI use in software development as the industry shifts from the traditional software development lifecycle (SDLC) toward what the company calls the Agentic Development Lifecycle (ADLC).

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
August 19, 2026
August 19, 2026

DevOps.com: Are LLMs Equally Good (or Bad) at Building Secure Software?

With many software engineering teams moving from AI coding assistants into full agentic AI code generation and increasing the amount of code they produce exponentially, ensuring the security of that code must be a top priority. The study produces practical guidance for organizations that are getting on board the AI-assisted or agentic code development train.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
August 14, 2026
August 14, 2026

TechRadar Pro: Beware the token trap: Why saving on inference might put your ADLC at risk

Token use can create unexpected, sizeable costs for organizations.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
August 11, 2026
August 11, 2026

KBI Media: AI Coding Boom Raises Fresh Cybersecurity Risks for Business

AI enables faster development cycles and allows developers to focus on higher-value work. For many businesses, these efficiencies are becoming essential to remaining competitive. The challenge, therefore, is not whether to adopt AI, but how to do so responsibly. Businesses that invest in developer education, governance frameworks, AI observability and robust security controls will be better positioned to capture the benefits while limiting the associated risks.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
August 11, 2026
August 11, 2026

In AI Today: AI's weakest link isn't the model but the software supply chain

The issue is no longer simply about protecting AI models themselves. Increasingly, attackers are focusing on the software ecosystem surrounding those models, including the development tools, middleware, open-source libraries, and automated deployment pipelines that organisations rely upon every day.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
August 10, 2026
August 10, 2026

The AI Journal: Investigating global AI regulation: Who is winning, and where to from here?

As we will unpack together, there is a lot of movement around the world, with some collaboration between nations, but the path forward is far from uniform or clear, particularly in business environments where AI adoption is often mandated before holistic safeguarding measures are in place.  

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
July 27, 2026
July 27, 2026

Cyber Daily: The industry reacts to OpenAI’s agent ‘accidentally’ hacking Hugging Face

According to one expert, AI guardrails are not designed as “security boundaries” but rather to influence behaviour – but what if that behaviour is hacking one of your industry partners?

Learn More
No items found.
No items found.
This is some text inside of a div block.
Media Release
news-articles
July 24, 2026
July 24, 2026

SecurityBrief: Autonomous OpenAI agents breach Hugging Face in test

Cyber security experts have warned that the breach of Hugging Face infrastructure during an OpenAI security evaluation marks a turning point in the risks posed by autonomous AI agents. In the incident, AI models moved beyond a controlled test and carried out a live, multi-stage intrusion against the AI platform.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
July 24, 2026
July 24, 2026

Technology Decisions: AI generated code found to produce predictable weaknesses

AI-generated code introduces an average of 15 confirmed vulnerabilities per codebase, research published by Secure Code Warrior indicates.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
July 23, 2026
July 23, 2026

Forbes: OpenAI’s Hugging Face Breach Shows Frontier AI Guardrails Are Failing

Frontier AI is facing a PR crisis. After Hugging Face released a blog post on July 16 claiming an autonomous agent had breached its internal environment, OpenAI posted on July 21 that the incident occurred when GPT 5.6 Sol and a “pre-release model” escaped a controlled testing environment.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
July 22, 2026
July 22, 2026

In AI Today: Secure Code Warrior research reveals AI-generated code introduces an average of 15 vulnerabilities per codebase

Secure Code Warrior research reveals AI-generated code introduces an average of 15 vulnerabilities per codebase.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
July 21, 2026
July 21, 2026

VMBlog: Secure Code Warrior Research Reveals AI-Generated Code Introduces an Average of 15 Vulnerabilities Per Codebase

Secure Code Warrior introduced the SCW AI Trust Index, a living benchmark for AI coding security that grows with every new model, helping organizations understand and govern the security risks introduced by AI-generated code. Built on a methodology created with RMIT University, Australia, then extended by Secure Code Warrior, the research presents comprehensive benchmarks on how often leading LLMs produce insecure code, with material implications for every enterprise scaling AI-assisted development.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
July 21, 2026
July 21, 2026

Dark Reading: Choose Wisely: AI-Generated Coding Risk Varies, A Lot

AI-generated code introduces 15 vulnerabilities on average per codebase, but the actual risk depends on framework pairing more than the model used.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Media Release
news-articles
July 21, 2026
July 21, 2026

Secure Code Warrior Research Reveals AI-Generated Code Introduces an Average of 15 Vulnerabilities Per Codebase

New SCW AI Trust Index shows AI-generated coding risk is not random, it's predictable by model and framework, giving security leaders the data to safely scale AI-assisted development.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
July 16, 2026
July 16, 2026

ITWire: Eight Industry Executives Comment on Worldwide AI Appreciation Day

The challenges with AI implementation, constant updates, and the race for industry dominance are coming thick and fast, and security professionals are among the most affected by its vast risk profile.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
July 16, 2026
July 16, 2026

Cyber Daily: The industry speaks – part 3: AI Appreciation Day 2026

The Australian government has said AI is very much in the country’s future national interest – but where does it stand today? Here’s what the industry’s best and brightest have to say about artificial intelligence and its role in the modern enterprise.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
July 13, 2026
July 13, 2026

ITWire: Agentic AI Era Demands Overhaul of Governance Frameworks

The emergence of agentic AI marks a structural shift in software development, introducing systems that not only accelerate production cycles but also perform autonomous reasoning and action beyond direct human control.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
July 2, 2026
July 2, 2026

SecurityWeek: How to Conduct a Successful Audit of AI-Driven Software Development

As AI-generated code becomes commonplace, CISOs need new audit strategies to measure developer practices, govern AI tool usage, and identify software risks before they reach production.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
July 1, 2026
July 1, 2026

SD Times: Platform Engineering & Developer Experience: Making Engineers Faster Without Making Them Reckless: SD Times 100

This category has taken on new urgency in 2026 for a reason that’s specific to this moment: AI coding tools and agents are dramatically increasing how much code gets written and how often it needs to be deployed, tested, and provisioned for. Platform engineering is the layer that determines whether that increased velocity translates into shipped value or into chaos.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
April 10, 2026
April 10, 2026

SD Times: AI-Assisted Development Multiplies Human Error: What’s Your AI Governance and Risk Management Strategy?

According to a recent report from Gartner, the rampant use of shadow AI and rogue automation is further fueling the proliferation of AI vulnerabilities. Gartner notes that 32% of IT workers using generative AI tools at work say they keep them hidden from cybersecurity teams. Combined with low-code/no-code platforms and vibe coding practices, the AI copilots are greatly expanding the enterprise attack surface.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 31, 2026
March 31, 2026

Cybersecurity Tribe: What Separates Real AI Governance From Policy Theater

For this article, we asked a central question for security and risk leaders: "What differentiates a policy that genuinely mitigates enterprise risk from one that exists primarily to demonstrate that the organization has acknowledged AI risk?"

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 31, 2026
March 31, 2026

ISMG: AI Coding Tools Raise Hidden Security Risks

Secure Code Warrior's Pieter Danhieux on Managing AI-Driven Development Risks

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 30, 2026
March 30, 2026

ITWire: Decoding AI Coding “Personalities” Critical to Managing Development Risk

As generative AI cements its place in enterprise software development, a familiar discipline is taking on new urgency: risk management.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 24, 2026
March 24, 2026

In AI Today: Secure Code Warrior launches Trust Agent: AI to enable safe, scalable AI-driven development

Secure Code Warrior have today announced SCW Trust Agent: AI, the industry’s first governance solution designed to make Artificial Intelligence (AI) influence in software development visible, attributable, and enforceable at the point of commit — enabling enterprises to scale AI coding tools with measurable control over software risk.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 23, 2026
March 23, 2026

DEVOPSdigest: 25 Years of the Agile Manifesto, and the End of the Road for AppSec?

Even as we restructure the SDLC around the most impactful elements of the Agile methodology with careful, DevSecOps-centric security considerations, is this the end of the road for AppSec as we know it?

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 23, 2026
March 23, 2026

Cyber Defense Magazine: Global InfoSec Awards 2026 Secure Code Warrior Wins Outstanding Achievement in Cybersecurity Risk Management and Compliance Excellence

Global InfoSec Awards 2026 Secure Code Warrior Wins Outstanding Achievement in Cybersecurity Risk Management and Compliance Excellence

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 19, 2026
March 19, 2026

ITWire: Secure Code Warrior Launches Trust Agent: AI to Enable Safe, Scalable AI-Driven Development

New AI Software Governance solution makes AI-generated code visible at commit, enforces policy before production, and connects real development behavior to measurable risk reduction.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 19, 2026
March 19, 2026

DevOps.com: Secure Code Warrior AI Agent Applies Policies to AI Generated Code

Secure Code Warrior (SCW) this week added an artificial intelligence (AI) agent that both identifies code generated by an AI coding tool and automatically applies the appropriate governance policies.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 18, 2026
March 18, 2026

SecurityBrief UK: Secure Code Warrior unveils AI tool to govern code risk

Secure Code Warrior has launched SCW Trust Agent: AI, a software governance product that tracks the use of AI coding tools in development and links that usage to software risk when developers commit code.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 17, 2026
March 17, 2026

2026 Globee® Awards for Cybersecurity: Secure Code Warrior Wins Gold Globee for Software Development Cybersecurity Solutions (Best Of)

2026 Globee® Awards for Cybersecurity: Secure Code Warrior Wins Gold Globee for Software Development Cybersecurity Solutions (Best Of)

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 17, 2026
March 17, 2026

DEVOPSdigest: Secure Code Warrior Releases Trust Agent

Secure Code Warrior announced SCW Trust Agent: AI, a governance solution designed to make AI influence in software development visible, attributable, and enforceable at the point of commit — enabling enterprises to scale AI coding tools with measurable control over software risk.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 17, 2026
March 17, 2026

TalkDev: Secure Code Warrior Launches Trust Agent: AI to Enable Safe, Scalable AI-Driven Development

Secure Code Warrior today announced SCW Trust Agent: AI, the industry’s first governance solution designed to make AI influence in software development visible, attributable, and enforceable at the point of commit — enabling enterprises to scale AI coding tools with measurable control over software risk. For the first time, organizations can trace which AI models influenced specific commits, correlate that influence to vulnerability exposure, and take corrective action before insecure code reaches production.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 17, 2026
March 17, 2026

Help Net Security: SCW Trust Agent: AI tracks AI influence in code to reduce software risk

Secure Code Warrior has announced SCW Trust Agent: AI, a governance solution designed to make AI influence in software development visible, attributable, and enforceable at the point of commit, enabling enterprises to scale AI coding tools with measurable control over software risk. Organizations can trace which AI models influenced specific commits, correlate that influence with vulnerability exposure, and take corrective action before insecure code reaches production.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Media Release
news-articles
March 17, 2026
March 17, 2026

Secure Code Warrior Launches Trust Agent: AI to Enable Safe, Scalable AI-Driven Development

New AI Software Governance solution makes AI-generated code visible at commit, enforces policy before production, and connects real development behavior to measurable risk reduction.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 13, 2026
March 13, 2026

Security Boulevard: Threat Modeling with AI: A Developer-Driven Boon for Enterprise Security

Developers have long struggled to truly claim a seat at the table in traditional threat modeling programs, but with the right skills, they have the opportunity to wield AI responsibly to seriously cut risk and rework in their codebase.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 9, 2026
March 9, 2026

The AI Journal: Understanding LLM Coding Personalities Is Now Key to Developer Risk Management

AI-generated code may be “made by machine”, but taking a cookie-cutter approach to securing that code would fall well short of mitigating the vulnerabilities LLMs can introduce. Organizations need to establish precise security reviews, with human developers anchoring the process to implement effective security controls while also managing the specific coding temperament of each LLM used. AI-generated code must undergo the same personalized risk assessments as code written by human developers.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 2, 2026
March 2, 2026

SecurityBrief: The security challenges in AI-assisted software development

s artificial intelligence (AI) tools become more widely used in the software development process, their impact on security is becoming clearer. According to recent research, nearly 70% of organisations have discovered vulnerabilities caused by AI tools while one in five have experienced a serious incident as a result of those vulnerabilities.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
March 2, 2026
March 2, 2026

KBI Media: Eliminating the Technical Debt Caused by AI-Assisted Software Development

According to research company Forrester[1], the tech debt for 75% of organisations will increase to a moderate or high level during this year, due to the rapid expansion of AI usage across a range of areas including software development.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
February 20, 2026
February 20, 2026

Forbes: Security Self-Governance: Addressing The Regulatory Gap In AI-Assisted Software Development

While it’s early into 2026, we’re seeing new research that reveals the extent of cyber risks caused by artificial intelligence (AI)-assisted software development: Nearly 7 in 10 organizations have discovered vulnerabilities introduced by AI-generated code, and 1 in 5 have suffered a serious incident tied directly to the vulnerabilities.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
February 19, 2026
February 19, 2026

ITWire: Why AI Is Dulling Cybersecurity’s Most Important Edge

Artificial intelligence (AI) has rapidly become indispensable to modern software development. From large language models that generate code on demand to agentic systems that automate entire workflows, AI tools promise dramatic gains in productivity and efficiency.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
February 12, 2026
February 12, 2026

SecurityWeek: How to Eliminate the Technical Debt of Insecure AI-Assisted Software Development

Developers must view AI as a collaborator to be closely monitored, rather than an autonomous entity to be unleashed. Without such a mindset, crippling tech debt is inevitable.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
February 9, 2026
February 9, 2026

CSO Online: Software developers: Prime cyber targets and a rising risk vector for CISOs

From technical compromise to AI-driven attacks, cyber criminals increasingly see software developers as prime targets, creating systemic risks CISOs must address.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
January 30, 2026
January 30, 2026

SMBtech: Tech Industry Leaders React To Data Privacy Week 2026

It’s Online Privacy Week, a time of year where individuals and organisations are all reminded to check their digital footprint(s). Some might say that’s a futile gesture at a time where major social media and marketing players know absolutely everything about you and are cheerfully selling all that data to anyone who’ll buy it; when Microsoft is performing every trick in the book to get Windows users to put all their data in the cloud where it’s available for government agencies to snoop upon without letting you know; when a personal computer crisis means many people will be moved on to dumb-client computing landscape where everything from data storage to major processing tasks will be taking place in the cloud; and when people think that clicking ‘Accept’ on website pop-ups does something that meaningfully protects them. But, what do the experts say?

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
January 29, 2026
January 29, 2026

Security brief: AI heightens data privacy risks & reshapes digital trust

Technology and data specialists have warned that artificial intelligence and weak data governance are sharpening privacy risks for organisations, as businesses mark World Data Privacy Day.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
January 27, 2026
January 27, 2026

ITWire: Data Privacy Week 2026

“Data Privacy Week" presents a great reminder for organisations to reassess their customer privacy policies and prioritise transparent data collection in their marketing strategies.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
January 27, 2026
January 27, 2026

Dynamic Business: Data Protection Day 2026: Five experts on the privacy risks threatening your business

Five leading cybersecurity experts warn AI is being integrated faster than security policies can manage the risk, creating urgent privacy gaps for SMEs ahead of Data Protection Day on 28 January.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
January 22, 2026
January 22, 2026

Information Security Buzz: OWASP Top 10 2025: New Enemies, Old Foes, and an Approach to Vulnerability Remediation That Must Evolve

The OWASP Foundation has been a guiding light for security professionals and enthusiasts alike, providing critical, practical advice on the most insidious software vulnerabilities across a plethora of categories and platforms. It has been the first major update since 2021 to the flagship OWASP Top 10 Web Vulnerabilities, and in that time, the industry has been rocked by a stampede of AI technology, tools, and code, each creating a dichotomy of security efficiency and risk for both cybersecurity and software engineering professionals.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
January 22, 2026
January 22, 2026

DEVOPSdigest: What Software Developers Need to Know About Secure Coding and AI Red Flags

The bottom line: AI tools are not safe for enterprise use unless the code output is reviewed and implemented by a security-proficient human. 30% of security experts admit that they don't trust(link is external) the accuracy of code generated by AI itself. That's why security leaders must prioritize the education and upskilling of developer teams, to ensure they have the necessary skills and capabilities to mitigate AI-assisted code vulnerabilities as early as possible. This will lead to the cultivation of a "security first" team culture and safer AI use.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
January 15, 2026
January 15, 2026

Stack Overflow: If you're a Zoomer, this one's for you: Everything Gen Z needs to know about the 2025 tech landscape

Here's the lowdown on all the tech from 2025 that you, dear Zoomer, should know about.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
January 15, 2026
January 15, 2026

SC Media: CISOs can’t wait for the EU AI Act to take shape

CISOs hoping for the EU Artificial Intelligence Act to offer a solid framework for AI governance may be a little confused or disappointed by recent updates surrounding the implementation of AI restrictions.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
January 14, 2026
January 14, 2026

SecurityBrief: Agentic AI double agents expose dangerous security gaps

An alleged nation-state attacker used Claude Code and a range of tools in the developer ecosystem to almost autonomously target specific companies with benign open-source hacking tools at scale. Of the more than thirty attacks, several were successful, and proved that AI agents could indeed execute large-scale, malicious tasks with little to no human intervention.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
January 14, 2026
January 14, 2026

DEVOPSdigest: 2026 DevSecOps Predictions

DEVOPSdigest's Prediction Series continues with 2026 DevSecOps Predictions — Industry experts offer predictions on how DevSecOps will evolve and impact the industry in 2026.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
January 12, 2026
January 12, 2026

ITWire: OWASP Names Latest Top 10 Application Vulnerabilities

The Open Worldwide Application Security Project (OWASP) has unveiled its latest top 10 vulnerabilities list, and it contains some surprising insights into important vulnerability classes.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
December 24, 2025
December 24, 2025

Channel Insider: Cybersecurity Experts Predict AI, Nation-State Threats in 2026

Cybersecurity experts outline 2026 predictions, from AI-driven attacks and quantum risk to nation-state threats, OT security gaps, and automation pressures.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
December 15, 2025
December 15, 2025

Security Journal UK: The rise of AI coding tools and the skills gap they expose

Pieter Danhieux, Co-founder and CEO of Secure Code Warrior warns that while AI coding tools promise speed and efficiency, they also introduce new risks.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
December 15, 2025
December 15, 2025

ITWire: Predictions on State of AI in 2026

2026 is shaping up to be the year AI evolves from instrument to partner, transforming how we work, create and solve problems.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
December 15, 2025
December 15, 2025

Fortune: AI coding tools exploded in 2025. The first security exploits show what could go wrong

While a breach of the tools hasn’t so far caused a wide-scale attack, there have been a few exploits and near-misses, and cyberthreat researchers have discovered critical vulnerabilities in several popular tools that make clear what could go horribly wrong.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
December 10, 2025
December 10, 2025

SMBtech: Australian Tech Industry Leaders Make Their Predictions for 2026

It’s that time of year where the technology industry predictions start rolling-in. Here’s what you can (apparently) expect in 2026.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
December 9, 2025
December 9, 2025

Technology Decisions: The importance of effective security when deploying AI tools

The concern is straightforward: development teams may place undue confidence in AI tools that are not equipped to interpret the nuanced context in which many security vulnerabilities arise. Large language models, for instance, can struggle to understand an application’s authentication or authorisation architecture, increasing the likelihood of missing critical safeguards.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
December 8, 2025
December 8, 2025

ITWire: Five Steps to Improve the Security of AI Developed Code

Industry guidance on managing the risks of AI-generated code increasingly points to the same conclusion: effective safeguards rely on close collaboration between humans and machines, with developers remaining firmly in the loop.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
December 1, 2025
December 1, 2025

SecurityBrief Australia: Agentic AI to transform APJ businesses & security by 2026

Agentic artificial intelligence (AI) is set to reshape the enterprise landscape in the Asia-Pacific and Japan (APJ) region in 2026, according to industry executives. Organisations are expected to embrace increasingly autonomous software agents, raising both productivity and new categories of risk across business domains.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
December 1, 2025
December 1, 2025

SC Magazine UK: Why Firms Can’t Ignore Agentic AI

How big a threat does agentic AI pose to businesses currently? And what should security leaders be doing to address the risk?

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
November 25, 2025
November 25, 2025

VMBlog: Cybersecurity Predictions: What AI will (and won't) do for us in 2026

My co-founder and CTO, Matias Madou, Ph.D., and I consulted our crystal ball (or should that be our NVIDIA GPUs?), and this is what we believe 2026 has in store for us from an AI security perspective.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
November 21, 2025
November 21, 2025

SD Times: Pumping the Brakes on Agentic AI Adoption in Software Development

An alleged nation-state attacker used Claude Code and a range of tools in the developer ecosystem, namely Model Context Protocol (MCP) systems, to almost autonomously target specific companies with benign open-source hacking tools at scale. Of the over thirty attacks, several were successful, and proved that AI agents could indeed execute large-scale, malicious tasks with little to no human intervention. Maybe it’s time we went a little slower, stopped to reflect on what is at stake here, and how best to defend ourselves.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
November 20, 2025
November 20, 2025

AIthority: Building Secure and Ethical AI Practices in Software Development

AI is now a key piece of modern software development. More than four out of five developers use AI coding tools daily or weekly – with many relying on multiple tools in parallel. Teams must understand where automation ends, and where accountability begins.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
November 18, 2025
November 18, 2025

SC Media: Secure Coding as Critical Thinking Instead of Vulnspotting – Matias Madou – ASW #357

Secure code should be grounded more in concepts like secure by default and secure by design than by “spot the vuln” thinking. Matias Madou shares his experience in secure coding training and the importance of teaching critical thinking. He also discusses why critical thinking is so closely related to threat modeling and how LLMs can be a tool for helping developers get beyond the superficial advice of, “Think like an attacker.”

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
November 17, 2025
November 17, 2025

Forbes: How CISOs Can Increase Their Influence In AI-Obsessed Boardrooms

Organizations are at an inflection point driven by the explosive adoption of AI, which promises significant changes in how businesses operate. That leaves CISOs on unsteady ground. As the gatekeepers of their organization’s data and access, they must ensure the security of the enterprise. However, the prospects of a headlong charge into wide-ranging, and possibly unchecked, use of AI could create a flood of security issues that many CISOs, under their current organizational structures, aren’t equipped to handle.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
November 14, 2025
November 14, 2025

Security Boulevard: Security Degradation in AI-Generated Code: A Threat Vector CISOs Can’t Ignore

Security leaders and developers alike are already acutely aware that AI coding assistants and agentic agents can introduce vulnerabilities into the code they generate. A recent study unveiled another critical concern to keep them up at night — LLMs used for making iterative code improvements may introduce new vulnerabilities over time, even when explicitly asked to make code more secure.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
November 13, 2025
November 13, 2025

Information Week: Make your own mandate: How CISOs can implement GenAI governance

Government bodies are trying to develop rules and regulations for safe AI use, but enterprises can't afford to wait. They need to address the risks now.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
November 12, 2025
November 12, 2025

CFOtech Australia: How women can continue to foster fulfilling high-tech careers in the AI age

In the sphere of cybersecurity in general and application security in particular, human oversight remains an absolute 'must' to harness the benefits of AI productivity.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
November 11, 2025
November 11, 2025

Tanium: Vibe coding may be unstoppable—but here’s how to rein in the risks

Like the meteoric rise of ChatGPT, vibe coding is all anybody can talk about this year. In fact, it just became a word in the dictionary. But beware the boom: These new AI coding tools offer speed, savings—and astounding vulnerabilities.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
November 11, 2025
November 11, 2025

[PODCAST] Stack Overflow: AI code means more critical thinking, not less

Ryan is joined by Secure Code Warrior’s co-founder and CTO Matias Madou to discuss the implications of LLMs’ variability on code security, the future of developer training as AI coding assistants become more popular, and the importance of critical thinking—especially for junior developers—in the age of AI.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
November 9, 2025
November 9, 2025

Cybersecurity Insiders: Use It or Lose It: Overreliance on AI Diminishes Critical Cybersecurity Thinking Skills

Software developers reap a host of benefits from making use of artificial intelligence assistants, whether in the form of Large Language Model (LLM) code creators or agentic AI agents. But recent reports, highlighted by a new study at MIT, warn that heavy use of AI can result in a loss of critical thinking skills among users.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
November 3, 2025
November 3, 2025

Security Week: How Software Development Teams Can Securely and Ethically Deploy AI Tools

To deploy AI tools securely and ethically, teams must balance innovation with accountability—establishing strong governance, upskilling developers, and enforcing rigorous code reviews.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
November 3, 2025
November 3, 2025

Dark Reading: AI Developed Code: 5 Critical Security Checkpoints for Human Oversight

To write secure code with LLMs developers must have the skills to use AI as a collaborative assistant rather than an autonomous tool, Madou argues.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
October 23, 2025
October 23, 2025

Techstrong.tv: Secure Code Warrior in the Age of AI with Pieter Danhieux

Secure Code Warrior’s Chief Executive Officer, Chairman, and Co-Founder Pieter Danhieux explains his transition from offensive cybersecurity to promoting secure software development. Founded in 2015, Secure Code Warrior aims to help developers build secure code from the start, a practice Danhieux and host Alan Shimel agree is more effective than fixing vulnerabilities later. The two also discuss the impact of AI on software development, noting that while AI increases coding speed and accessibility for more people, the security of AI-generated code still lags. They emphasize the growing need for developers to master secure coding practices amidst these technological advancements.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
October 20, 2025
October 20, 2025

SMBtech: Cybersecurity Awareness Month 2025: Australian Industry Reactions and Commentary

October is Australia’s Cybersecurity Awareness Month, the annual reminder for Aussies to stay vigilant online. This year’s theme, ‘Building our cyber safe culture’ once again highlights the importance of taking personal responsibility for staying secure in an increasingly digital world.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
October 16, 2025
October 16, 2025

SecurityBrief: SMEs urged to cut data & boost cyber defences as attacks rise

Cybersecurity Awareness Month has brought renewed attention to the increasing risks faced by organisations of all sizes, with a particular focus on the growing threat to small and medium-sized enterprises (SMEs) in Australia and the UK.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
October 14, 2025
October 14, 2025

ITBrief: Our biggest security risk isn’t our software - it’s our thinking

In the world of cybersecurity, we face creative and unconventional threats every day. But our greatest vulnerability isn't a flaw in our software, but a flaw in our collective thinking.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
October 10, 2025
October 10, 2025

KBI Media: Overcoming the Security Risks of Using AI In Software Development

Development teams face relentless pressure to deliver, yet they must continue to prioritise building secure, high-quality software. Leaders play a crucial role in reinforcing how a Secure by Design approach, supported by observability, benchmarking, and ongoing education, directly enhances code quality. By embedding these practices, organisations can close governance gaps and fully capture the benefits of AI-driven productivity and efficiency, while reducing the risk of security flaws or costly rework during the SDLC.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
October 1, 2025
October 1, 2025

In AI Today: The looming security challenges posed by Agentic AI

While agentic AI holds the promise of delivering significant business benefits, it also comes with significant caveats. The technology’s capabilities and autonomy present a potent enterprise threat vector beyond the realm of existing security concerns.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 25, 2025
September 25, 2025

Help Net Security: Secure Code Warrior gives CISOs visibility into developer AI tool usage

Secure Code Warrior has launched a beta program to expand the AI capabilities of its Trust Agent product. The new offering provides CISOs with security traceability, visibility, and governance over developers’ use of AI coding tools.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 25, 2025
September 25, 2025

Cyber Risk Leaders: Secure Code Warrior Launches AI Traceability

Secure Code Warrior have released a beta program for a major expansion of AI capabilities within its Trust Agent product. The upgrade, collectively referred to as Trust Agent: AI, leverages a combination of key signals, including AI coding tool usage, vulnerability data, code commit data and developer secure coding skills, to provide visibility into how AI development tools are impacting risk within the software development lifecycle (SDLC).

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 25, 2025
September 25, 2025

CSO Online: AI coding assistants amplify deeper cybersecurity risks

Although capable of reducing trivial mistakes, AI coding copilots leave enterprises at risk of increased insecure coding patterns, exposed secrets, and cloud misconfigurations, research reveals.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Media Release
news-articles
September 24, 2025
September 24, 2025

Secure Code Warrior Launches Industry-First AI Traceability to Enable Secure Developers and Supercharge Safe Productivity

New capabilities in SCW Trust Agent provide visibility and control over LLM usage for security leaders and CISOs.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 24, 2025
September 24, 2025

ITOps Times: Secure Code Warrior announces new solution that provides visibility and governance for AI coding tools

Secure Code Warrior is trying to provide organizations with greater visibility and control over developers’ use of AI coding tools with the launch of its new solution, Trust Agent: AI.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 24, 2025
September 24, 2025

DevOps Digest: Secure Code Warrior Introduces AI Traceability

Secure Code Warrior announced the launch of a beta program for a major expansion of AI capabilities within its Trust Agent product.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 24, 2025
September 24, 2025

CyberWire: Business Briefing for 09.24.25

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 24, 2025
September 24, 2025

Betanews: AI is an even playing field -- how secure by design can tip the scale [Q&A]

Vibe coding is currently all the rage, with more than 97 percent of respondents to a survey earlier this year reporting having used AI coding tools at work. The adoption of these tools only continues to grow but it comes with a catch, attackers are also employing the same techniques. We spoke to Pieter Danhieux, co-founder and CEO of Secure Code Warrior, to discuss how vibe coding is redefining the software development landscape, how malicious actors are also leveraging this technology and the need for organizations to implement secure by design strategies from the outset.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 22, 2025
September 22, 2025

SD Times: Benchmarking AI-assisted developers (and their tools) for superior AI governance

If the tech stack lacks tools that oversee not only developer security proficiency, but also the trustworthiness of approved AI coding companions each developer uses, then it is likely that efforts to uplift the overall security program and the developers working within it will be short of the appropriate data insights to effect change.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 22, 2025
September 22, 2025

ITWire: The Benefits and Risks of Using AI Tools in Software Development

The process of software development is undergoing a period of expedited change. Thanks to massive advances in artificial intelligence (AI) technology, projects can be completed more rapidly and by people with little or no prior experience.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 10, 2025
September 10, 2025

LeadDev: Ethics are being forgotten as the AI race heats up

Is the tech industry capable of the change needed to curb ethical and environmental concerns?

Learn More
No items found.
No items found.
This is some text inside of a div block.
Media Release
news-articles
September 9, 2025
September 9, 2025

Secure Code Warrior Expands Commitment to Secure by Design Best Practices with Free Secure Code Video Series for Developers

Launch of new 12-week video series on AI/LLM security empowers developers to safely adopt AI coding and mitigate emerging security risks.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 9, 2025
September 9, 2025

CSO Online: When AI nukes your database: The dark side of vibe coding

As developers lean on Copilot and GhostWriter, experts warn of insecure defaults, hallucinated dependencies, and attacks that slip past traditional defenses.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 8, 2025
September 8, 2025

The AI Journal: Resilience and Developer Risk Management: Two Pillars of Success in the Era of Secure by Design and AI Coding

Change is afoot in cybersecurity governance, and it couldn’t come at a more transformative time for security leaders worldwide. The White House issued a recent Executive Order (EO) designed to “reprioritize cybersecurity efforts to protect America”, and with it, reduce friction related to overzealous government oversight to focus on protecting critical digital assets and enhanced secure technology practices. Coupled with significant cuts to CISA, one could be forgiven for being apprehensive of the right approach going forward, especially in the wake of rapid AI technology progression and Secure by Design initiatives.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 5, 2025
September 5, 2025

SecurityWeek: How to Close the AI Governance Gap in Software Development

Widespread adoption of AI coding tools accelerates development—but also introduces critical vulnerabilities that demand stronger governance and oversight.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 3, 2025
September 3, 2025

teiss: When regulations aren’t enough

Pieter Danhieux at Secure Code Warrior explains why “Secure by Design” has emerged as mission critical for software development

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
September 2, 2025
September 2, 2025

Information Age: Vibe coding is a hot skill – and security experts are worried

GenAI tools are building insecure apps faster than ever.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
August 26, 2025
August 26, 2025

CXFocus Magazine: Going above and beyond in 2026

Today’s customers are an exacting lot with little tolerance for suppliers that fail to meet their ever-increasing expectations. Almost 94 per cent of Australian consumers stopped purchasing from at least one company after a negative experience, according to CPM’s 2025 The State of Customer Experience in Australia Report.

Learn More
No items found.
No items found.
This is some text inside of a div block.
eBook
downloads
July 21, 2026
July 21, 2026

Which AI Model Codes Most Securely?

See how 16 leading AI models actually code, scored across 11 real-world frameworks and 1,760 codebases — the framework matters as much as the model.

Learn More
No items found.
No items found.
This is some text inside of a div block.
One Pager
downloads
July 7, 2026
July 7, 2026

Citizen AI by Secure Code Warrior

AI risk doesn't stop at engineering. Get the one-pager on Citizen AI — build AI literacy and safe habits across your whole workforce.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
June 23, 2026
June 23, 2026

Understand how AI is transforming software development—and how security must evolve with it.

From AI autocomplete to autonomous agents—explore how software development is evolving and what it means for security, governance, and your team.

Learn More
No items found.
No items found.
This is some text inside of a div block.
One Pager
downloads
June 9, 2026
June 9, 2026

SCW named in new Agentic Coding Security category

Gartner named SCW twice in the 2026 Hype Cycle for Secure Software Engineering. Here's why it matters for AI-driven development.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Guide
downloads
May 15, 2026
May 15, 2026

SCW Learning Content for KnowBe4

Secure Code Warrior content available through KnowBe4 helps technical teams build secure coding and AI governance awareness through structured learning covering OWASP Top 10 risks, AI-assisted development, and modern secure coding practices.

Learn More
No items found.
No items found.
This is some text inside of a div block.
One Pager
downloads
May 13, 2026
May 13, 2026

Secure AI-driven development with KnowBe4 + Secure Code Warrior

Secure Code Warrior joins KnowBe4 to bring hands-on secure coding training into security awareness programs — covering OWASP, AI development, and 10 languages.

Learn More
No items found.
No items found.
This is some text inside of a div block.
One Pager
downloads
April 1, 2026
April 1, 2026

Trust Agent:AI - Secure and scale AI-Drive development

AI is writing code. Who’s governing it? With up to 50% of AI-generated code containing security weaknesses, managing AI risk is critical. Discover how SCW's Trust Agent: AI provides the real-time visibility, proactive governance, and targeted upskilling needed to scale AI-driven development securely.

Learn More
No items found.
No items found.
This is some text inside of a div block.
One Pager
downloads
March 23, 2026
March 23, 2026

The Power of OpenText Application Security + Secure Code Warrior

OpenText Application Security and Secure Code Warrior combine vulnerability detection with AI Software Governance and developer capability. Together, they help organizations reduce risk, strengthen secure coding practices, and confidently adopt AI-driven development.

Learn More
No items found.
No items found.
This is some text inside of a div block.
One Pager
downloads
March 19, 2026
March 19, 2026

Secure Code Warrior corporate overview

Secure Code Warrior is an AI Software Governance platform designed to enable organizations to safely adopt AI-driven development by bridging the gap between development velocity and enterprise security. The platform addresses the "Visibility Gap," where security teams often lack insights into shadow AI coding tools and the origins of production code.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Brochure
downloads
March 11, 2026
March 11, 2026

Secure code training topics & content

Our industry-leading content is always evolving to fit the ever changing software development landscape with your role in mind. Topics covering everything from AI to XQuery Injection, offered for a variety of roles from Architects and Engineers to Product Managers and QA. Get a sneak peek of what our content catalog has to offer by topic and role.

Learn More
No items found.
No items found.
This is some text inside of a div block.
One Pager
downloads
January 20, 2026
January 20, 2026

Cyber Resilience Act (CRA) Aligned Learning Pathways

SCW supports Cyber Resilience Act (CRA) readiness with CRA-aligned Quests and conceptual learning collections that help development teams build the Secure by Design, SDLC, and secure coding skills aligned with the CRA’s secure development principles.

Learn More
No items found.
No items found.
This is some text inside of a div block.
eBook
downloads
December 23, 2025
December 23, 2025

OWASP Top 10 2025 eBook

Want to dominate the OWASP Top 10? Download the No-BS Guide to Defending Your Applications Against the OWASP Top 10:2025

Learn More
No items found.
No items found.
This is some text inside of a div block.
One Pager
downloads
September 24, 2025
September 24, 2025

Trust Agent: AI by Secure Code Warrior

This one-pager introduces SCW Trust Agent: AI, a new set of capabilities that provide deep observability and governance over AI coding tools. Learn how our solution uniquely correlates AI tool usage with developer skills to help you manage risk, optimize your SDLC, and ensure every line of AI-generated code is secure.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
July 9, 2025
July 9, 2025

AI Coding Assistants: A Guide to Security-Safe Navigation for the Next Generation of Developers

Large language models deliver irresistible advantages in speed and productivity, but they also introduce undeniable risks to the enterprise. Traditional security guardrails aren’t enough to control the deluge. Developers require precise, verified security skills to identify and prevent security flaws at the outset of the software development lifecycle.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
April 28, 2025
April 28, 2025

Secure by Design: Defining Best Practices, Enabling Developers and Benchmarking Preventative Security Outcomes

In this research paper, Secure Code Warrior co-founders, Pieter Danhieux and Dr. Matias Madou, Ph.D., along with expert contributors, Chris Inglis, Former US National Cyber Director (now Strategic Advisor to Paladin Capital Group), and Devin Lynch, Senior Director, Paladin Global Institute, will reveal key findings from over twenty in-depth interviews with enterprise security leaders including CISOs, a VP of Application Security, and software security professionals.

Learn More
No items found.
No items found.
This is some text inside of a div block.
One Pager
downloads
April 16, 2025
April 16, 2025

Turn Awareness Into Action This Cyber Awareness Month

This October, turn awareness into action. Make Cyber Awareness Month memorable for your developers with a high-impact, high-participation experience—led by Secure Code Warrior's Professional Services team.

Learn More
No items found.
No items found.
This is some text inside of a div block.
One Pager
downloads
April 2, 2025
April 2, 2025

Professional Services - Accelerate with expertise

Secure Code Warrior’s Program Strategy Services (PSS) team helps you build, enhance, and optimize your secure coding program. Whether you're starting fresh or refining your approach, our experts provide tailored guidance.

Learn More
No items found.
No items found.
This is some text inside of a div block.
One Pager
downloads
March 19, 2025
March 19, 2025

Quests: Industry leading learning to keep developers ahead of the game mitigating risk.

Quests is a learning platform that helps developers mitigate software security risks by enhancing their secure coding skills. With curated learning paths, hands-on challenges, and interactive activities, it empowers developers to identify and prevent vulnerabilities.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
October 15, 2024
October 15, 2024

Benchmarking Security Skills: Streamlining Secure-by-Design in the Enterprise

The Secure-by-Design movement is the future of secure software development. Learn about the key elements companies need to keep in mind when they think about a Secure-by-Design initiative.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Video
downloads
August 15, 2024
August 15, 2024

Trust Agent in action

SCW Trust Agent gives you the tools you need to deliver secure code faster, ensuring developers have the knowledge and skills to implement security best practices in the specific programming language of their code commits.

Learn More
No items found.
No items found.
This is some text inside of a div block.
One Pager
downloads
July 23, 2024
July 23, 2024

Trust Agent by Secure Code Warrior

Are you confident that every line of code committed is backed by a developer with the necessary secure coding skills? Many organizations face this critical gap, leading to preventable vulnerabilities and reduced development velocity. SCW Trust Agent offers unparalleled visibility across your code repositories, analyzing commits directly against developer security proficiency. With policy gates, Trust Agent enables you to apply governance at the commit level, with policies to ensure code contributors have the secure code knowledge you require for your business-critical applications. Download our one-pager today to learn how SCW Trust Agent can help you strengthen your security posture, optimize your development lifecycle, and significantly reduce vulnerabilities.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Video
downloads
June 28, 2024
June 28, 2024

SCW Trust Score - The best way to build, measure, and optimize your security program

Learn more about Secure Code Warrior Trust Score, the best way to build, measure and optimize your security program.

Learn More
No items found.
No items found.
This is some text inside of a div block.
One Pager
downloads
April 26, 2024
April 26, 2024

Trust Score by Secure Code Warrior

Discover SCW Trust Score, an industry-first benchmark to help measure your security program's effectiveness. Benchmark against industry peers, optimize your security posture, and drive data-driven decisions for enhanced software security.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
April 26, 2024
April 26, 2024

Preparing for PCI-DSS 4.0 Compliance

Evaluate your software security infrastructure to support PCI-DSS requirements

Learn More
No items found.
No items found.
This is some text inside of a div block.
Guide
downloads
April 5, 2024
April 5, 2024

The ultimate guide to security trends in financial services

Financial services institutions face an array of challenges that hinge on their ability to make efficient, effective use of technology in a fast-evolving financial world. Organizations are operating in a time of rapid changes—both internally and across the industry—in a highly competitive, cloud-based business environment. In pursuing their ongoing digital transformations, for example, organizations are working to get around the organizational friction that hinders investments into new technologies, such as artificial intelligence, that could accelerate payment processes and other procedures.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Report
downloads
March 24, 2024
March 24, 2024

Predicts 2024: Generative AI is reshaping software engineering

Explore how generative AI is revolutionizing software development across the SDLC, as highlighted in Gartner's report, advising Application Security leaders on the importance of scrutinizing AI-generated software.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
March 7, 2024
March 7, 2024

PCI DSS 4.0 Unraveled

This guide offers practical strategies to engage development teams in PCI DSS 4.0 compliance. It outlines the modern developer's requirements for compliance, strategies for security professionals and development managers to collaborate on developer-focused security programs, and step-by-step advice on effective training initiatives to mitigate vulnerabilities permanently.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
March 4, 2024
March 4, 2024

Developer security maturity quiz

Secure Code Warrior outlines three security maturity stages for developer teams: defining, adopting, and scaling. How security-savvy are your developers? Take our quiz to find out.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
February 22, 2024
February 22, 2024

Script Testing please ignore

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Infographic
downloads
February 1, 2024
February 1, 2024

ROI of Secure Code Learning

Explore the long-term ROI of secure coding education. Learn how investing in agile, proactive learning strategies enhances security and offers cost-effective protection against today's cyber threats.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
January 30, 2024
January 30, 2024

Why developers need security skills to effectively navigate AI development tools

The promise of artificial intelligence writing complex code at the touch of a button is intriguing, but the reality is that AI will need a lot of help from human developers to craft truly secure and reliable code.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Infographic
downloads
January 29, 2024
January 29, 2024

Top 10 predictions for 2024

Check out what SCW experts are predicting in the world of cybersecurity and software security in 2024.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
November 30, 2023
November 30, 2023

Agile learning platforms: ROI of developer-driven security

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
September 12, 2023
September 12, 2023

Forge your fortress: Six essential pillars of developer enablement in software security

In this white paper, security expert and Secure Code Warrior CTO & Co-Founder Matias Madou, Ph.D. will discuss:The six pillars you need to roll out effective security education and enablement for your development cohort. Lessons learned from ten executives implementing security programs at the enterprise level, and common pitfalls to avoid on your road to success.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Video
downloads
September 1, 2023
September 1, 2023

The Agile Learning Platform

Empower your development team with Secure Code Warrior, the agile learning platform designed to tackle the evolving challenges of application security. Stay ahead in the battle against security breaches and regulatory complexities with our industry-leading, up-to-date content, ensuring a proactive and engaging approach to secure code education.

Learn More
No items found.
No items found.
This is some text inside of a div block.
eBook
downloads
August 14, 2023
August 14, 2023

OWASP Top 10 API 2023: A tactical guide for smart developers

Explore the Latest in API Security. Dive into our 2023 OWASP Top 10 guide. Elevate your coding skills, tackle vulnerabilities, and stay agile in the ever-evolving world of API development. Download now for an insightful journey!

Learn More
No items found.
No items found.
This is some text inside of a div block.
eBook
downloads
July 17, 2023
July 17, 2023

The secure code learning blueprint

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
eBook
downloads
December 13, 2022
December 13, 2022

Your handbook to developer-driven security and agile learning

Start shifting left with developer-driven security. This handbook will show you how to engage with developers to upskill and increase their security knowledge, as well as how to go about measuring impact to write more secure code.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
July 28, 2022
July 28, 2022

Software is your colleague: A new perspective to strengthen access control and API security

APIs act like flawed humans; is treating them as such the key to better cybersecurity?

Learn More
No items found.
No items found.
This is some text inside of a div block.
eBook
downloads
July 21, 2022
July 21, 2022

The secure code training blueprint

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Infographic
downloads
July 1, 2022
July 1, 2022

The developer security maturity matrix

Building security maturity in development teams can be approached in stages. Based on our experience with 400+ organizations, we've identified common practices and traits in three different stages of security maturity - defining, adopting, and scaling.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
July 1, 2022
July 1, 2022

The importance of security maturity in developer teams

By assessing and understanding a development team’s security maturity, organizations can formulate a plan with the right stakeholders, process, and technology to build and support the necessary skills and capabilities.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Infographic
downloads
July 1, 2022
July 1, 2022

Development Team Security Maturity

Security maturity in development teams should be a continuous cycle of improvement with realistic goals along the way. As development teams increase their security maturity, they reduce the amount of rework and minimize risk, while also allowing automation to help create efficiency in the SDLC.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Report
downloads
June 30, 2022
June 30, 2022

Report: The state of developer driven security 2022

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
June 30, 2022
June 30, 2022

Whitepaper: The challenges (and opportunities) to improve software security

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Brief
downloads
June 20, 2022
June 20, 2022

Brief: A cohesive approach to developer-led security

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
June 16, 2022
June 16, 2022

Security and privacy at Secure Code Warrior

Secure Code Warrior is committed to safeguarding our information assets, and those of our customers, against misuse, abuse or compromise. We adopt and foster a risk-based approach to managing information security, with the goal of consistently implementing appropriate risk management and mitigation measures to address the threat landscape posed to the security of the platform, customer data and information. As Secure Code Warrior continues to succeed as a major player providing services to our customers, we will continue to build security capabilities as part of our security and privacy programs. Read our whitepaper for more information.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Brief
downloads
May 3, 2022
May 3, 2022

Shift left (and achieve compliance) with repeatable secure coding skills

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Brief
downloads
May 3, 2022
May 3, 2022

Defining secure code

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
February 17, 2022
February 17, 2022

Why you need more than scanning tools to create secure code

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
eBook
downloads
February 14, 2022
February 14, 2022

Your guide to defense against the dark art of zero-day attacks

Zero-day attacks can be the stuff of nightmares, but when an organization commits to using all available tools in their security arsenal towards a preventative strategy, security professionals can sleep a little easier.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Guide
downloads
January 14, 2022
January 14, 2022

A plan to upskill and engage your developers

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
January 13, 2022
January 13, 2022

The preventative, developer-driven approach to software security

Learn more about how security-aware developers represent a vast and largely untapped resource that can support cyber defenses by consistently standing against modern threats.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
November 11, 2021
November 11, 2021

Security and Privacy Whitepaper

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
October 19, 2021
October 19, 2021

Convince Your CISO/CTO Kit (for starting a demo)

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
eBook
downloads
September 24, 2021
September 24, 2021

OWASP Top 10 API: Strategies for Smart Developers

Download the practical guide to defeating common API security baddies in your code.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Guide
downloads
September 20, 2021
September 20, 2021

How to unify your security and development teams to stand together against security risk

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
August 4, 2021
August 4, 2021

How AppSec can reduce vulnerabilities and achieve compliance - leaving them free to tackle larger beasts

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Guide
downloads
July 28, 2021
July 28, 2021

Buyers Checklist: Secure Development Learning Platforms

Buyer’s Checklist: Secure Development Learning Platforms is aimed at decision makers and technology buyers looking to evaluate secure development learning platforms.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
July 18, 2021
July 18, 2021

Shared Assessments SIG Lite Questionnaire

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
July 18, 2021
July 18, 2021

SCW Pen Test Summary

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
July 18, 2021
July 18, 2021

SCW Cyber Insurance Certificate

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
June 4, 2021
June 4, 2021

Shifting from reaction to prevention: The changing face of software security 2021 - Whitepaper

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
June 3, 2021
June 3, 2021

Cybersecurity Executive Order: A deliberate approach to improve software security with developer skills

While this Executive Order for touches on many aspects of functional cybersecurity, it specifically outlines, for the first time, the impact of developers, and the need for them to have verified security skills and awareness.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
May 18, 2021
May 18, 2021

FSQS-NL Certificate

Secure Code Warrior is now FSQS-NL registered. This registration is an important milestone in our continuous efforts to being compliant with regulations within the financial industry.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
May 17, 2021
May 17, 2021

Platform Architecture Diagram

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
May 16, 2021
May 16, 2021

Information Security Policy

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
May 16, 2021
May 16, 2021

CAIQ Questionnaire

Secure Code Warrior has completed a publicly available Consensus Assessment Initiative Questionnaire (CAIQ), based on the results of our due diligence self-assessment.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
May 12, 2021
May 12, 2021

The DevSecOps Super Bowl: How security champions can support your team to victory against late-stage vulnerabilities

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
March 16, 2021
March 16, 2021

Executive Roundtable Whitepaper - Visma & Blue Prism

How has 2020 changed the way we look at software security, an executive roundtable with Visma.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
March 9, 2021
March 9, 2021

The women of mimmit koodaa movement dive into secure coding

Mimmit Koodaa (women who code in Finland) tell us about their secure coding experiences.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
March 9, 2021
March 9, 2021

Teams in a global financial institution go head-to-head in secure coding contest.

See how a global financial organization promoted the importance of securing their banking applications across the world. With fun interactive tournaments.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Brochure
downloads
February 15, 2021
February 15, 2021

Missions - Experience the impact of poor code in real-world simulations

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Brochure
downloads
February 15, 2021
February 15, 2021

Courses - Build Secure Coding Skills and Competency

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Video
downloads
January 1, 2021
January 1, 2021

A Step-By-Step Guide to Tournaments

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
eBook
downloads
January 1, 2021
January 1, 2021

Your Battle Plan to Defeat the OWASP Top 10

The ten most common security vulnerabilities don’t stand a chance against secure development superheroes like you. This free eBook is your ultimate field guide to understanding each infamous entry in the OWASP Top 10 2021, gaining insight into how each bug operates.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
January 1, 2021
January 1, 2021

Triumph with OWASP and Secure Code Warrior Tournaments - Whitepaper

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Brochure
downloads
January 1, 2021
January 1, 2021

Tournaments - Build organizational awareness and developer engagement, making secure coding top of mind

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
eBook
downloads
January 1, 2021
January 1, 2021

The Infamous 8: Infrastructure as Code Vulnerabilities to Find and Fix

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
January 1, 2021
January 1, 2021

The Five-Step Road to DevSecOps Success: How AppSec Professionals Can Thrive in Their Dream Team

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
January 1, 2021
January 1, 2021

The Fastest and Easiest Way to Improve Your Software Security Program

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Guide
downloads
January 1, 2021
January 1, 2021

The Creative CISO's Guide to Transforming Their Security Program

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
January 1, 2021
January 1, 2021

Take the pain out of PCI-DSS Compliance Whitepaper

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
January 1, 2021
January 1, 2021

Introduction to Secure Code Warrior

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Whitepaper
downloads
January 1, 2021
January 1, 2021

Empowering developers to write secure code

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Brochure
downloads
January 1, 2021
January 1, 2021

Empower developers to be the first line of defense and grow your organization's security posture

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Brochure
downloads
January 1, 2021
January 1, 2021

Assessments - Benchmark the secure coding skills of your developers, and build your security posture.

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Guide
downloads
January 1, 2021
January 1, 2021

AppSec Checklist

Download the AppSec checklist and see if you’re in need of a security lifeline.

Learn More
No items found.
No items found.
This is some text inside of a div block.
eBook
downloads
January 1, 2021
January 1, 2021

6 Critical Steps Before You Roll Out a Security Uplift Program

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
January 1, 2021
January 1, 2021

2019 AppSec Trend Report

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
No items found.
This is some text inside of a div block.
Other
downloads
December 1, 2019
December 1, 2019

ISO 27001 Compliance Certificate

Secure Code Warrior is ISO 27001:2013 certified

Learn More
No items found.
No items found.
This is some text inside of a div block.
No resources found. Try another search!