Conference
|
Nov 5, 2026
OWASP Global AppSec USA
Register
Conference
|
Oct 29, 2026
OWASP LASCON
Register
Conference
|
Sep 24, 2026
Gartner Security & Risk Management Summit 2026
Register
Blog
|
Aug 24, 2026
Enabler 7: Developer Recognition
read more
Blog
|
Jul 29, 2026
Named in the Gartner® Hype Cycle™ for Application Security 2026
read more
Blog
|
Jul 21, 2026
Are you a CISO or Engineering Leader worried about the Security and Cost of LLM code generation?
read more
Case Study
|
Jan 6, 2026
Kamer van Koophandel: Developer-Driven Security at Scale
read more
Browser window icon with bold letters KVK and two blue horizontal lines below on a gradient blue background.
Case Study
|
Oct 8, 2025
Going for Gold: Soaring Secure Code Standards at Paysafe
read more
Browser window with Paysafe logo and three light blue bullet points on a blue gradient background.
Case Study
|
Nov 22, 2023
One Culture of Security: How Sage Built Their Champions Program
read more
News Article
|
Aug 27, 2026
Forbes: A New Frontier: NSA Proposes “Security By Design” Considerations For AI Enablement
read more
Media Release
|
Aug 21, 2026
Techpartner.news: Secure Code Warrior introduces framework to govern AI use in software development
read more
News Article
|
Aug 19, 2026
DevOps.com: Are LLMs Equally Good (or Bad) at Building Secure Software?
read more
eBook
|
Jul 21, 2026
Which AI Model Codes Most Securely?
read more
One Pager
|
Jul 7, 2026
Citizen AI by Secure Code Warrior
read more
Whitepaper
|
Jun 23, 2026
Understand how AI is transforming software development—and how security must evolve with it.
read more
Resource library

Insights from experts shaping secure development

Access expert content on secure coding, AI governance, and software risk management.

Filters
clear
Showing 0 of 100
By Category
By Role
By Product
Button Text
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
Webinar
events-webinars
January 11, 2024
March 20, 2023

How is the SBOM important to prepare for the Cyber Resilience Act?

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
March 28, 2022

How a large healthcare provider transformed its security culture with a developer-driven approach

Join this webinar to hear from Jeff Williams, co-founder and CTO at Contrast Security, and Secure Code Warrior co-founder and CTO, Matias Madou where they will guide us through a conversation with a large healthcare provider who will tell us their story around how they transformed the

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
July 6, 2020

Embedded Systems and Empowering Your Team

Internet of Things, Automated Control and Management of production systems are just few things fueling the development of embedded systems. But as we increasingly rely embedded software what are the impacts of security vulnerabilities and how do we mitigate them?

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
January 18, 2021

Beyond Compliance: Tips to Deliver Engaging Application Security

Do your development teams treat application security training as a check the box exercise? Do you wish they would engage more with cybersecurity and even take ownership? This session covers tips for creating an application security training program where developers will come to you!

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
October 8, 2020

Best Practices for Achieving an Awesome SOC 2 Report

Sometimes it can feel extremely overwhelming when running into the project of a SOC report. That's why we've teamed up with some industry experts to talk through some of their top tips for when trying to get a SOC2 report.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
March 17, 2021

2021 HMG Live! Silicon Valley CISO Executive Leadership Summit

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
July 14, 2021

Webinar: DevOps to DevSecOps: delivering quality and secure development from the start

Our experts will discuss the key considerations for implementing security training and application security into the SDLC, how to engage with developers through gamified learning and embed security testing without any downtime and costing the earth.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
November 8, 2021

Walkthroughs in courses deep-dive

Learn how our new Walkthrough & Missions immersive hands-on training activities increases developer engagement and progressively up-skill your developers with a proven scaffolded approach to learning.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
March 23, 2021

Upskilling, the missing link to close the security gap for AppSec

Hear from Peter Robinson, Head of Security at Zip, and Jaap Singh, Co-Founder of Secure Code Warrior & AppSec Trainer for an insightful discussion on why upskilling cybersecurity skills within the workforce is essential to closing the security gap.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
March 20, 2023

The ROI of developer-driven security

Everyone wants a good return on their investment when it comes to investing in their techstack or additional training programs, but when it comes to security, one needs to be playing a long game that goes beyond calculating simple ROI. Learn how investment in developer-driven security will not only save on the expense of expensive breaches, the loss of productivity, and accumulated tech--debt, but create a proactive and cost-effective strategy to stay ahead of today’s threat landscape.

Watch on demand
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
August 3, 2023

The path to security champions

How Workday utilized agile secure learning to upskill developers.

Watch on demand
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
May 24, 2023
May 23, 2023

People, process, and technology

Join us in conversation with Vis Chirravuri to learn first-hand how he has developed people, process, and technology approaches for his secure code learning program

Watch on demand
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
April 18, 2023
April 17, 2023

Security maturity in development teams: what, and how?

In this webinar, Scott Shapiro, SCW’s Director of Product Marketing, will discuss the different stages of security maturity in developer teams and the pitfalls to avoid when working to improve security maturity, and shift security left.

Watch on demand
This is some text inside of a div block.
No items found.
No items found.
Colorful pie charts and upward arrows pointing to increasing bar chart on yellow background.
Blog
blog-posts
March 27, 2023
March 27, 2023

The key to accelerating productivity and cutting costs in the SDLC

One of the biggest gaps in the software development lifecycle is the lack of time for developers to learn how to secure their code from the beginning. Developers waste countless hours on rework and remediation - resulting in millions of dollars in lost opportunity costs. Learn how secure coding at speed can help close these gaps and accelerate productivity.

Learn More
No items found.
Learning
March 27, 2023
Dark background with text 'What's new? Product update' and Secure Code Warrior logo beside code symbol on a screen.
Blog
blog-posts
March 14, 2023
March 14, 2023

What’s new in Secure Code Warrior: Course guidelines, participation management, and new content

New at Secure Code Warrior: Experience new ways to manage courses and explore additional content.

Learn More
Learning & Development
Learning
March 14, 2023
Abstract digital human figure made of glowing blue and white dots on a black background.
Blog
blog-posts
March 2, 2023
March 2, 2023

Malice in the metaverse: Fighting known cyber threats on a new frontier

The advent of the digital darling of the moment - the metaverse - adds a vast new attack surface for both code-level vulnerabilities and social engineering. And we’re simply not prepared for battle on this new playing field that thrives on smoke and mirrors.

Learn More
Learning & Development
Learning
March 2, 2023
Text 'Mitigating technical debt with developer-driven security' on dark background with diagonal red shapes.
Blog
blog-posts
February 15, 2023
February 15, 2023

Mitigating technical debt with developer-driven security

The cost of addressing insecure code and subsequent technical debt is one of the biggest obstacles facing tech today. Learn how implementing a scalable secure code training program helps to reduce technical debt by addressing poor coding patterns and detecting vulnerabilities early in the software development cycle.

Learn More
No items found.
Learning
February 15, 2023
Shadow silhouette behind glass with yellow, orange, and black abstract paint splatters and swirls.
Blog
blog-posts
February 10, 2023
February 10, 2023

How do developers define "secure coding"?

The perception of what constitutes the act of secure coding is up for debate. According to recent research in collaboration with Evans Data, this sentiment was revealed in black and white. The State of Developer-Driven Security 2022 survey delves into the key insights and experiences of 1200 active developers, illuminating their attitudes and challenges in the security realm.

Learn More
Learning & Development
Learning
February 10, 2023
Graphic with text 'Happy birthday to us! We're turning 8' and Secure Code Warrior logo.
Blog
blog-posts
January 27, 2023
January 27, 2023

Secure Code Warrior turns 8: All aboard the rocket ship

This week, we officially celebrate eight years of Secure Code Warrior. On the one hand, that’s 350 times the length of the Apollo 11 mission, as well as the equivalent of 45,000 games of football, or playing Super Mario Odyssey 5696 times to the end. On the other, it’s just one-thirtieth the lifespan of a Giant Tortoise (250 years, if you’re wondering). In the world of a high-growth startup, it represents a journey of many twists, turns, lessons, and accomplishments, many of which were unimaginable when we were first inking our business plan.

Learn More
Learning & Development
Learning
January 27, 2023
Blog
blog-posts
December 14, 2022
December 14, 2022

2022 in Review - highlights, new innovations, and resources to help you make the most of Secure Code Warrior

Here at Secure Code Warrior, we’re constantly innovating to help equip developers and organizations with the right skills to tackle today’s ever changing security challenges. We’ve compiled the top features and updates to our platform, as well as the resources and guidelines published this year, to help your organization secure your software through developer-driven security at the start of the software development cycle.

Learn More
Learning & Development
Learning
December 14, 2022
Green plant growing from a pile of mixed coins on a white surface.
Blog
blog-posts
December 8, 2022
December 8, 2022

The ROI of developer driven security

Everyone wants a good return on their investment when it comes to investing in their techstack or additional training programs, but when it comes to security, one needs to be playing a long game that goes beyond calculating simple ROI. Learn how investment in developer-driven security will not only save on the expense of expensive breaches, the loss of productivity, and accumulated tech--debt, but create a proactive and cost-effective strategy to stay ahead of today’s threat landscape.

Learn More
No items found.
Learning
December 8, 2022
Top-down view of a wooden table with laptops, phones, headphones, notebooks, and hands typing or held phone.
Blog
blog-posts
November 24, 2022
November 24, 2022

Establishing a cohesive approach to developer-led security

In response to major security breaches like the SolarWinds campaign, which used a software update process to infect over 18,000 users of the popular Orion management software, including many top corporations and government agencies, there is an increased push for more effective developer-led security efforts. Organizations of all sizes are starting to question their ‘software supply chain’, and demanding that the developers making their software have verified security skills and awareness.

Learn More
No items found.
Learning
November 24, 2022
Close-up of an illuminated electronic circuit board with detailed pathways and components.
Blog
blog-posts
November 23, 2022
November 23, 2022

SCW Integrations: Reduce mean time to remediate with micro-learning

Everyone knows the importance of a robust techstack. When it comes to finding and fixing vulnerabilities in code, reducing mean time to remediation and using trusted, robust solutions is the goal of Secure Code Warrior’s integrations. Integrating micro-learning moments into developer's workflows is the key to better learning and faster remediation.

Learn More
Learning & Development
Learning
November 23, 2022
White left arrow painted on a green brick wall.
Blog
blog-posts
November 10, 2022
November 10, 2022

Shift left (and achieve compliance) with repeatable secure coding skills

Almost every developer team these days employs some form of compliance training, whether it’s part of an initial certification process used to ensure that a company is staying within the bounds of industry frameworks or governmental regulations, or as part of an annual requirement or review. It’s an important step, because if an organization can’t meet basic compliance requirements, then its workers can’t realistically perform their duties.

Learn More
No items found.
Learning
November 10, 2022
Golden vertical light streaks falling against a black background, resembling rain or sparks.
Blog
blog-posts
November 3, 2022
November 3, 2022

Poor coding patterns can lead to big security problems… so why do we encourage them?

Developers won’t have a positive impact on vulnerability reduction without a foundational understanding of how the vulnerabilities work, why they are dangerous, what patterns cause them, and what design or coding patterns fix them in a context that makes sense in their world. A scaffolded approach allows layers of knowledge to give a full picture of what it means to code securely, defend a codebase, and stand up as a security-aware developer.

Learn More
No items found.
Learning
November 3, 2022
Stylized white letter S inside a shield shape on a teal background.
Blog
blog-posts
October 24, 2022
October 24, 2022

Secure Code Warrior recognized in Gartner’s Cool Vendors in Software Engineering: Enhancing Developer Productivity

The importance of developer security skills is highlighted in the 2022 Gartner Cool Vendors in Software Engineering. Read more and get the full report.

Learn More
Learning & Development
Learning
October 24, 2022
Blog
blog-posts
October 20, 2022
October 20, 2022

Defining secure code

The developers who create the software, applications and programs that drive digital business have become the lifeblood of many organizations. Most modern businesses would not be able to (profitably) function, without competitive applications and programs, or without 24-hour access to their websites and other infrastructure.

Learn More
No items found.
Learning
October 20, 2022
Close-up of a green snake coiled and resting on a dark tree branch with a black background.
Blog
blog-posts
October 3, 2022
October 3, 2022

Understand the path traversal bug in Python’s tarfile module

Recently, a team of security researchers announced their finding of a fifteen year old bug in Python’s tar file extraction functionality. The vulnerability was first disclosed in 2007 and tracked as CVE-2007-4559. A note was added to the official Python documentation, but the bug itself was left unpatched.

Learn More
No items found.
Learning
October 3, 2022
Product Update text with Secure Code Warrior logo and a monitor icon showing code brackets.
Blog
blog-posts
September 22, 2022
September 22, 2022

What’s new in SCW: Coding Labs, LMS integrations and more

New at Secure Code Warrior: get hands-on with developer training with Coding Labs, integrate your secure code training program with an LMS, and much more.

Learn More
Learning & Development
Learning
September 22, 2022
View from inside a car showing a driver, dashboard with phone GPS, and traffic on a highway.
Blog
blog-posts
September 21, 2022
September 21, 2022

Hardcoded credentials can introduce security risks

Learn more about the risks associated with hardcoded credentials and social engineering as we discuss Uber's recent security incident and why it's so important for organizations to shift left and ensure their developers are up-to-date on secure coding best practices.

Learn More
No items found.
Learning
September 21, 2022
Close-up of a geometric structure with glowing linear connectors forming repeating pentagonal patterns.
Blog
blog-posts
September 9, 2022
September 9, 2022

Prevention in the age of the never-ending attack surface

Software development is no longer an island, and when we account for all aspects of software-powered risk - everything from the cloud, embedded systems in appliances and vehicles, our critical infrastructure, not to mention the APIs that connect it all - the attack surface is borderless and out of control.

Learn More
Learning & Development
Learning
September 9, 2022
Blog
blog-posts
July 22, 2022
July 22, 2022

Are we mature enough for the Open Source Software Security Mobilization Plan?

The Open Source Software Security Mobilization Plan represents a positive step for developer-driven security. However, we must all take stock and honestly assess if we're mature enough in our organization - and if our development teams have the right level of security awareness and skills - to implement the latest and greatest defensive strategies.

Learn More
No items found.
Learning
July 22, 2022
Laptop displaying JavaScript code on a white desk with a green plant and yellow mug in the background.
Blog
blog-posts
July 11, 2022
July 11, 2022

The importance of security maturity in development teams

The effort to shift left requires a collective, continuous improvement of security knowledge and skills, within development teams

Learn More
No items found.
Learning
July 11, 2022
Grid of 40 security cameras mounted on a gray brick wall, mostly black with some white cameras.
Blog
blog-posts
June 6, 2022
June 6, 2022

Securing APIs: Mission impossible?

API security is tough, but with adequate training, planning and a focus on best practices, even the most insidious vulnerabilities can be mitigated.

Learn More
No items found.
Learning
June 6, 2022
Black maze in shield shape on orange background with red skull in center and dot path reaching target.
Blog
blog-posts
June 2, 2022
June 2, 2022

New: SCW Connector for Okta Workflows

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Learning & Development
Learning
June 2, 2022
Maze shaped like a shield with a red skull icon inside near the center on teal background.
Blog
blog-posts
May 16, 2022
May 16, 2022

What's new in Secure Code Warrior: May 2022

Easier and more powerful Courses creation flow, early access toggle, and SAP ABAP training content.

Learn More
Learning & Development
Learning
May 16, 2022
SAP ABAP logo with SAP in white on blue and ABAP in blue text on white background.
Blog
blog-posts
May 9, 2022
May 9, 2022

New: Ship secure SAP ABAP code faster with ABAP training content

Practical and effective secure coding training for ABAP developers.

Learn More
No items found.
Learning
May 9, 2022
Magnifying glass focusing on a sheet with various cryptographic symbols scattered on paper.
Blog
blog-posts
April 27, 2022
April 27, 2022

Psychic Signatures - what you need to know

Psychic Signature vulnerability lies in the crypto for ECDSA signatures, which protects systems for critical tasks like authentication. Hackers can bypass any signature check with this vulnerability. We will explain what it is and how to mitigate it in this post.

Learn More
Learning & Development
Learning
April 27, 2022
Close-up of reflective four-square Windows logo on a dark surface with light reflections.
Blog
blog-posts
April 14, 2022
April 14, 2022

Get ahead of software vulnerabilities in NGINX and Microsoft Windows SMB Remote Procedure Call service

Recently, NGINX has disclosed a zero-day vulnerability. Around the same time, Microsoft has disclosed another critical vulnerability - Windows RPC RCE vulnerability. in this post, you can find out who's at risk of these two issues and how we can mitigate the risk.

Learn More
No items found.
Learning
April 14, 2022
Orange smiley face and white text 'STAY SAFE' painted on asphalt road.
Blog
blog-posts
April 5, 2022
April 5, 2022

Zero-day attacks are on the rise. It's time to plan a defensive edge.

Zero-day attacks, by definition, give developers zero time to find and patch existing vulnerabilities that could be exploited, because the threat actor got in first. The damage is done and then it’s a mad scramble to fix both the software and reputational damage to the business. Attackers are always at an advantage, and closing that edge as much as possible is crucial.

Learn More
No items found.
Learning
April 5, 2022
White globe icon on yellow background with dotted line from red skull to green target symbol.
Blog
blog-posts
April 5, 2022
April 5, 2022

Where does secure code sit on the list of development team priorities?

For the 2nd year, we partnered with Evans Data Corp. to conduct a comprehensive survey of the global developer community related to the skills, perceptions, and behaviors when it comes to secure coding practices, and their perceived impact and relevancy in the software development lifecycle (SDLC). The results were quite surprising in a lot of ways.

Learn More
No items found.
Learning
April 5, 2022
Woman's face with long hair lit by colorful computer code and data projections on dark background.
Blog
blog-posts
April 1, 2022
April 1, 2022

New vulnerabilities in Spring libraries: how to know if you are at risk and what to do

Recently, Spring libraries, one of the most popular libraries in the Java community, disclosed 2 vulnerabilities related to Remote Code Execution (RCE). We’ve broken down the known details for “Spring4Shell” and “Spring Cloud Function” to help you understand if you're at risk and what to do if you are.

Learn More
No items found.
Learning
April 1, 2022
Glowing figure made of blue and white dots standing on one leg against a black background.
Blog
blog-posts
March 28, 2022
March 28, 2022

The cybersecurity issues we can’t ignore in 2022

When it comes to battling against cybercriminals, we need to stay as in step with them as possible, preempting their playgrounds with a preventative mindset. Here’s where I think they might start making waves in the coming year:

Learn More
No items found.
Learning
March 28, 2022
Close-up of a glowing circuit board with orange traces and the text '01' in focus.
Blog
blog-posts
February 23, 2022
February 23, 2022

What is Trojan Source and how does it sneak into your source code

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
Learning
February 23, 2022
Blog
blog-posts
February 8, 2022
February 8, 2022

Champions vs. coaches: Why every development team needs both

Many companies who are kicking goals in their cybersecurity approach have implemented an official security champion program, bestowing key security responsibilities - everything from liaising between teams and general cheerleading, to overseeing best practices - onto individuals who show aptitude and passion for such a role.

Learn More
No items found.
Learning
February 8, 2022
Overhead view of three people sitting with laptops on their laps, typing on keyboards.
Blog
blog-posts
February 2, 2022
February 2, 2022

How to prevent common Java mistakes

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
Learning
February 2, 2022
Six cartoon people in Secure Code Warrior shirts sit on a couch smiling in a Simpson-style room.
Blog
blog-posts
January 27, 2022
January 27, 2022

Seven years of Secure Code Warrior, and it’s starting to feel real

Our birthday milestones are a wonderful reminder to reflect on the fruits of our labor, celebrate the team, and tackle the year ahead with confidence. And now, seven years since inception, I’m left wondering: Have we done it? Is this a real company yet? Of course, we have reached maturity, but I sure hope we never lose the sense of curiosity, passion, and geekiness we’ve had since the beginning.

Learn More
Learning & Development
Learning
January 27, 2022
Close-up of orange metal beams and trusses of a bridge structure at night.
Blog
blog-posts
January 21, 2022
January 21, 2022

Why scaffolded learning builds security-strong developers

As an industry, we should never expect developers to become security experts, but organizations can adopt new standards for developer enablement so they can produce higher quality software.

Learn More
No items found.
Learning
January 21, 2022
Pixelated computer screen showing cursor hand pointing at the word Security with shield icon.
Blog
blog-posts
January 16, 2022
January 16, 2022

The Log4j vulnerability explained - Its attack vector and how to prevent it

In December 2021, a critical security vulnerability Log4Shell was disclosed in the Java library Log4j. In this article, we breakdown the Log4Shell vulnerability into the simplest form for you to grasp the basic and introduce you to a mission - a playground where you can try exploiting a simulated website using the knowledge of this vulnerability.

Learn More
No items found.
Learning
January 16, 2022
Blog
blog-posts
January 6, 2022
January 6, 2022

Cybersecurity industry analysis: Another recurring vulnerability we must correct

We’re not getting realistic advice, nor the fastest solutions, to combat the non-stop onslaught that is modern cybersecurity. Of course, each breach is different in its own way, and there are numerous attack vectors that can be exploited in vulnerable software. Feasible generic advice will be limited, but the best practice approach is looking more flawed by the hour.

Learn More
No items found.
Learning
January 6, 2022
Wooden mannequin sitting on a laptop keyboard watching a screen showing a roaring T-Rex.
Blog
blog-posts
December 15, 2021
December 15, 2021

Is your security program focused on incident response? You're doing it wrong.

Placing emphasis on a preventative - as opposed to reactive - approach may not be widely understood outside of the security team, especially if a big, bad, security incident has not taken place.

Learn More
Learning & Development
No items found.
December 15, 2021
Blog
blog-posts
November 30, 2021
November 30, 2021

API on Wheels: A road trip of risky vulnerabilities

Leaving API security up to chance is a sure-fire way to introduce problems later on, with potentially devastating consequences at worst, and frustrating rework and low performance at best.

Learn More
No items found.
Learning
November 30, 2021
Top view of three people sitting with laptops on laps typing on keyboards on grey carpet.
Blog
blog-posts
November 12, 2021
November 12, 2021

Migrating Joda-Time to java.time

Migrate Joda-Time to java.time in a convenient way

Learn More
No items found.
Learning
November 12, 2021
Underwater view of a ship's anchor chain extending upward toward the sunlit water surface.
Blog
blog-posts
November 11, 2021
November 11, 2021

Lifting the veil on cyber vulnerabilities in Government supply chain pipelines

It’s obvious that cybersecurity is important, but what does it actually mean in the context of supply chains?

Learn More
No items found.
Learning
November 11, 2021
Red bird graffiti painted on a brown brick wall with white mortar.
Blog
blog-posts
October 29, 2021
October 29, 2021

Security-aware developers: AppSec needs you!

Developers are in a great position to make a lucrative jump into AppSec.

Learn More
No items found.
Learning
October 29, 2021
Blog
blog-posts
October 27, 2021
October 27, 2021

How to convince your boss to invest in secure coding training

Effectively learning about secure coding and retaining that knowledge can make it seem like it’s inherently difficult, but with the right tools and culture, it doesn't have to be. However, it’s not always easy to convince stakeholders and superiors to invest in the right kind of training. Here are some handy tips to help you gain their allegiance.

Learn More
Learning & Development
Learning
October 27, 2021
Several yellow rubber ducks floating on a blue splattered water surface.
Blog
blog-posts
October 19, 2021
October 19, 2021

Incentivizing developers is the key to better security practices

Professional developers want to embrace DevSecOps and write secure code, but their organizations need to support this seachange if they want that effort to grow.

Learn More
Learning & Development
Learning
October 19, 2021
Glasses on laptop showing clear computer code on screen, with blurred background code outside lenses.
Blog
blog-posts
October 18, 2021
October 18, 2021

Experience the impact of the Path Traversal Vulnerability to blame for the recent Apache woes

At the beginning of October, Apache released version 2.4.49 to fix a Path Traversal and Remote Code Execution vulnerability and then 2.4.50 to address the fact that the fix was incomplete. We’ve built a mission to demonstrate the risks in a real-life environment. Try it out now.

Learn More
No items found.
Learning
October 18, 2021
People working on laptops in a modern open-plan office with rows of desks and large windows.
Blog
blog-posts
October 14, 2021
October 14, 2021

Warrior Insider: Nelnet - Nurture your security champions and create a culture of secure development from within

Micha Martinez is a Cybersecurity Analyst and Cinematographer at Nelnet. When tasked with creating a training program for developers around secure coding, he took on creative ways to engage his team. We were so impressed with how he runs his secure code training program that we sat down with him to learn more.

Learn More
No items found.
Learning
October 14, 2021
White chess piece captured by hand, knocking over black king on a chessboard with dark background.
Blog
blog-posts
October 5, 2021
October 5, 2021

OWASP’s 2021 list shuffle: A new battle plan and primary foe

Injection attacks, the infamous king of vulnerabilities (by category), have lost the top spot to broken access control as the worst of the worst, and developers need to take notice.

Learn More
No items found.
Learning
October 5, 2021
Silhouette of a man's profile against a bright blue circular background on black backdrop.
Blog
blog-posts
September 23, 2021
September 23, 2021

Elevated security intelligence: Guided courses helping developers get NIST-ready

Developers are among those who are most up close and personal with code, in addition to security configurations and access control. Their security skills must be nurtured, and to achieve the high standards as outlined by NIST, a hands-on course structure might just be the efficient way to tackle it, especially with large development cohorts.

Learn More
No items found.
Learning
September 23, 2021
Person driving a Mercedes car with dashboard lights on and colorful light trails outside at night.
Blog
blog-posts
August 30, 2021
August 30, 2021

When good microwaves go bad: Why embedded systems security is the next boss battle for developers

Much like web-based software, APIs, and mobile devices, vulnerable code in embedded systems can be exploited if it is discovered in the wild by an attacker.

Learn More
No items found.
Learning
August 30, 2021
Transparent human anatomical model showing skeleton and colored blood vessels with raised arms.
Blog
blog-posts
August 24, 2021
August 24, 2021

Secure development should be AppSec’s immune system

As an application security professional, it’s your job to ensure the cyber safety of your organization’s applications. You’re not, however, responsible for writing the code the application runs on. Engineers within the development team are. So how do you make sure that they’re developing those systems with security in mind?

Learn More
No items found.
Learning
August 24, 2021
Close-up of a circular security camera lens reflecting buildings and a person holding a camera.
Blog
blog-posts
August 19, 2021
August 19, 2021

Why end-to-end security is important for embedded systems

This article will cover an overview of securing the embedded systems. We will start from basic definition, then move to challenges in embedded security, some typical solutions, and what the missing puzzles are.

Learn More
No items found.
Learning
August 19, 2021
Code snippet showing OpenGL commands for creating a shader, setting color, and drawing triangles.
Blog
blog-posts
August 17, 2021
August 17, 2021

MISRA C 2012 vs MISRA C2 - How to make a switch

In this post, we will compare the MISRA C 2012 standard with C2, and guide you through the journey of switching to the new standard. We will explain why MISRA's compliance is necessary to build secure embedded systems.

Learn More
No items found.
Learning
August 17, 2021
Close-up of a green electronic circuit board with metal heat sink, chips, and connectors.
Blog
blog-posts
August 11, 2021
August 11, 2021

Embedded devices and embedded systems development - an overview

In this post, you will get an overview of embedded devices and embedded systems development.

Learn More
No items found.
Learning
August 11, 2021
Person with cactus tattoo using laptop with black headphones on white desk.
Blog
blog-posts
July 26, 2021
July 26, 2021

Warrior Insider: Contrast Security - Give developers impactful cybersecurity training with contextual learning

We sat down with Larry Maccherone at Contrast Security to discuss how contextual learning successfully works to train developers in secure coding. Read on to learn how organizations provide key security training to developers without disrupting their daily responsibilities and workflow.

Learn More
Learning & Development
Learning
July 26, 2021
Black mug on desk with quote, in front of a widescreen monitor showing blurred code editor windows.
Blog
blog-posts
July 22, 2021
July 22, 2021

Why we must never overlook the human factor in cybersecurity

We were recently very excited to see the first Forbes Technology Council post by our chairman and CEO, Pieter Danhieux, go live. The post detailed how upskilling developers to create more secure code is a key to preventing cyberattacks and data breaches.

Learn More
No items found.
Learning
July 22, 2021
Rusty shipwreck tilted near rocky shore with three people standing on the cliff at sunset.
Blog
blog-posts
June 24, 2021
June 24, 2021

Leaky APIs threaten to wash company reputations out to sea

API security is an issue that isn’t far from the minds of most security experts, and it’s something we need to equip ourselves with the knowledge to fight.

Learn More
Learning & Development
Learning
June 24, 2021
Close-up of a website wireframe sketch with boxes, text placeholders, and navigation elements.
Blog
blog-posts
June 21, 2021
June 21, 2021

Making moves with NIST: Our human-led position on the future of cyber defense

The recent cybersecurity Executive Order from the Biden Administration has certainly got the security industry talking, especially those who are looking to win over developers to the importance of applying secure coding best practices in their day-to-day work.

Learn More
No items found.
Learning
June 21, 2021
Two women stand looking up at a wall with many black and white security cameras mounted in rows.
Blog
blog-posts
June 16, 2021
June 16, 2021

Warrior Insider: Selligent - why cybersecurity matters when scaling your business

We recently sat down with Dimitri Vanderhaeghe, Software Engineer at Selligent Marketing Cloud, a highly integrated, AI-powered omnichannel marketing automation platform that enables ambitious B2C marketers to maximize every moment of interaction with today’s connected consumers. For a fast-paced B2C technology company scaling up and meeting the growing demands of their market is vital. Part of being able to meet these demands is an emphasis on cybersecurity and most crucially a developer-led, security skills program.

Learn More
No items found.
Learning
June 16, 2021
Black shield-shaped maze with red, blue, and white dots on a yellow background.
Blog
blog-posts
June 10, 2021
June 10, 2021

The rise of DevSecOps – and what 'shifting left' really means for your organization.

How’s this for a sobering statistic? 60% of SMBs go out of business within six months of a successful cyber attack. Major corporations haemorrhage millions (or billions!) while brand reputations bleed out. As organizations increasingly embrace secure coding practices, a 'shift left' is taking place. With the rise of DevSecOps, secure code is becoming the focus right from the start of the SDLC.

Learn More
No items found.
Learning
June 10, 2021
Black shield-shaped maze icon on a bright yellow background.
Blog
blog-posts
June 3, 2021
June 3, 2021

Ship quality code faster, with confidence: the transformative power of secure coding practices.

According to an IBM study, it is thirty times more expensive to fix vulnerabilities post-release compared to finding and fixing them initially. With that in mind, it’s not surprising that forward-looking CIOs are implementing secure coding practices. This means training and equipping developers to write code that is more secure from the beginning– making them their organization’s ‘first line of defense’.

Learn More
No items found.
Learning
June 3, 2021
Black shield with stylized maze and checkmark on a solid yellow background.
Blog
blog-posts
May 27, 2021
May 27, 2021

Secure code training = better code + faster release dates

What are the potential impacts of quality secure code training for your organization – and could it be a worthwhile investment?

Learn More
No items found.
Learning
May 27, 2021
Black shield-shaped maze logo on a bright yellow background.
Blog
blog-posts
May 20, 2021
May 20, 2021

Realigning your organization around secure coding – barriers, concerns, and active solutions

In our hyper-connected world, almost every organization shares a common Achilles heel. A single vulnerability, just one exploitable chink in their code, can trigger the theft of customer data, reputational damage and significant financial losses. Organizational alignment around secure coding has never been more imperative – but achieving it is easier said than done.

Learn More
No items found.
Learning
May 20, 2021
Blog
blog-posts
May 20, 2021
May 20, 2021

Certified security awareness: An Executive Order to elevate developers

The latest Executive Order from the US Federal Government touches on many aspects of functional cybersecurity, but for the first time, specifically outlines the impact of developers, and the need for them to have verified security skills and awareness.

Learn More
No items found.
Learning
May 20, 2021
Black shield-shaped maze logo on a bright yellow background.
Blog
blog-posts
May 13, 2021
May 13, 2021

Managers and security champions – the pied pipers and critical influencers of secure coding practices.

Right now, only 15% of developers agree that secure code practices should be everyone’s responsibility. In a world of increasing security threats, that simply isn’t good enough. Something has to be done. One key to creating a healthy AppSec culture is understanding the key influences (and influencers!) at play.

Learn More
Learning & Development
Learning
May 13, 2021
Blog
blog-posts
May 12, 2021
May 12, 2021

A cyberattack occurs every 39 seconds. Is the government finally equipped to fight back?

We need to reinforce a human-led approach to cybersecurity best practices, and it’s going to get better results than a heavy reliance on automation, tools, and reaction to problems that have already been embedded and discovered.

Learn More
Learning & Development
Learning
May 12, 2021
Stylized maze shaped like a shield with a keyhole in the center on a yellow background.
Blog
blog-posts
May 6, 2021
May 6, 2021

What keeps development teams up at night when it comes to secure coding?

Insecure code costs companies millions – so what gets in the way of adopting secure coding practices? In a world that relies on software for just about everything, ensuring that code is secure is critical. Brand reputations and financial viability depend on it. That said, there are many concerns around secure coding – and many barriers to its full and effective adoption. More than ever before, a new way of working is required.

Learn More
No items found.
Learning
May 6, 2021
Stylized black monogram with letters 'F' and 'C' inside a shield on a yellow background.
Blog
blog-posts
April 29, 2021
April 29, 2021

Why secure code is the new success metric in software development

In the last few years, many things have been sacrificed on the altar of speed-to-market—things like network security, terabytes of sensitive customer data and priceless brand reputations.

Learn More
No items found.
Learning
April 29, 2021
Dimly lit wooden bookshelf with an open secret door revealing more antique books inside.
Blog
blog-posts
April 29, 2021
April 29, 2021

Hiding in plain sight: Why the SolarWinds attack revealed more than malicious cyber risk

If ever there was something to ruin Christmas in the cybersecurity industry, it’s a devastating data breach that is on track to becoming the largest cyberespionage event affecting the US government on record.

Learn More
No items found.
Learning
April 29, 2021
Black maze shaped like a shield on a solid yellow background.
Blog
blog-posts
April 22, 2021
April 22, 2021

How to configure secure code training for better secure coding outcomes

When it comes to secure code training for developers, educational outcomes leave a lot to be desired. Many companies spend big, only to see minimal returns in practice. And little wonder.

Learn More
No items found.
Learning
April 22, 2021
Black shield-shaped maze icon on a bright yellow background.
Blog
blog-posts
April 15, 2021
April 15, 2021

Current secure code training is letting developers down

As data breaches and their costs continue to rise, the volume of code produced in our world is too big for security experts to handle alone. Companies need developers with secure coding skills – and developers know they need these skills to advance their careers. But current secure code training is letting them down. So what do developers want when it comes to secure code training?

Learn More
No items found.
Learning
April 15, 2021
Black stylized maze design inside a shield shape on a yellow background.
Blog
blog-posts
April 8, 2021
April 8, 2021

Why secure code training doesn’t stack up (and what you can do about it)

Boring, boring, boring! That’s one of the main responses you’ll hear from developers whenever secure code training is mentioned. At Secure Code Warrior we believe there must be a better way.

Learn More
No items found.
Learning
April 8, 2021
Close-up of numerous shiny metal handgun bullets piled together.
Blog
blog-posts
April 7, 2021
April 7, 2021

If AppSec tooling is the silver bullet, why are so many companies not firing it?

There are a few reasons why AppSec tools are not being utilized as we might have come to expect, and it’s less about the tools and their functionality, and more about how they integrate with a security program as a whole.

Learn More
Learning & Development
Learning
April 7, 2021
Blog
blog-posts
April 6, 2021
April 6, 2021

Developers have motivations to learn about secure coding…so why aren’t they?

When it comes to learning about secure coding, what are the primary motivations for developers, and how can they be leveraged to design and implement a successful application security program?

Learn More
Learning & Development
Learning
April 6, 2021
Black maze icon shaped like a shield on a solid yellow background.
Blog
blog-posts
March 30, 2021
March 30, 2021

What part does the human element play in the future of secure coding?

As the number of cyber-threats continues to grow, organizations are making daily trade-offs between security, practicality, and speed – exposing themselves to risks in the process.

Learn More
No items found.
Learning
March 30, 2021
Abstract black shield emblem with maze-like lines on a yellow background.
Blog
blog-posts
March 25, 2021
March 25, 2021

We need heroes to secure our code. Have developers got what it takes?

In a world where cyber threats continue to multiply, are your coders stepping up? Is the human element of secure coding – the all-important developer – ready to play their part in securing our connected world? To answer this question, let’s look at some insights from a recent study on developers attitudes towards secure coding, secure code practices, and security operations, conducted by Secure Code Warrior with Evans Data Corp.

Learn More
Learning & Development
Learning
March 25, 2021
Black geometric shield logo with an abstract maze design on a bright yellow background.
Blog
blog-posts
March 23, 2021
March 23, 2021

Shifting the focus from reactive to proactive, with human-led secure coding

The same 10 software vulnerabilities have caused more security breaches in the last 20+ years than any others. And yet, many businesses still opt for post-breach, post-event remediation; muddling through the human and business ramifications of it all. But now a new research study points to a new, human-led direction.

Learn More
No items found.
Learning
March 23, 2021
Colorful layered cake with star-shaped sprinkles and fondant stars on a floral plate and blue stand.
Blog
blog-posts
March 17, 2021
March 17, 2021

Happy birthday SQL injection, the bug that can’t be squashed

It's SQL injection’s 22nd birthday, and despite this vulnerability being old enough to drink, we’re letting it get the better of us instead of squashing it for good.

Learn More
Learning & Development
Learning
March 17, 2021
Blog
blog-posts
March 10, 2021
March 10, 2021

Building trust: The path to true security synergy between AppSec and developers

A relationship that is built on the shaky foundations of mistrust is, well, best approached with low expectations. Sadly, this can be the state of the working relationship between developers and the AppSec team within an organization.

Learn More
No items found.
Learning
March 10, 2021
Java code snippet testing if argument contains '-h' safely without null pointer exception.
Blog
blog-posts
February 21, 2021
February 21, 2021

Try This Online Java Gotchas Quiz

A fun little Java Gotchas quiz and supporting Github repo showing some gotchas and how to fix them

Learn More
No items found.
Learning
February 21, 2021
Hands typing on a laptop with code on screen and text: Master secure coding with Sensei.
Blog
blog-posts
February 15, 2021
February 15, 2021

Running IntelliJ Inspections From Continuous Integration

Learn how to run Sensei and IntelliJ Intention Actions in batch mode as Inspections within the IDE, from the Command-Line, and in Continuous Integration.

Learn More
No items found.
Learning
February 15, 2021
Desk with keyboard, white coffee mug, phone, and sign reading No Bad Days with small potted plants
Blog
blog-posts
February 10, 2021
February 10, 2021

Starting "left of left": Is secure code always quality code?

Code of a certain level of quality is by its definition also secure, but all secure code is not necessarily good quality. Is starting “left of left” the formula to ensure pure secure coding standards?

Learn More
No items found.
Learning
February 10, 2021
Hands typing on a laptop showing code with text mastering secure coding with Sensei and Secure Code Warrior logo.
Blog
blog-posts
February 7, 2021
February 7, 2021

Java Gotchas - Bitwise vs Boolean Operators

In this blog post we take a look at a common Java coding mistake (using a bitwise operator instead of a conditional operator), the error it makes our code vulnerable to, and how we can use Sensei to fix and detect the issue.

Learn More
No items found.
Learning
February 7, 2021
Red and yellow dragon figurine with open mouth on a turquoise background.
Blog
blog-posts
February 4, 2021
February 4, 2021

For developers to help slay the cybercrime beast, training is a quest in two parts

The playing field between the heroes and villains in cybersecurity is notoriously unfair. Sensitive data is the new gold, and attackers adapt quickly to circumvent defenses, exploiting security bugs large and small for potential paydirt.

Learn More
No items found.
Learning
February 4, 2021
Person typing on a laptop with code on screen and text: Master secure coding with Sensei.
Blog
blog-posts
February 1, 2021
February 1, 2021

What is static analysis?

Learn about Static Analysis and how can it help you write better code with examples of 5 IDE based approaches and plugins.

Learn More
No items found.
Learning
February 1, 2021
Blue cake decorated with Super Mario characters including a red fish, yellow stars, a red mushroom, and a black Bob-omb.
Blog
blog-posts
January 27, 2021
January 27, 2021

Six Years of Secure Code Warrior: Are we grown up yet?

It’s that special time of the year (for us, anyway) where I reflect on our most recent lap around the sun, and what has been done in the previous 365 days to position us for a new year of growth, lessons, and inevitable unpredictability.

Learn More
Learning & Development
Learning
January 27, 2021
Blog
blog-posts
January 5, 2021
January 5, 2021

2021 cybersecurity predictions: The intergalactic battle begins

We’re predicting that 2021 is the year we take a new kind of space race into the mainstream: keeping our galaxy safe from cyber threats.

Learn More
No items found.
Learning
January 5, 2021
Blog
blog-posts
December 22, 2020
December 22, 2020

Coders Conquer Security OWASP Top 10 API Series - Improper Assets Management

This vulnerability is more of a human or management problem that allows older APIs to remain in place long after they should have been replaced by newer, more secure versions.

Learn More
No items found.
Learning
December 22, 2020
Blog
blog-posts
December 21, 2020
December 21, 2020

Amending Method and Class Visibility for JUnit 5

Learn how Sensei can help migration by identifying deprecated patterns and prompting you with the fix to use going forward.

Learn More
No items found.
Learning
December 21, 2020
Man in blue hoodie covering his face sitting on couch with open cardboard boxes nearby.
Blog
blog-posts
December 15, 2020
December 15, 2020

My pentester, my enemy? Developers reveal what they really think about pentesting and static analysis results

Penetration testing and static analysis scanning tools (better known as SAST) are just part of the overall process to mitigate security risks, operating rather independently from what we do - until the code bounces back to us for hotfixes, of course!

Learn More
Learning & Development
Learning
December 15, 2020
Laptop on wooden table showing image of a row of yellow rubber ducks against blue background.
Blog
blog-posts
December 9, 2020
December 9, 2020

The future of work is flexible, and it's great for cybersecurity

Whether discomfort comes from the unknowns of a new way of working, a little mistrust, or perhaps not believing remote work, I find that companies who are resistant to it tend to fall behind in terms of attracting top talent, maintaining global reach and frankly, moving with the times.

Learn More
Learning & Development
Learning
December 9, 2020
Blog
blog-posts
November 25, 2020
November 25, 2020

Coders Conquer Security OWASP Top 10 API Series - Insufficient Logging and Monitoring

The insufficient logging and monitoring flaw mostly happens as a result of a failed cybersecurity plan in regards to logging all failed authentication attempts, denied access, and input validation errors.

Learn More
No items found.
Learning
November 25, 2020
Closeup of stacked magazines or booklets with colorful pages on a white surface.
Blog
blog-posts
November 23, 2020
November 23, 2020

Sharing Cookbooks within a Team

Learn how to share Sensei cookbooks and help everyone in your team improve their code quality and productivity.

Learn More
No items found.
Learning
November 23, 2020
Hand gripping a joystick in front of an aircraft cockpit display screen with flight instruments.
Blog
blog-posts
November 11, 2020
November 11, 2020

Introducing Missions: The next phase of developer-centric security training

We're thrilled to announce a brand new feature release on the Secure Code Warrior platform: Missions. This all-new challenge category is the next phase in developer-ified security training, moving users from the recall of security knowledge, to applying it in a real-world simulation environment.

Learn More
No items found.
Learning
November 11, 2020
Blog
blog-posts
November 11, 2020
November 11, 2020

Coders Conquer Security OWASP Top 10 API Series - Disabled Security Features/Debug Features Enabled/Improper Permissions

It's likely a little more prevalent in APIs, but attackers will often attempt to find unpatched flaws and unprotected files or directories anywhere in a network. Coming across an API that has debugging enabled or security features disabled just makes their nefarious work a little easier.

Learn More
No items found.
Learning
November 11, 2020
Hands typing on laptop keyboard with green code on screen and text: Master Secure Coding with Sensei.
Blog
blog-posts
November 9, 2020
November 9, 2020

Using Documentation Links with Sensei

Learn how Sensei can help onboard developers and adopt new libraries.

Learn More
No items found.
Learning
November 9, 2020
Blog
blog-posts
October 26, 2020
October 26, 2020

Adding Parameters to Annotations Using Rewrite Actions

Learn how to use Sensei to match problematic code patterns and then amend them to agreed implementations with examples of annotation matching.

Learn More
No items found.
Learning
October 26, 2020
Blog
blog-posts
October 21, 2020
October 21, 2020

Coders Conquer Security OWASP Top 10 API Series - Mass Assignment

The mass assignment vulnerability was born as a result of many modern frameworks encouraging developers to use functions that automatically bind input from clients into code variables and internal objects.

Learn More
Learning & Development
Learning
October 21, 2020
Close-up of Captain America's red, white, and blue shield with a central star under a light.
Blog
blog-posts
October 20, 2020
October 20, 2020

How the Australian Government can build national cybersecurity resilience and stand tall against threats

It is clear from the Australian Government's push to get serious about cybersecurity that it has been identified as a key risk area on a national level, but is their strategy reaching far enough?

Learn More
No items found.
Learning
October 20, 2020
Text overlay says 'Master secure coding with Sensei' over hands typing on laptop with code on screen.
Blog
blog-posts
October 8, 2020
October 8, 2020

What is Sensei?

The Sensei plugin provides an easy way to find specific code patterns in your source code, and then apply rewrite rules to amend the matching code. All within the Intellij IDE, and in real-time.

Learn More
No items found.
Learning
October 8, 2020
Blog
blog-posts
October 8, 2020
October 8, 2020

Build secure coding skills at every stage of the SSDLC

Secure Code Warrior has built a GitHub Action that brings contextual learning to GitHub code scanning. This means developers can use a third-party action like the Snyk Container Action to find vulnerabilities, and then augment the output with CWE-specific, hyper-relevant learning.

Learn More
No items found.
Learning
October 8, 2020
Browser window icon with bold letters KVK and two blue horizontal lines below on a gradient blue background.
Case Study
case-studies
January 6, 2026
January 6, 2026

Kamer van Koophandel: Developer-Driven Security at Scale

Kamer van Koophandel shares how it embedded secure coding into everyday development through role-based certifications, Trust Score benchmarking, and a culture of shared security ownership.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Browser window with Paysafe logo and three light blue bullet points on a blue gradient background.
Case Study
case-studies
October 8, 2025
October 8, 2025

Going for Gold: Soaring Secure Code Standards at Paysafe

See how Paysafe's partnership with Secure Code Warrior led to a 45% boost in developer productivity and a major reduction in code vulnerabilities.

Learn More
C-Suite
Learning
This is some text inside of a div block.
Golden shield emblem inside a stylized browser window with blue header and two blue lines on the right.
Case Study
case-studies
November 28, 2023
November 28, 2023

Devlympics 2023: In Review

Explore the Devlympics 2023 results in this report. Dive into developer engagement, tech stack and languages trends in each industry that participated, and key vulnerabilities and CWEs covered in the annual global event hosted by Secure Code Warrior.

Learn More
Engineering Teams
Learning
This is some text inside of a div block.
Case Study
case-studies
November 22, 2023
November 22, 2023

One Culture of Security: How Sage Built Their Champions Program

Discover how Sage enhanced security with a flexible, relationship-focused approach, creating 200+ security champions and achieving measurable risk reduction.

Learn More
Security Teams
Learning & Development
Learning
This is some text inside of a div block.
Case Study
case-studies
October 2, 2023
October 2, 2023

The path to security champions: How Workday utilized agile learning to upskill developers

Discover how Workday transformed developer training with agile learning through Secure Code Warrior. By empowering developer with hands-on, language-specific education, Workday reduced vulnerabilities early in the SDLC. See their impressive results and key takeaways to build a secure code culture.

Learn More
Learning & Development
Learning
This is some text inside of a div block.
Browser window with the word THALES centered in dark blue letters on a light background.
Case Study
case-studies
July 22, 2023
July 22, 2023

How Thales implemented developer-driven security

In this case study, learn how Thales has developed people, process, and technology approaches for an agile secure code learning program in order to engage developers to become active security champions.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Colgate-Palmolive logo in blue on a white browser window graphic with a blue header bar.
Case Study
case-studies
June 7, 2023
June 7, 2023

How Colgate-Palmolive boosted developer security skills and created a secure coding culture

Discover how retail giant Colgate-Palmolive reshaped its application security during its digital transformation journey. Facing challenges in secure coding, they innovated their approach by integrating bite-sized, in-context learning into the developer workflow.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Logo of Insurance Australia Group with blue and gray text and icon inside a web browser window design.
Case Study
case-studies
January 1, 2021
January 1, 2021

How a ‘Game of Codes’ is leading IAG Group to a more secure coding future

IAG Group is the name behind many of the leading insurancecompanies in the Asia-Pacific region, underwriting policies formillions of customers to the tune of approximately AUD $11.4 Billionin premiums per annum.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Minimalist graphic of a browser window with a blue top bar and two blue bullet-point lines in the bottom right corner.
Case Study
case-studies
January 1, 2021
January 1, 2021

Creating a revolutionary security certification experience

Learn how they created an in-house technology education initiative, aimed at supporting thousands of employees to learn practical, cutting-edge skills in a number of disciplines, including machine learning and cybersecurity.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Browser window with the letters ASRG in bold, black and white, centered on a blue gradient background.
Case Study
case-studies
January 1, 2021
January 1, 2021

ASRG's push for automotive software security

Explore this comprehensive case study to learn more about how they utilized Secure Code Warrior's tournaments to engage developers, increase awareness of key vulnerabilities affecting automotive software, and gain metrics across multiple languages and frameworks.

Learn More
Security Teams
Learning
This is some text inside of a div block.
News Article
news-articles
August 27, 2026
August 27, 2026

Forbes: A New Frontier: NSA Proposes “Security By Design” Considerations For AI Enablement

​The cybersecurity industry, which has been advocating for “security by design” principles for more than a decade, stands in wide-eyed amazement at the risks posed by artificial intelligence (AI). As organizations rush to embrace AI enablement, a CISO’s most pressing priority is to avoid becoming a roadblock. However, without effective AI usage and governance, observability and traceability, organizations may be blindsided by their AI risk.​

Learn More
AI Governance
C-Suite
Security Teams
AI Software Governance
Trust Agent
This is some text inside of a div block.
Media Release
news-articles
August 21, 2026
August 21, 2026

Techpartner.news: Secure Code Warrior introduces framework to govern AI use in software development

Secure Code Warrior has introduced the SCW AI Adoption Model, a framework designed to help organisations govern AI use in software development as the industry shifts from the traditional software development lifecycle (SDLC) toward what the company calls the Agentic Development Lifecycle (ADLC).

Learn More
C-Suite
AI Governance
AI Software Governance
This is some text inside of a div block.
News Article
news-articles
August 19, 2026
August 19, 2026

DevOps.com: Are LLMs Equally Good (or Bad) at Building Secure Software?

With many software engineering teams moving from AI coding assistants into full agentic AI code generation and increasing the amount of code they produce exponentially, ensuring the security of that code must be a top priority. The study produces practical guidance for organizations that are getting on board the AI-assisted or agentic code development train.

Learn More
AI Governance
Engineering Teams
Security Teams
AI Software Governance
Trust Agent
This is some text inside of a div block.
News Article
news-articles
August 14, 2026
August 14, 2026

TechRadar Pro: Beware the token trap: Why saving on inference might put your ADLC at risk

Token use can create unexpected, sizeable costs for organizations.

Learn More
AI Governance
C-Suite
AI Software Governance
Trust Agent
This is some text inside of a div block.
News Article
news-articles
August 11, 2026
August 11, 2026

KBI Media: AI Coding Boom Raises Fresh Cybersecurity Risks for Business

AI enables faster development cycles and allows developers to focus on higher-value work. For many businesses, these efficiencies are becoming essential to remaining competitive. The challenge, therefore, is not whether to adopt AI, but how to do so responsibly. Businesses that invest in developer education, governance frameworks, AI observability and robust security controls will be better positioned to capture the benefits while limiting the associated risks.

Learn More
AI Governance
Engineering Teams
No items found.
This is some text inside of a div block.
News Article
news-articles
August 11, 2026
August 11, 2026

In AI Today: AI's weakest link isn't the model but the software supply chain

The issue is no longer simply about protecting AI models themselves. Increasingly, attackers are focusing on the software ecosystem surrounding those models, including the development tools, middleware, open-source libraries, and automated deployment pipelines that organisations rely upon every day.

Learn More
AI Governance
No items found.
This is some text inside of a div block.
News Article
news-articles
August 10, 2026
August 10, 2026

The AI Journal: Investigating global AI regulation: Who is winning, and where to from here?

As we will unpack together, there is a lot of movement around the world, with some collaboration between nations, but the path forward is far from uniform or clear, particularly in business environments where AI adoption is often mandated before holistic safeguarding measures are in place.  

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
News Article
news-articles
July 27, 2026
July 27, 2026

Cyber Daily: The industry reacts to OpenAI’s agent ‘accidentally’ hacking Hugging Face

According to one expert, AI guardrails are not designed as “security boundaries” but rather to influence behaviour – but what if that behaviour is hacking one of your industry partners?

Learn More
No items found.
No items found.
This is some text inside of a div block.
Media Release
news-articles
July 24, 2026
July 24, 2026

SecurityBrief: Autonomous OpenAI agents breach Hugging Face in test

Cyber security experts have warned that the breach of Hugging Face infrastructure during an OpenAI security evaluation marks a turning point in the risks posed by autonomous AI agents. In the incident, AI models moved beyond a controlled test and carried out a live, multi-stage intrusion against the AI platform.

Learn More
C-Suite
Security Teams
AI Software Governance
Trust Agent
This is some text inside of a div block.
News Article
news-articles
July 24, 2026
July 24, 2026

Technology Decisions: AI generated code found to produce predictable weaknesses

AI-generated code introduces an average of 15 confirmed vulnerabilities per codebase, research published by Secure Code Warrior indicates.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
July 23, 2026
July 23, 2026

Forbes: OpenAI’s Hugging Face Breach Shows Frontier AI Guardrails Are Failing

Frontier AI is facing a PR crisis. After Hugging Face released a blog post on July 16 claiming an autonomous agent had breached its internal environment, OpenAI posted on July 21 that the incident occurred when GPT 5.6 Sol and a “pre-release model” escaped a controlled testing environment.

Learn More
AI Governance
C-Suite
Security Teams
AI Software Governance
This is some text inside of a div block.
News Article
news-articles
July 22, 2026
July 22, 2026

In AI Today: Secure Code Warrior research reveals AI-generated code introduces an average of 15 vulnerabilities per codebase

Secure Code Warrior research reveals AI-generated code introduces an average of 15 vulnerabilities per codebase.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
July 21, 2026
July 21, 2026

VMBlog: Secure Code Warrior Research Reveals AI-Generated Code Introduces an Average of 15 Vulnerabilities Per Codebase

Secure Code Warrior introduced the SCW AI Trust Index, a living benchmark for AI coding security that grows with every new model, helping organizations understand and govern the security risks introduced by AI-generated code. Built on a methodology created with RMIT University, Australia, then extended by Secure Code Warrior, the research presents comprehensive benchmarks on how often leading LLMs produce insecure code, with material implications for every enterprise scaling AI-assisted development.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
July 21, 2026
July 21, 2026

Dark Reading: Choose Wisely: AI-Generated Coding Risk Varies, A Lot

AI-generated code introduces 15 vulnerabilities on average per codebase, but the actual risk depends on framework pairing more than the model used.

Learn More
Security Teams
AI Governance
Trust Agent
AI Software Governance
This is some text inside of a div block.
Media Release
news-articles
July 21, 2026
July 21, 2026

Secure Code Warrior Research Reveals AI-Generated Code Introduces an Average of 15 Vulnerabilities Per Codebase

New SCW AI Trust Index shows AI-generated coding risk is not random, it's predictable by model and framework, giving security leaders the data to safely scale AI-assisted development.

Learn More
C-Suite
AI Governance
Security Teams
Trust Agent
AI Software Governance
This is some text inside of a div block.
News Article
news-articles
July 16, 2026
July 16, 2026

ITWire: Eight Industry Executives Comment on Worldwide AI Appreciation Day

The challenges with AI implementation, constant updates, and the race for industry dominance are coming thick and fast, and security professionals are among the most affected by its vast risk profile.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
July 16, 2026
July 16, 2026

Cyber Daily: The industry speaks – part 3: AI Appreciation Day 2026

The Australian government has said AI is very much in the country’s future national interest – but where does it stand today? Here’s what the industry’s best and brightest have to say about artificial intelligence and its role in the modern enterprise.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
July 13, 2026
July 13, 2026

ITWire: Agentic AI Era Demands Overhaul of Governance Frameworks

The emergence of agentic AI marks a structural shift in software development, introducing systems that not only accelerate production cycles but also perform autonomous reasoning and action beyond direct human control.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
July 2, 2026
July 2, 2026

SecurityWeek: How to Conduct a Successful Audit of AI-Driven Software Development

As AI-generated code becomes commonplace, CISOs need new audit strategies to measure developer practices, govern AI tool usage, and identify software risks before they reach production.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
July 2, 2026
July 2, 2026

IT Brief: A strategic blueprint for governing AI-enabled software development

According to a recent survey, more than seven in ten developers who have used AI coding tools report relying on them on a daily basis. However, many organisations still lack clear visibility into how these tools are influencing production code, creating governance gaps at a time when demand is accelerating and delivery timelines are tightening.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
News Article
news-articles
July 1, 2026
July 1, 2026

SD Times: Platform Engineering & Developer Experience: Making Engineers Faster Without Making Them Reckless: SD Times 100

This category has taken on new urgency in 2026 for a reason that’s specific to this moment: AI coding tools and agents are dramatically increasing how much code gets written and how often it needs to be deployed, tested, and provisioned for. Platform engineering is the layer that determines whether that increased velocity translates into shipped value or into chaos.

Learn More
No items found.
No items found.
This is some text inside of a div block.
News Article
news-articles
June 26, 2026
June 26, 2026

ComputerWeekly: Secure Code Warrior CEO on surviving the AI ‘vulnerability apocalypse’

As enterprises embrace agentic AI and vibe coding, Secure Code Warrior CEO and co-founder Pieter Danhieux warns that code-generating models are still producing critical security flaws.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
News Article
news-articles
June 25, 2026
June 25, 2026

In AI Today: Secure Code Warrior introduces its AI Adoption Model to accelerate secure AI adoption as the SDLC evolves toward the Agentic Development Lifecycle

Secure Code Warrior, a leader in AI software governance and developer security upskilling, today introduced its new SCW AI Adoption Model, a practical framework that maps the full progression of AI use in software development, from minimal AI assistance or fully autonomous agentic orchestration. The framework gives CISOs a roadmap to identify where their organisation sits today from an AI adoption perspective, the training developers need at each stage, and which governance controls are required as autonomy increases — answering the question every security leader is asking: where do we start?

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
News Article
news-articles
June 24, 2026
June 24, 2026

Help Net Security: New Secure Code Warrior framework helps CISOs govern AI-driven software development

Secure Code Warrior has introduced its new SCW AI Adoption Model, a practical framework that maps the progression of AI use in software development, from minimal AI assistance to fully autonomous agentic orchestration. The framework helps CISOs assess their organization’s level of AI adoption, identify the training developers need at each stage, and determine the governance controls required as autonomy increases, answering the question every security leader is asking: Where do we start?

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
News Article
news-articles
June 24, 2026
June 24, 2026

SecurityBrief UK: Secure Code Warrior launches AI adoption model for CISOs

Secure Code Warrior has launched an AI Adoption Model for software development, aimed at Chief Information Security Officers managing AI use across development teams.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
News Article
news-articles
June 24, 2026
June 24, 2026

ITWire: Secure Code Warrior Introduces its AI Adoption Model to accelerate secure AI adoption as the SDLC evolves toward the Agentic Development Lifecycle

SCW’s framework gives organisations a clear entry point and practical roadmap for every team — at every stage of the AI adoption curve.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
News Article
news-articles
June 23, 2026
June 23, 2026

VMblog: Secure Code Warrior Introduces its AI Adoption Model to accelerate secure AI adoption as the SDLC evolves toward the Agentic Development Lifecycle

Secure Code Warrior introduced its new SCW AI Adoption Model, a practical framework that maps the full progression of AI use in software development, from minimal AI assistance or fully autonomous agentic orchestration. The framework gives CISOs a roadmap to identify where their organization sits today from an AI adoption perspective, the training developers need at each stage, and which governance controls are required as autonomy increases — answering the question every security leader is asking: where do we start?

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
News Article
news-articles
June 23, 2026
June 23, 2026

DEVOPSdigest: Secure Code Warrior Releases AI Adoption Model

Secure Code Warrior introduced its new SCW AI Adoption Model, a practical framework that maps the full progression of AI use in software development, from minimal AI assistance or fully autonomous agentic orchestration.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
Media Release
news-articles
June 23, 2026
June 23, 2026

Secure Code Warrior Introduces its AI Adoption Model to accelerate secure AI adoption as the SDLC evolves toward the Agentic Development Lifecycle

Secure Code Warrior, a leader in AI software governance and developer security upskilling, today introduced its new SCW AI Adoption Model, a practical framework that maps the full progression of AI use in software development, from minimal AI assistance or fully autonomous agentic orchestration. The framework gives CISOs a roadmap to identify where their organization sits today from an AI adoption perspective, the training developers need at each stage, and which governance controls are required as autonomy increases — answering the question every security leader is asking: where do we start?

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
News Article
news-articles
June 19, 2026
June 19, 2026

teiss: The $1.73 data breach

Artificial intelligence-powered cyber-attacks are giving new meaning to the phrase, “before they know what hit ’em.”

Learn More
C-Suite
Engineering Teams
Security Teams
Learning
This is some text inside of a div block.
News Article
news-articles
June 16, 2026
June 16, 2026

SC Media: Why Does It Matter Who or What Created the Code? (Application Security Weekly, Episode #387)

Agents and LLMs are creating and reviewing code. They're a new tool to help developers write software and they're a new abstraction layer for expressing what code should do. But if we're focused on determining whether code is secure, where do we focus our attention on ensuring a secure outcome? Matias Madou talks about the challenges of finding metrics to help answer these questions. We walk through many of the questions we'd like to see answered and our desire to see appsec (finally?) shift out of a find-and-fix mode into a future of secure design.

Learn More
Engineering Teams
Security Teams
Learning
This is some text inside of a div block.
News Article
news-articles
June 5, 2026
June 5, 2026

eSecurity Planet: Understanding LLM Coding Personalities Is Now Key to Developer Improvement

Organizations need to establish precise security reviews, with human developers anchoring the process to implement effective security controls while also managing the specific coding temperament of each LLM used.

Learn More
Engineering Teams
Learning
This is some text inside of a div block.
News Article
news-articles
June 5, 2026
June 5, 2026

DevOps.com: Secure Code Warrior Leverages AI to Extend DevSecOps Training Reach

Secure Code Warrior this week extended the capability of its artificial intelligence (AI) agent to make it possible to surface relevant training insights in real time as application developers are writing code.

Learn More
Engineering Teams
Security Teams
Learning
This is some text inside of a div block.
News Article
news-articles
June 4, 2026
June 4, 2026

DevSecOps Talks: #102 - The 90-Day Patch Window Is Dead with Ian Amit and Matias Madou

What happens when AI can turn patches into exploits in hours? The hosts discuss with Ian Amit and Matias Madou why the 90-day disclosure window is breaking, what Mythos Preview changes, and why shipping vulnerable code is becoming more expensive.

Learn More
Engineering Teams
Security Teams
Learning
This is some text inside of a div block.
News Article
news-articles
June 2, 2026
June 2, 2026

ITWire: Secure Code Warrior Advances AI Software Governance with New Adaptive Learning Capability at the 2026 Gartner Security & Risk Management Summit

Secure Code Warrior, a leader in AI software governance and developer security upskilling, today unveiled its new Adaptive Learning capability from the Gartner Security & Risk Management Summit 2026. Adaptive Learning helps enterprises move AI software governance from visibility to measurable action — delivering targeted, risk-aligned microlearning at the moment of risk, and proving the result at the commit level.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
News Article
news-articles
June 1, 2026
June 1, 2026

Enterprise Security Tech: Secure Code Warrior Launches Adaptive Learning Platform to Tackle AI-Generated Software Risk

At the Gartner Security & Risk Management Summit 2026, Secure Code Warrior announced a new Adaptive Learning capability designed to help organizations reduce software security risk by connecting developer education directly to AI coding activity and real-world vulnerabilities.

Learn More
Engineering Teams
Security Teams
Learning
This is some text inside of a div block.
News Article
news-articles
June 1, 2026
June 1, 2026

ITBrief UK: Secure Code Warrior launches AI governance learning

Secure Code Warrior has launched Adaptive Learning for its AI software governance platform. The feature is intended to connect developer training to real-time coding activity.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
News Article
news-articles
June 1, 2026
June 1, 2026

SD Times: Secure Code Warrior Advances AI Software Governance with New Adaptive Learning Capability

‍Secure Code Warrior, a leader in AI software governance and developer security upskilling, today unveiled its new Adaptive Learning capability from the Gartner Security & Risk Management Summit 2026. Adaptive Learning helps enterprises move AI software governance from visibility to measurable action — delivering targeted, risk-aligned microlearning at the moment of risk, and proving the result at the commit level.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
News Article
news-articles
June 1, 2026
June 1, 2026

Help Net Security: Secure Code Warrior connects developer training to AI usage and code risks

Secure Code Warrior has introduced Adaptive Learning, a capability designed to help organizations support AI software governance through targeted training based on identified risks. The feature delivers contextual microlearning and tracks outcomes at the code commit level.

Learn More
Engineering Teams
Security Teams
Learning
This is some text inside of a div block.
News Article
news-articles
June 1, 2026
June 1, 2026

In AI Today: AI puts threat modelling at the frontline of software development

Traditionally, threat modelling has been the domain of security professionals tasked with anticipating how attackers might infiltrate systems or exploit vulnerabilities. The process has relied heavily on manual analysis, workshops, and an expanding suite of scanning tools. While effective in earlier eras, this approach struggles to keep pace with the complexity of today’s software development. At the same time, AI-driven coding is accelerating the volume of code produced, expanding the potential attack surface and introducing new categories of risk.

Learn More
Engineering Teams
Security Teams
Learning
This is some text inside of a div block.
Media Release
news-articles
June 1, 2026
June 1, 2026

Secure Code Warrior Advances AI Software Governance with New Adaptive Learning Capability at the 2026 Gartner® Security & Risk Management Summit

Gartner Security & Risk Management Summit, National Harbor, MD. June 1, 2026 – Secure Code Warrior, a leader in AI software governance and developer security upskilling, today unveiled its new Adaptive Learning capability from the Gartner Security & Risk Management Summit 2026. Adaptive Learning helps enterprises move AI software governance from visibility to measurable action — delivering targeted, risk-aligned microlearning at the moment of risk, and proving the result at the commit level.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
News Article
news-articles
May 27, 2026
May 27, 2026

Technology Solutions: 'Tokenmaxxing' facing a reality check as enterprises question AI value

Enterprises are beginning to realise that token metrics alone offer only a partial picture of AI effectiveness. Token volume may measure activity, but it does not measure whether the output is secure or commercially valuable.

Learn More
Engineering Teams
Security Teams
Learning
This is some text inside of a div block.
News Article
news-articles
May 26, 2026
May 26, 2026

Techstrong.AI: The Age of Agentic AI Requires a New Governance Model

To avoid being overrun by agentic AI’s power, organizations need to take a new approach to governance that works at the speed of AI agents, incorporating real-time monitoring, automated guardrails and dynamic policy frameworks that can keep autonomous innovation from outpacing our ability to manage the lifecycle.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
News Article
news-articles
May 25, 2026
May 25, 2026

TalkDev: Essential Guidelines for Securing AI-Generated Code in 2026

Vibe coding has taken software development by storm, with developers and enterprises using AI to generate code and leverage its productivity benefits. However, research has found that AI-generated code has significant security gaps. LLMs are not sufficiently security-savvy and struggle to identify critical vulnerabilities, especially when they fall under vague or subjective categories. At such a time, when human oversight is more important than ever, it is vital for the industry to address the gap in developers’ security proficiency. In a conversation with the Talk Dev Bureau, Matias Madou discusses the urgency for enterprises to identify vulnerabilities, train their developers in security proficiency, and set up appropriate enterprise-relevant governance protocols.

Learn More
Engineering Teams
Security Teams
Learning
This is some text inside of a div block.
News Article
news-articles
May 19, 2026
May 19, 2026

DEVOPSdigest: Tokenmaxxing Pressures: The Impact on Modern Developer Ecosystems

As enterprises scale AI deployments across chatbots, copilots and agents, token-based pricing is becoming a primary cost driver — and board members and executives are starting to ask warranted questions about the real value of AI and its return on investment (ROI). But what is driving the pressure to maximize token spend, and what does this mean for modern developer environments?

Learn More
Engineering Teams
Security Teams
Learning
This is some text inside of a div block.
News Article
news-articles
May 19, 2026
May 19, 2026

Forbes: A Strategic Game Plan For The Governance Of AI-Enabled Code Development

​Artificial intelligence (AI)-driven coding is no longer experimental; it’s embedded in the majority of daily workflows. In fact, more than seven out of 10 developers who have tried using AI now use AI coding tools every day.​ Yet, most organizations lack visibility into how these tools affect production code, creating governance blind spots as demand spikes and deadlines accelerate.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
News Article
news-articles
May 15, 2026
May 15, 2026

SiliconANGLE: The software supply chain is the new ground zero for enterprise cyber risk. Don’t get caught short.

As security professionals, we’re staring into a future where AI-related attacks will come from every angle very quickly, and AI defenses simply aren’t ready. It’s the software supply chain that is the real pay dirt for an attacker.

Learn More
Engineering Teams
Security Teams
Learning
This is some text inside of a div block.
News Article
news-articles
May 14, 2026
May 14, 2026

ARN: AWS’ Pip Gilbert sees partners as the strategy for unlocking AI and cloud innovation

Gilbert believes that security is a shared responsibility because there are humans involved with technology. That is one of the reasons behind AWS announcing a partnership with AI software governance and developer security upskilling firm Secure Code Warrior at this years’ Partner Summit.

Learn More
Engineering Teams
Security Teams
Learning
This is some text inside of a div block.
News Article
news-articles
May 13, 2026
May 13, 2026

TalkDev: Secure Code Warrior Signs Strategic Collaboration Agreement with AWS to Support Security-Conscious Developers with Amazon Bedrock AI Learning Modules

Secure Code Warrior, a leader in AI software governance and developer security upskilling, announced it has signed a strategic collaboration agreement (SCA) with Amazon Web Services (AWS), and has launched new interactive, hands-on training modules now available within the Secure Code Warrior platform. The new modules enable developers and engineers to build Secure by Design habits, maintain continuous risk awareness, and adopt secure operational practices for Amazon Bedrock, the platform for building generative AI applications and agents at production scale.

Learn More
Engineering Teams
Security Teams
Learning
This is some text inside of a div block.
News Article
news-articles
May 12, 2026
May 12, 2026

SD Times: Secure Code Warrior collaborating with AWS, launches Amazon Bedrock AI Learning Modules

Secure Code Warrior announced it has signed a collaboration agreement with Amazon Web Services (AWS), and has launched new interactive, hands-on training modules now available within the Secure Code Warrior platform.

Learn More
Engineering Teams
Security Teams
C-Suite
Learning
This is some text inside of a div block.
Media Release
news-articles
May 12, 2026
May 12, 2026

Secure Code Warrior Signs Strategic Collaboration Agreement with AWS to Support Security-Conscious Developers with Amazon Bedrock AI Learning Modules

New interactive training activities simulate real-world AI risk remediation for Amazon Bedrock.

Learn More
Engineering Teams
Security Teams
C-Suite
Learning
This is some text inside of a div block.
News Article
news-articles
May 8, 2026
May 8, 2026

IT Brief US: KnowBe4 partners Secure Code Warrior on AI training

KnowBe4 has partnered with Secure Code Warrior to add secure coding and AI governance training to its library for organizations with technical teams.

Learn More
Engineering Teams
Security Teams
Learning
This is some text inside of a div block.
News Article
news-articles
May 8, 2026
May 8, 2026

ITNews: Why AI-Driven Development Is Creating New Security Challenges

Australia’s software development landscape is undergoing a profound shift, as artificial intelligence moves from a supporting role to a central driver of how code is written, tested and deployed.

Learn More
Engineering Teams
Security Teams
Learning
This is some text inside of a div block.
News Article
news-articles
May 7, 2026
May 7, 2026

SecurityBrief: KnowBe4 adds AI secure coding training with partner

KnowBe4 has partnered with Secure Code Warrior to offer secure coding training for organisations with technical teams, adding specialist content to KnowBe4's training library.

Learn More
Engineering Teams
Security Teams
Learning
This is some text inside of a div block.
Media Release
news-articles
May 6, 2026
May 6, 2026

KnowBe4 Announces Strategic Partnership with Secure Code Warrior to Deliver Interactive Secure Coding Training

Organizations can train developers on AI governance and secure coding across 10 programming languages with Secure Code Warrior and KnowBe4.

Learn More
Engineering Teams
Security Teams
Learning
This is some text inside of a div block.
News Article
news-articles
April 29, 2026
April 29, 2026

TechTarget: Tokenmaxxing: How CIOs can extract maximum value from AI tokens

Tokenmaxxing is the key to mastering AI costs. Discover how enterprises can optimize token usage, reduce waste and scale AI responsibly.

Learn More
C-Suite
Learning
This is some text inside of a div block.
News Article
news-articles
April 27, 2026
April 27, 2026

IEEE Spectrum: Claude Mythos Preview Requires New Ways to Keep Code Secure Multiple layers of verification and human oversight are a start

Malicious actors are now exploiting generative AI to carry out cyberattacks: scamming victims using AI-generated deepfakes, deploying malware developed with the help of AI coding tools, using chatbots to pull off phishing campaigns, and hacking widely used open-source code repositories with AI agents. And these AI-driven threats are rising.

Learn More
Engineering Teams
Security Teams
Learning
This is some text inside of a div block.
News Article
news-articles
April 23, 2026
April 23, 2026

KBI Media: Is This the End of the Road for AppSec?

Maintaining a clear line of sight over the AI coding tools and model control platforms in use, alongside a realistic assessment of the security capabilities of the developers deploying them, is becoming a critical requirement for enterprises.

Learn More
Engineering Teams
Security Teams
Learning
This is some text inside of a div block.
News Article
news-articles
April 20, 2026
April 20, 2026

IT Brew: How 1Password CIO Jacob DePriest thinks about approving internal AI tools

How do you secure a workforce where everyone is now an AI builder?

Learn More
C-Suite
Learning
This is some text inside of a div block.
News Article
news-articles
April 13, 2026
April 13, 2026

Security Journal UK: Strengthening enterprise security with AI threat modelling

Developers have long struggled to truly claim a seat at the table in traditional threat modelling programs, but with the right skills, they have the opportunity to wield AI responsibly to seriously cut risk and rework in their codebase.

Learn More
Engineering Teams
Security Teams
Learning
This is some text inside of a div block.
SD Times logo with red dot and text Software Development in red above Times.
News Article
news-articles
April 10, 2026
April 10, 2026

SD Times: AI-Assisted Development Multiplies Human Error: What’s Your AI Governance and Risk Management Strategy?

According to a recent report from Gartner, the rampant use of shadow AI and rogue automation is further fueling the proliferation of AI vulnerabilities. Gartner notes that 32% of IT workers using generative AI tools at work say they keep them hidden from cybersecurity teams. Combined with low-code/no-code platforms and vibe coding practices, the AI copilots are greatly expanding the enterprise attack surface.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
Cyber Security Tribe logo with abstract blue geometric shapes forming a square.
News Article
news-articles
March 31, 2026
March 31, 2026

Cybersecurity Tribe: What Separates Real AI Governance From Policy Theater

For this article, we asked a central question for security and risk leaders: "What differentiates a policy that genuinely mitigates enterprise risk from one that exists primarily to demonstrate that the organization has acknowledged AI risk?"

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
ISMG logo with lowercase orange i and uppercase blue SMG letters.
News Article
news-articles
March 31, 2026
March 31, 2026

ISMG: AI Coding Tools Raise Hidden Security Risks

Secure Code Warrior's Pieter Danhieux on Managing AI-Driven Development Risks

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
White stylized lowercase letters 'itw' on a red square background.
News Article
news-articles
March 30, 2026
March 30, 2026

ITWire: Decoding AI Coding “Personalities” Critical to Managing Development Risk

As generative AI cements its place in enterprise software development, a familiar discipline is taking on new urgency: risk management.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
Logo reading 'AI in AI Today' with circuit design lines inside letters AI.
News Article
news-articles
March 24, 2026
March 24, 2026

In AI Today: Secure Code Warrior launches Trust Agent: AI to enable safe, scalable AI-driven development

Secure Code Warrior have today announced SCW Trust Agent: AI, the industry’s first governance solution designed to make Artificial Intelligence (AI) influence in software development visible, attributable, and enforceable at the point of commit — enabling enterprises to scale AI coding tools with measurable control over software risk.

Learn More
AI Governance
Trust Agent
This is some text inside of a div block.
DevOps digest text logo with DevOps in blue and digest in light brown on white background.
News Article
news-articles
March 23, 2026
March 23, 2026

DEVOPSdigest: 25 Years of the Agile Manifesto, and the End of the Road for AppSec?

Even as we restructure the SDLC around the most impactful elements of the Agile methodology with careful, DevSecOps-centric security considerations, is this the end of the road for AppSec as we know it?

Learn More
Security Teams
Engineering Teams
C-Suite
Learning
This is some text inside of a div block.
Global InfoSec Awards Winners 2026 badge by Cyber Defense Magazine in gold, black, and red.
News Article
news-articles
March 23, 2026
March 23, 2026

Cyber Defense Magazine: Global InfoSec Awards 2026 Secure Code Warrior Wins Outstanding Achievement in Cybersecurity Risk Management and Compliance Excellence

Global InfoSec Awards 2026 Secure Code Warrior Wins Outstanding Achievement in Cybersecurity Risk Management and Compliance Excellence

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
White ITwire logo on a solid red background.
News Article
news-articles
March 19, 2026
March 19, 2026

ITWire: Secure Code Warrior Launches Trust Agent: AI to Enable Safe, Scalable AI-Driven Development

New AI Software Governance solution makes AI-generated code visible at commit, enforces policy before production, and connects real development behavior to measurable risk reduction.

Learn More
AI Governance
Trust Agent
This is some text inside of a div block.
DevOps.com logo with stylized linked letters D and O in navy and red colors.
News Article
news-articles
March 19, 2026
March 19, 2026

DevOps.com: Secure Code Warrior AI Agent Applies Policies to AI Generated Code

Secure Code Warrior (SCW) this week added an artificial intelligence (AI) agent that both identifies code generated by an AI coding tool and automatically applies the appropriate governance policies.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
SecurityBrief United Kingdom logo with purple banner and angled design.
News Article
news-articles
March 18, 2026
March 18, 2026

SecurityBrief UK: Secure Code Warrior unveils AI tool to govern code risk

Secure Code Warrior has launched SCW Trust Agent: AI, a software governance product that tracks the use of AI coding tools in development and links that usage to software risk when developers commit code.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
Globee Awards logo with globe, laurel wreaths, stars, and text on a yellow background.
News Article
news-articles
March 17, 2026
March 17, 2026

2026 Globee® Awards for Cybersecurity: Secure Code Warrior Wins Gold Globee for Software Development Cybersecurity Solutions (Best Of)

2026 Globee® Awards for Cybersecurity: Secure Code Warrior Wins Gold Globee for Software Development Cybersecurity Solutions (Best Of)

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Text reading 'DEVOPS' in blue uppercase letters and 'digest' in lowercase gold letters below it.
News Article
news-articles
March 17, 2026
March 17, 2026

DEVOPSdigest: Secure Code Warrior Releases Trust Agent

Secure Code Warrior announced SCW Trust Agent: AI, a governance solution designed to make AI influence in software development visible, attributable, and enforceable at the point of commit — enabling enterprises to scale AI coding tools with measurable control over software risk.

Learn More
AI Governance
Trust Agent
This is some text inside of a div block.
Talk Dev logo with black text and a purple speech bubble icon.
News Article
news-articles
March 17, 2026
March 17, 2026

TalkDev: Secure Code Warrior Launches Trust Agent: AI to Enable Safe, Scalable AI-Driven Development

Secure Code Warrior today announced SCW Trust Agent: AI, the industry’s first governance solution designed to make AI influence in software development visible, attributable, and enforceable at the point of commit — enabling enterprises to scale AI coding tools with measurable control over software risk. For the first time, organizations can trace which AI models influenced specific commits, correlate that influence to vulnerability exposure, and take corrective action before insecure code reaches production.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
Help Net Security logo with a yellow square and black background.
News Article
news-articles
March 17, 2026
March 17, 2026

Help Net Security: SCW Trust Agent: AI tracks AI influence in code to reduce software risk

Secure Code Warrior has announced SCW Trust Agent: AI, a governance solution designed to make AI influence in software development visible, attributable, and enforceable at the point of commit, enabling enterprises to scale AI coding tools with measurable control over software risk. Organizations can trace which AI models influenced specific commits, correlate that influence with vulnerability exposure, and take corrective action before insecure code reaches production.

Learn More
AI Governance
Trust Agent
This is some text inside of a div block.
Secure Code Warrior logo with a stylized yellow shield and black text on the right.
Media Release
news-articles
March 17, 2026
March 17, 2026

Secure Code Warrior Launches Trust Agent: AI to Enable Safe, Scalable AI-Driven Development

New AI Software Governance solution makes AI-generated code visible at commit, enforces policy before production, and connects real development behavior to measurable risk reduction.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
Security Boulevard company logo with stylized SB letters above text.
News Article
news-articles
March 13, 2026
March 13, 2026

Security Boulevard: Threat Modeling with AI: A Developer-Driven Boon for Enterprise Security

Developers have long struggled to truly claim a seat at the table in traditional threat modeling programs, but with the right skills, they have the opportunity to wield AI responsibly to seriously cut risk and rework in their codebase.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
Black serif letters AIJ on white background.
News Article
news-articles
March 9, 2026
March 9, 2026

The AI Journal: Understanding LLM Coding Personalities Is Now Key to Developer Risk Management

AI-generated code may be “made by machine”, but taking a cookie-cutter approach to securing that code would fall well short of mitigating the vulnerabilities LLMs can introduce. Organizations need to establish precise security reviews, with human developers anchoring the process to implement effective security controls while also managing the specific coding temperament of each LLM used. AI-generated code must undergo the same personalized risk assessments as code written by human developers.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
White letters SB inside a purple circle.
News Article
news-articles
March 2, 2026
March 2, 2026

SecurityBrief: The security challenges in AI-assisted software development

s artificial intelligence (AI) tools become more widely used in the software development process, their impact on security is becoming clearer. According to recent research, nearly 70% of organisations have discovered vulnerabilities caused by AI tools while one in five have experienced a serious incident as a result of those vulnerabilities.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
KBI media logo with KBI in large letters above media in smaller font inside a stylized square border.
News Article
news-articles
March 2, 2026
March 2, 2026

KBI Media: Eliminating the Technical Debt Caused by AI-Assisted Software Development

According to research company Forrester[1], the tech debt for 75% of organisations will increase to a moderate or high level during this year, due to the rapid expansion of AI usage across a range of areas including software development.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
White serif capital letter F on a solid black background.
News Article
news-articles
February 20, 2026
February 20, 2026

Forbes: Security Self-Governance: Addressing The Regulatory Gap In AI-Assisted Software Development

While it’s early into 2026, we’re seeing new research that reveals the extent of cyber risks caused by artificial intelligence (AI)-assisted software development: Nearly 7 in 10 organizations have discovered vulnerabilities introduced by AI-generated code, and 1 in 5 have suffered a serious incident tied directly to the vulnerabilities.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
White stylized ITWire logo on a solid red square background.
News Article
news-articles
February 19, 2026
February 19, 2026

ITWire: Why AI Is Dulling Cybersecurity’s Most Important Edge

Artificial intelligence (AI) has rapidly become indispensable to modern software development. From large language models that generate code on demand to agentic systems that automate entire workflows, AI tools promise dramatic gains in productivity and efficiency.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
Black letter S with blue digital dots fading from the left side on a white background.
News Article
news-articles
February 12, 2026
February 12, 2026

SecurityWeek: How to Eliminate the Technical Debt of Insecure AI-Assisted Software Development

Developers must view AI as a collaborator to be closely monitored, rather than an autonomous entity to be unleashed. Without such a mindset, crippling tech debt is inevitable.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
Black letters CSO on a light gray background.
News Article
news-articles
February 9, 2026
February 9, 2026

CSO Online: Software developers: Prime cyber targets and a rising risk vector for CISOs

From technical compromise to AI-driven attacks, cyber criminals increasingly see software developers as prime targets, creating systemic risks CISOs must address.

Learn More
C-Suite
Learning
This is some text inside of a div block.
Blue geometric cube logo with stylized letters forming the shape.
News Article
news-articles
January 30, 2026
January 30, 2026

SMBtech: Tech Industry Leaders React To Data Privacy Week 2026

It’s Online Privacy Week, a time of year where individuals and organisations are all reminded to check their digital footprint(s). Some might say that’s a futile gesture at a time where major social media and marketing players know absolutely everything about you and are cheerfully selling all that data to anyone who’ll buy it; when Microsoft is performing every trick in the book to get Windows users to put all their data in the cloud where it’s available for government agencies to snoop upon without letting you know; when a personal computer crisis means many people will be moved on to dumb-client computing landscape where everything from data storage to major processing tasks will be taking place in the cloud; and when people think that clicking ‘Accept’ on website pop-ups does something that meaningfully protects them. But, what do the experts say?

Learn More
Security Teams
Learning
This is some text inside of a div block.
White letters SB in a purple circle, resembling initials or logo.
News Article
news-articles
January 29, 2026
January 29, 2026

Security brief: AI heightens data privacy risks & reshapes digital trust

Technology and data specialists have warned that artificial intelligence and weak data governance are sharpening privacy risks for organisations, as businesses mark World Data Privacy Day.

Learn More
AI Governance
C-Suite
AI Software Governance
This is some text inside of a div block.
ITWire logo with stylized white letters on a red background.
News Article
news-articles
January 27, 2026
January 27, 2026

ITWire: Data Privacy Week 2026

“Data Privacy Week" presents a great reminder for organisations to reassess their customer privacy policies and prioritise transparent data collection in their marketing strategies.

Learn More
Security Teams
Learning
This is some text inside of a div block.
The black letters D and B on a white background.
News Article
news-articles
January 27, 2026
January 27, 2026

Dynamic Business: Data Protection Day 2026: Five experts on the privacy risks threatening your business

Five leading cybersecurity experts warn AI is being integrated faster than security policies can manage the risk, creating urgent privacy gaps for SMEs ahead of Data Protection Day on 28 January.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Stylized letter B logo with overlapping dark and light green shapes forming the letter.
News Article
news-articles
January 22, 2026
January 22, 2026

Information Security Buzz: OWASP Top 10 2025: New Enemies, Old Foes, and an Approach to Vulnerability Remediation That Must Evolve

The OWASP Foundation has been a guiding light for security professionals and enthusiasts alike, providing critical, practical advice on the most insidious software vulnerabilities across a plethora of categories and platforms. It has been the first major update since 2021 to the flagship OWASP Top 10 Web Vulnerabilities, and in that time, the industry has been rocked by a stampede of AI technology, tools, and code, each creating a dichotomy of security efficiency and risk for both cybersecurity and software engineering professionals.

Learn More
Security Teams
Engineering Teams
C-Suite
Learning
This is some text inside of a div block.
Text logo reading DEVOPS in blue and digest in gold on white background.
News Article
news-articles
January 22, 2026
January 22, 2026

DEVOPSdigest: What Software Developers Need to Know About Secure Coding and AI Red Flags

The bottom line: AI tools are not safe for enterprise use unless the code output is reviewed and implemented by a security-proficient human. 30% of security experts admit that they don't trust(link is external) the accuracy of code generated by AI itself. That's why security leaders must prioritize the education and upskilling of developer teams, to ensure they have the necessary skills and capabilities to mitigate AI-assisted code vulnerabilities as early as possible. This will lead to the cultivation of a "security first" team culture and safer AI use.

Learn More
Security Teams
Engineering Teams
C-Suite
Learning
This is some text inside of a div block.
Stack Overflow logo with orange stack of rectangles above a gray base.
News Article
news-articles
January 15, 2026
January 15, 2026

Stack Overflow: If you're a Zoomer, this one's for you: Everything Gen Z needs to know about the 2025 tech landscape

Here's the lowdown on all the tech from 2025 that you, dear Zoomer, should know about.

Learn More
Learning & Development
Learning
This is some text inside of a div block.
White letters SC inside a red circle.
News Article
news-articles
January 15, 2026
January 15, 2026

SC Media: CISOs can’t wait for the EU AI Act to take shape

CISOs hoping for the EU Artificial Intelligence Act to offer a solid framework for AI governance may be a little confused or disappointed by recent updates surrounding the implementation of AI restrictions.

Learn More
AI Governance
C-Suite
AI Software Governance
This is some text inside of a div block.
White letters SB inside a purple circle.
News Article
news-articles
January 14, 2026
January 14, 2026

SecurityBrief: Agentic AI double agents expose dangerous security gaps

An alleged nation-state attacker used Claude Code and a range of tools in the developer ecosystem to almost autonomously target specific companies with benign open-source hacking tools at scale. Of the more than thirty attacks, several were successful, and proved that AI agents could indeed execute large-scale, malicious tasks with little to no human intervention.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
Text logo with blue uppercase DEVOPS and brown lowercase digest on a white background.
News Article
news-articles
January 14, 2026
January 14, 2026

DEVOPSdigest: 2026 DevSecOps Predictions

DEVOPSdigest's Prediction Series continues with 2026 DevSecOps Predictions — Industry experts offer predictions on how DevSecOps will evolve and impact the industry in 2026.

Learn More
Engineering Teams
Security Teams
C-Suite
Learning
This is some text inside of a div block.
White stylized itwire text logo on a solid red background.
News Article
news-articles
January 12, 2026
January 12, 2026

ITWire: OWASP Names Latest Top 10 Application Vulnerabilities

The Open Worldwide Application Security Project (OWASP) has unveiled its latest top 10 vulnerabilities list, and it contains some surprising insights into important vulnerability classes.

Learn More
Engineering Teams
Security Teams
C-Suite
Learning
This is some text inside of a div block.
Minimalist blue outline icon of a square with a diagonal cut on the upper left side.
News Article
news-articles
December 24, 2025
December 24, 2025

Channel Insider: Cybersecurity Experts Predict AI, Nation-State Threats in 2026

Cybersecurity experts outline 2026 predictions, from AI-driven attacks and quantum risk to nation-state threats, OT security gaps, and automation pressures.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
SJUK logo with white letters on a blue background.
News Article
news-articles
December 15, 2025
December 15, 2025

Security Journal UK: The rise of AI coding tools and the skills gap they expose

Pieter Danhieux, Co-founder and CEO of Secure Code Warrior warns that while AI coding tools promise speed and efficiency, they also introduce new risks.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
White iTWire logo on a solid red background.
News Article
news-articles
December 15, 2025
December 15, 2025

ITWire: Predictions on State of AI in 2026

2026 is shaping up to be the year AI evolves from instrument to partner, transforming how we work, create and solve problems.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
FORTUNE
News Article
news-articles
December 15, 2025
December 15, 2025

Fortune: AI coding tools exploded in 2025. The first security exploits show what could go wrong

While a breach of the tools hasn’t so far caused a wide-scale attack, there have been a few exploits and near-misses, and cyberthreat researchers have discovered critical vulnerabilities in several popular tools that make clear what could go horribly wrong.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
Blue geometric cube with stylized letters S, M, and B on each visible face.
News Article
news-articles
December 10, 2025
December 10, 2025

SMBtech: Australian Tech Industry Leaders Make Their Predictions for 2026

It’s that time of year where the technology industry predictions start rolling-in. Here’s what you can (apparently) expect in 2026.

Learn More
Learning & Development
Learning
This is some text inside of a div block.
Logo with word 'technology' in orange and 'Decisions' in gray with power symbol as O.
News Article
news-articles
December 9, 2025
December 9, 2025

Technology Decisions: The importance of effective security when deploying AI tools

The concern is straightforward: development teams may place undue confidence in AI tools that are not equipped to interpret the nuanced context in which many security vulnerabilities arise. Large language models, for instance, can struggle to understand an application’s authentication or authorisation architecture, increasing the likelihood of missing critical safeguards.

Learn More
AI Governance
C-Suite
AI Software Governance
This is some text inside of a div block.
eBook
downloads
July 21, 2026
July 21, 2026

Which AI Model Codes Most Securely?

See how 16 leading AI models actually code, scored across 11 real-world frameworks and 1,760 codebases — the framework matters as much as the model.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
One Pager
downloads
July 7, 2026
July 7, 2026

Citizen AI by Secure Code Warrior

AI risk doesn't stop at engineering. Get the one-pager on Citizen AI — build AI literacy and safe habits across your whole workforce.

Learn More
Engineering Teams
Learning
This is some text inside of a div block.
Whitepaper
downloads
June 23, 2026
June 23, 2026

Understand how AI is transforming software development—and how security must evolve with it.

From AI autocomplete to autonomous agents—explore how software development is evolving and what it means for security, governance, and your team.

Learn More
No items found.
No items found.
This is some text inside of a div block.
One Pager
downloads
June 9, 2026
June 9, 2026

SCW named in new Agentic Coding Security category

Gartner named SCW twice in the 2026 Hype Cycle for Secure Software Engineering. Here's why it matters for AI-driven development.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Guide
downloads
May 15, 2026
May 15, 2026

SCW Learning Content for KnowBe4

Secure Code Warrior content available through KnowBe4 helps technical teams build secure coding and AI governance awareness through structured learning covering OWASP Top 10 risks, AI-assisted development, and modern secure coding practices.

Learn More
Learning & Development
Learning
This is some text inside of a div block.
One Pager
downloads
May 13, 2026
May 13, 2026

Secure AI-driven development with KnowBe4 + Secure Code Warrior

Secure Code Warrior joins KnowBe4 to bring hands-on secure coding training into security awareness programs — covering OWASP, AI development, and 10 languages.

Learn More
Engineering Teams
Security Teams
Learning
This is some text inside of a div block.
One Pager
downloads
April 1, 2026
April 1, 2026

Trust Agent:AI - Secure and scale AI-Drive development

AI is writing code. Who’s governing it? With up to 50% of AI-generated code containing security weaknesses, managing AI risk is critical. Discover how SCW's Trust Agent: AI provides the real-time visibility, proactive governance, and targeted upskilling needed to scale AI-driven development securely.

Learn More
No items found.
No items found.
This is some text inside of a div block.
One Pager
downloads
March 23, 2026
March 23, 2026

OpenText Application Security + Secure Code Warrior

OpenText Application Security and Secure Code Warrior combine vulnerability detection with AI Software Governance and developer capability. Together, they help organizations reduce risk, strengthen secure coding practices, and confidently adopt AI-driven development.

Learn More
Security Teams
Learning
This is some text inside of a div block.
One Pager
downloads
March 19, 2026
March 19, 2026

Secure Code Warrior corporate overview

Secure Code Warrior is an AI Software Governance platform designed to enable organizations to safely adopt AI-driven development by bridging the gap between development velocity and enterprise security. The platform addresses the "Visibility Gap," where security teams often lack insights into shadow AI coding tools and the origins of production code.

Learn More
Learning & Development
Learning
This is some text inside of a div block.
Brochure
downloads
March 11, 2026
March 11, 2026

Secure code training topics & content

Our industry-leading content is always evolving to fit the ever changing software development landscape with your role in mind. Topics covering everything from AI to XQuery Injection, offered for a variety of roles from Architects and Engineers to Product Managers and QA. Get a sneak peek of what our content catalog has to offer by topic and role.

Learn More
Learning & Development
Security Teams
Learning
This is some text inside of a div block.
One Pager
downloads
January 20, 2026
January 20, 2026

Cyber Resilience Act (CRA) Aligned Learning Pathways

SCW supports Cyber Resilience Act (CRA) readiness with CRA-aligned Quests and conceptual learning collections that help development teams build the Secure by Design, SDLC, and secure coding skills aligned with the CRA’s secure development principles.

Learn More
Security Teams
Learning
This is some text inside of a div block.
eBook
downloads
December 23, 2025
December 23, 2025

OWASP Top 10 2025 eBook

Want to dominate the OWASP Top 10? Download the No-BS Guide to Defending Your Applications Against the OWASP Top 10:2025

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
One Pager
downloads
September 24, 2025
September 24, 2025

Trust Agent: AI by Secure Code Warrior

This one-pager introduces SCW Trust Agent: AI, a new set of capabilities that provide deep observability and governance over AI coding tools. Learn how our solution uniquely correlates AI tool usage with developer skills to help you manage risk, optimize your SDLC, and ensure every line of AI-generated code is secure.

Learn More
Security Teams
Engineering Teams
No items found.
This is some text inside of a div block.
Whitepaper
downloads
July 9, 2025
July 9, 2025

AI Coding Assistants: A Guide to Security-Safe Navigation for the Next Generation of Developers

Large language models deliver irresistible advantages in speed and productivity, but they also introduce undeniable risks to the enterprise. Traditional security guardrails aren’t enough to control the deluge. Developers require precise, verified security skills to identify and prevent security flaws at the outset of the software development lifecycle.

Learn More
Engineering Teams
Learning
This is some text inside of a div block.
One Pager
downloads
April 2, 2025
April 2, 2025

Professional Services - Accelerate with expertise

Secure Code Warrior’s Program Strategy Services (PSS) team helps you build, enhance, and optimize your secure coding program. Whether you're starting fresh or refining your approach, our experts provide tailored guidance.

Learn More
Learning & Development
Learning
This is some text inside of a div block.
One Pager
downloads
March 19, 2025
March 19, 2025

Quests: Industry leading learning to keep developers ahead of the game mitigating risk.

Quests is a learning platform that helps developers mitigate software security risks by enhancing their secure coding skills. With curated learning paths, hands-on challenges, and interactive activities, it empowers developers to identify and prevent vulnerabilities.

Learn More
Learning & Development
Learning
This is some text inside of a div block.
Whitepaper
downloads
October 15, 2024
October 15, 2024

Benchmarking Security Skills: Streamlining Secure-by-Design in the Enterprise

The Secure-by-Design movement is the future of secure software development. Learn about the key elements companies need to keep in mind when they think about a Secure-by-Design initiative.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Video
downloads
August 15, 2024
August 15, 2024

Trust Agent in action

SCW Trust Agent gives you the tools you need to deliver secure code faster, ensuring developers have the knowledge and skills to implement security best practices in the specific programming language of their code commits.

Learn More
No items found.
No items found.
This is some text inside of a div block.
One Pager
downloads
July 23, 2024
July 23, 2024

Trust Agent by Secure Code Warrior

Are you confident that every line of code committed is backed by a developer with the necessary secure coding skills? Many organizations face this critical gap, leading to preventable vulnerabilities and reduced development velocity. SCW Trust Agent offers unparalleled visibility across your code repositories, analyzing commits directly against developer security proficiency. With policy gates, Trust Agent enables you to apply governance at the commit level, with policies to ensure code contributors have the secure code knowledge you require for your business-critical applications. Download our one-pager today to learn how SCW Trust Agent can help you strengthen your security posture, optimize your development lifecycle, and significantly reduce vulnerabilities.

Learn More
Security Teams
Engineering Teams
No items found.
This is some text inside of a div block.
Video
downloads
June 28, 2024
June 28, 2024

SCW Trust Score - The best way to build, measure, and optimize your security program

Learn more about Secure Code Warrior Trust Score, the best way to build, measure and optimize your security program.

Learn More
Security Teams
Learning
This is some text inside of a div block.
One Pager
downloads
April 26, 2024
April 26, 2024

Trust Score by Secure Code Warrior

Discover SCW Trust Score, an industry-first benchmark to help measure your security program's effectiveness. Benchmark against industry peers, optimize your security posture, and drive data-driven decisions for enhanced software security.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Whitepaper
downloads
April 26, 2024
April 26, 2024

Preparing for PCI-DSS 4.0 Compliance

Evaluate your software security infrastructure to support PCI-DSS requirements

Learn More
Security Teams
Learning
This is some text inside of a div block.
Guide
downloads
April 5, 2024
April 5, 2024

The ultimate guide to security trends in financial services

Financial services institutions face an array of challenges that hinge on their ability to make efficient, effective use of technology in a fast-evolving financial world. Organizations are operating in a time of rapid changes—both internally and across the industry—in a highly competitive, cloud-based business environment. In pursuing their ongoing digital transformations, for example, organizations are working to get around the organizational friction that hinders investments into new technologies, such as artificial intelligence, that could accelerate payment processes and other procedures.

Learn More
No items found.
Learning
This is some text inside of a div block.
Whitepaper
downloads
March 7, 2024
March 7, 2024

PCI DSS 4.0 Unraveled

This guide offers practical strategies to engage development teams in PCI DSS 4.0 compliance. It outlines the modern developer's requirements for compliance, strategies for security professionals and development managers to collaborate on developer-focused security programs, and step-by-step advice on effective training initiatives to mitigate vulnerabilities permanently.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Infographic
downloads
February 1, 2024
February 1, 2024

ROI of Secure Code Learning

Explore the long-term ROI of secure coding education. Learn how investing in agile, proactive learning strategies enhances security and offers cost-effective protection against today's cyber threats.

Learn More
Learning & Development
Learning
This is some text inside of a div block.
Whitepaper
downloads
January 30, 2024
January 30, 2024

Why developers need security skills to effectively navigate AI development tools

The promise of artificial intelligence writing complex code at the touch of a button is intriguing, but the reality is that AI will need a lot of help from human developers to craft truly secure and reliable code.

Learn More
Engineering Teams
No items found.
This is some text inside of a div block.
Infographic
downloads
January 29, 2024
January 29, 2024

Top 10 predictions for 2024

Check out what SCW experts are predicting in the world of cybersecurity and software security in 2024.

Learn More
Learning & Development
Learning
This is some text inside of a div block.
Whitepaper
downloads
November 30, 2023
November 30, 2023

Agile learning platforms: ROI of developer-driven security

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Whitepaper
downloads
September 12, 2023
September 12, 2023

Forge your fortress: Six essential pillars of developer enablement in software security

In this white paper, security expert and Secure Code Warrior CTO & Co-Founder Matias Madou, Ph.D. will discuss:The six pillars you need to roll out effective security education and enablement for your development cohort. Lessons learned from ten executives implementing security programs at the enterprise level, and common pitfalls to avoid on your road to success.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Video
downloads
September 1, 2023
September 1, 2023

The Agile Learning Platform

Empower your development team with Secure Code Warrior, the agile learning platform designed to tackle the evolving challenges of application security. Stay ahead in the battle against security breaches and regulatory complexities with our industry-leading, up-to-date content, ensuring a proactive and engaging approach to secure code education.

Learn More
No items found.
No items found.
This is some text inside of a div block.
eBook
downloads
August 14, 2023
August 14, 2023

OWASP Top 10 API 2023: A tactical guide for smart developers

Explore the Latest in API Security. Dive into our 2023 OWASP Top 10 guide. Elevate your coding skills, tackle vulnerabilities, and stay agile in the ever-evolving world of API development. Download now for an insightful journey!

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
eBook
downloads
July 17, 2023
July 17, 2023

The secure code learning blueprint

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Learning
This is some text inside of a div block.
eBook
downloads
December 13, 2022
December 13, 2022

Your handbook to developer-driven security and agile learning

Start shifting left with developer-driven security. This handbook will show you how to engage with developers to upskill and increase their security knowledge, as well as how to go about measuring impact to write more secure code.

Learn More
Engineering Teams
Security Teams
Learning
This is some text inside of a div block.
Whitepaper
downloads
July 28, 2022
July 28, 2022

Software is your colleague: A new perspective to strengthen access control and API security

APIs act like flawed humans; is treating them as such the key to better cybersecurity?

Learn More
Security Teams
Learning
This is some text inside of a div block.
eBook
downloads
July 21, 2022
July 21, 2022

The secure code training blueprint

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Infographic
downloads
July 1, 2022
July 1, 2022

The developer security maturity matrix

Building security maturity in development teams can be approached in stages. Based on our experience with 400+ organizations, we've identified common practices and traits in three different stages of security maturity - defining, adopting, and scaling.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Whitepaper
downloads
July 1, 2022
July 1, 2022

The importance of security maturity in developer teams

By assessing and understanding a development team’s security maturity, organizations can formulate a plan with the right stakeholders, process, and technology to build and support the necessary skills and capabilities.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Infographic
downloads
July 1, 2022
July 1, 2022

Development Team Security Maturity

Security maturity in development teams should be a continuous cycle of improvement with realistic goals along the way. As development teams increase their security maturity, they reduce the amount of rework and minimize risk, while also allowing automation to help create efficiency in the SDLC.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Report
downloads
June 30, 2022
June 30, 2022

Report: The state of developer driven security 2022

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Whitepaper
downloads
June 30, 2022
June 30, 2022

Whitepaper: The challenges (and opportunities) to improve software security

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Brief
downloads
June 20, 2022
June 20, 2022

Brief: A cohesive approach to developer-led security

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Other
downloads
June 16, 2022
June 16, 2022

Security and privacy at Secure Code Warrior

Secure Code Warrior is committed to safeguarding our information assets, and those of our customers, against misuse, abuse or compromise. We adopt and foster a risk-based approach to managing information security, with the goal of consistently implementing appropriate risk management and mitigation measures to address the threat landscape posed to the security of the platform, customer data and information. As Secure Code Warrior continues to succeed as a major player providing services to our customers, we will continue to build security capabilities as part of our security and privacy programs. Read our whitepaper for more information.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Brief
downloads
May 3, 2022
May 3, 2022

Shift left (and achieve compliance) with repeatable secure coding skills

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Brief
downloads
May 3, 2022
May 3, 2022

Defining secure code

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Whitepaper
downloads
February 17, 2022
February 17, 2022

Why you need more than scanning tools to create secure code

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Learning
This is some text inside of a div block.
eBook
downloads
February 14, 2022
February 14, 2022

Your guide to defense against the dark art of zero-day attacks

Zero-day attacks can be the stuff of nightmares, but when an organization commits to using all available tools in their security arsenal towards a preventative strategy, security professionals can sleep a little easier.

Learn More
Learning & Development
Learning
This is some text inside of a div block.
Guide
downloads
January 14, 2022
January 14, 2022

A plan to upskill and engage your developers

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Learning & Development
Learning
This is some text inside of a div block.
Whitepaper
downloads
January 13, 2022
January 13, 2022

The preventative, developer-driven approach to software security

Learn more about how security-aware developers represent a vast and largely untapped resource that can support cyber defenses by consistently standing against modern threats.

Learn More
Security Teams
Learning
This is some text inside of a div block.
eBook
downloads
September 24, 2021
September 24, 2021

OWASP Top 10 API: Strategies for Smart Developers

Download the practical guide to defeating common API security baddies in your code.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Guide
downloads
September 20, 2021
September 20, 2021

How to unify your security and development teams to stand together against security risk

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Whitepaper
downloads
August 4, 2021
August 4, 2021

How AppSec can reduce vulnerabilities and achieve compliance - leaving them free to tackle larger beasts

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Other
downloads
July 18, 2021
July 18, 2021

Shared Assessments SIG Lite Questionnaire

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Other
downloads
July 18, 2021
July 18, 2021

SCW Pen Test Summary

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Other
downloads
July 18, 2021
July 18, 2021

SCW Cyber Insurance Certificate

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
Learning
This is some text inside of a div block.
Whitepaper
downloads
June 3, 2021
June 3, 2021

Cybersecurity Executive Order: A deliberate approach to improve software security with developer skills

While this Executive Order for touches on many aspects of functional cybersecurity, it specifically outlines, for the first time, the impact of developers, and the need for them to have verified security skills and awareness.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Other
downloads
May 18, 2021
May 18, 2021

FSQS-NL Certificate

Secure Code Warrior is now FSQS-NL registered. This registration is an important milestone in our continuous efforts to being compliant with regulations within the financial industry.

Learn More
No items found.
Learning
This is some text inside of a div block.
Other
downloads
May 17, 2021
May 17, 2021

Platform Architecture Diagram

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Engineering Teams
Learning
This is some text inside of a div block.
Other
downloads
May 16, 2021
May 16, 2021

CAIQ Questionnaire

Secure Code Warrior has completed a publicly available Consensus Assessment Initiative Questionnaire (CAIQ), based on the results of our due diligence self-assessment.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Whitepaper
downloads
May 12, 2021
May 12, 2021

The DevSecOps Super Bowl: How security champions can support your team to victory against late-stage vulnerabilities

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Whitepaper
downloads
March 16, 2021
March 16, 2021

Executive Roundtable Whitepaper - Visma & Blue Prism

How has 2020 changed the way we look at software security, an executive roundtable with Visma.

Learn More
No items found.
Learning
This is some text inside of a div block.
Other
downloads
March 9, 2021
March 9, 2021

The women of mimmit koodaa movement dive into secure coding

Mimmit Koodaa (women who code in Finland) tell us about their secure coding experiences.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Other
downloads
March 9, 2021
March 9, 2021

Teams in a global financial institution go head-to-head in secure coding contest.

See how a global financial organization promoted the importance of securing their banking applications across the world. With fun interactive tournaments.

Learn More
No items found.
Learning
This is some text inside of a div block.
Brochure
downloads
February 15, 2021
February 15, 2021

Missions - Experience the impact of poor code in real-world simulations

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
Learning
This is some text inside of a div block.
Brochure
downloads
February 15, 2021
February 15, 2021

Courses - Build Secure Coding Skills and Competency

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Learning & Development
Engineering Teams
Learning
This is some text inside of a div block.
Video
downloads
January 1, 2021
January 1, 2021

A Step-By-Step Guide to Tournaments

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Engineering Teams
Learning
This is some text inside of a div block.
eBook
downloads
January 1, 2021
January 1, 2021

Your Battle Plan to Defeat the OWASP Top 10

The ten most common security vulnerabilities don’t stand a chance against secure development superheroes like you. This free eBook is your ultimate field guide to understanding each infamous entry in the OWASP Top 10 2021, gaining insight into how each bug operates.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Whitepaper
downloads
January 1, 2021
January 1, 2021

Triumph with OWASP and Secure Code Warrior Tournaments - Whitepaper

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Brochure
downloads
January 1, 2021
January 1, 2021

Tournaments - Build organizational awareness and developer engagement, making secure coding top of mind

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
eBook
downloads
January 1, 2021
January 1, 2021

The Infamous 8: Infrastructure as Code Vulnerabilities to Find and Fix

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Whitepaper
downloads
January 1, 2021
January 1, 2021

The Five-Step Road to DevSecOps Success: How AppSec Professionals Can Thrive in Their Dream Team

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Other
downloads
January 1, 2021
January 1, 2021

The Fastest and Easiest Way to Improve Your Software Security Program

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Guide
downloads
January 1, 2021
January 1, 2021

The Creative CISO's Guide to Transforming Their Security Program

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
Learning
This is some text inside of a div block.
Other
downloads
January 1, 2021
January 1, 2021

Introduction to Secure Code Warrior

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Whitepaper
downloads
January 1, 2021
January 1, 2021

Empowering developers to write secure code

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Brochure
downloads
January 1, 2021
January 1, 2021

Empower developers to be the first line of defense and grow your organization's security posture

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Brochure
downloads
January 1, 2021
January 1, 2021

Assessments - Benchmark the secure coding skills of your developers, and build your security posture.

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Guide
downloads
January 1, 2021
January 1, 2021

AppSec Checklist

Download the AppSec checklist and see if you’re in need of a security lifeline.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
eBook
downloads
January 1, 2021
January 1, 2021

6 Critical Steps Before You Roll Out a Security Uplift Program

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Other
downloads
January 1, 2021
January 1, 2021

2019 AppSec Trend Report

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Engineering Teams
Security Teams
Learning
This is some text inside of a div block.
No resources found. Try another search!