Conference
|
Nov 5, 2026
OWASP Global AppSec USA
Register
Conference
|
Oct 29, 2026
OWASP LASCON
Register
Conference
|
Sep 24, 2026
Gartner Security & Risk Management Summit 2026
Register
Blog
|
Aug 24, 2026
Enabler 7: Developer Recognition
read more
Blog
|
Jul 29, 2026
Named in the Gartner® Hype Cycle™ for Application Security 2026
read more
Blog
|
Jul 21, 2026
Are you a CISO or Engineering Leader worried about the Security and Cost of LLM code generation?
read more
Case Study
|
Jan 6, 2026
Kamer van Koophandel: Developer-Driven Security at Scale
read more
Browser window icon with bold letters KVK and two blue horizontal lines below on a gradient blue background.
Case Study
|
Oct 8, 2025
Going for Gold: Soaring Secure Code Standards at Paysafe
read more
Browser window with Paysafe logo and three light blue bullet points on a blue gradient background.
Case Study
|
Nov 22, 2023
One Culture of Security: How Sage Built Their Champions Program
read more
News Article
|
Aug 27, 2026
Forbes: A New Frontier: NSA Proposes “Security By Design” Considerations For AI Enablement
read more
Media Release
|
Aug 21, 2026
Techpartner.news: Secure Code Warrior introduces framework to govern AI use in software development
read more
News Article
|
Aug 19, 2026
DevOps.com: Are LLMs Equally Good (or Bad) at Building Secure Software?
read more
eBook
|
Jul 21, 2026
Which AI Model Codes Most Securely?
read more
One Pager
|
Jul 7, 2026
Citizen AI by Secure Code Warrior
read more
Whitepaper
|
Jun 23, 2026
Understand how AI is transforming software development—and how security must evolve with it.
read more
Resource library

Insights from experts shaping secure development

Access expert content on secure coding, AI governance, and software risk management.

Filters
clear
Showing 0 of 100
By Category
By Role
By Product
Button Text
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
Webinar
events-webinars
July 30, 2026
September 9, 2026

AI in the SDLC: Separating the Hype from the Security Reality

AI in the SDLC, presented in partnership with KnowBe4: Kawin Boonyapredee (CISO Advisor, KnowBe4) and Pieter Danhieux (CEO, SCW) unpack AI code security risks.

Register
This is some text inside of a div block.
AI Governance
Security Teams
Learning & Development
AI Software Governance
Trust Agent
Conference
events-webinars
July 21, 2026
September 22, 2026

German OWASP Day 2026

Secure Code Warrior is sponsoring German OWASP Day 2026, bringing together AppSec practitioners to explore best practices in secure development, operations, and testing. SCW will share how to build security into every stage of the development lifecycle.

Register
This is some text inside of a div block.
C-Suite
Engineering Teams
AI Software Governance
Conference
events-webinars
July 21, 2026
August 20, 2026

AdelaideSEC

Secure Code Warrior is hosting a secure coding tournament at AdelaideSEC. Developers and security professionals compete hands-on to identify and fix real-world vulnerabilities, sharpening skills and connecting with the local tech community.

Event ended
This is some text inside of a div block.
C-Suite
Learning
AI Software Governance
Conference
events-webinars
July 21, 2026
July 31, 2026

Black Hat USA 26

Secure Code Warrior is exhibiting at Black Hat USA 2026 in Las Vegas. CEO Pieter Danhieux, Chief Customer Officer Fatemah Beydoun, and Chief Product and Technology Officer Alex Bullen will be on-site — reach out to book a meeting.

Event ended
This is some text inside of a div block.
Learning & Development
Learning
Conference
events-webinars
July 14, 2026
July 13, 2026

FS-ISAC APAC Summit

Can't wait to sponsor the FS-ISAC APAC Summit on July 14–15, 2026, in Singapore! Stop by Booth #8 to connect with our team, and don't miss Pieter Danhieux on July 14 at 1:15 PM in Heliconia 3401, revealing groundbreaking research on how AI coding models stack up against 10,000 human developers and what it means for security in AI-assisted development. See you there!

Event ended
This is some text inside of a div block.
No items found.
No items found.
Conference
events-webinars
July 10, 2026
September 23, 2026

Gartner Security & Risk Management Summit 2026

Excited to sponsor the Gartner Security & Risk Management Summit in London, September 22–24, 2026! Come connect with our team to see how Secure Code Warrior is helping organizations govern AI-generated code and build lasting security skills across the SDLC. See you there!

Register
This is some text inside of a div block.
Engineering Teams
Security Teams
AI Software Governance
Conference
events-webinars
June 26, 2026
November 4, 2026

OWASP Global AppSec USA

Proud to be a Silver Sponsor of OWASP Global AppSec USA 2026, celebrating its 25th anniversary on November 5–6, 2026, at the Hyatt Regency in San Francisco! Join us and 800+ application security professionals for sessions on AI security, threat modeling, a Capture the Flag competition, the OWASP Projects Demo Room, and exclusive networking receptions. Come find us there and let's connect!

Register
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
June 23, 2026
June 22, 2026

Customer Showcase Webinar: Danske Bank

Danske Bank shares how they built a thriving secure coding culture — key strategies, real results, and lessons you can replicate. Watch on demand.

Watch on demand
This is some text inside of a div block.
No items found.
No items found.
Tradeshow
events-webinars
April 21, 2026
May 31, 2026

Gartner Security & Risk Management Summit

Join us at Gartner Security & Risk Management Summit, from June 1-3, 2026, in National Harbor, Maryland. We’re excited to join CISOs and cybersecurity leaders to gain expert insights on AI, risk resilience, and evolving threat landscapes to strengthen their organization's security posture. Don’t forget to connect and stop by our booth!

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
March 25, 2026
April 29, 2026

From Shadow AI to AI Software Governance: Regaining Visibility Across Your Codebase

Join Secure Code Warrior’s Matias Madou, CTO, and Tamim Noorzad, Director of Product, to learn how AI Software Governance provides the visibility and insight needed to manage AI-assisted development at scale.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Conference
events-webinars
February 26, 2026
June 21, 2026

OWASP Global AppSec EU

Can’t wait to sponsor OWASP Global AppSec EU Conference, marking its 25th anniversary from June 22–26, 2026, at the Austria Center in Vienna. Join us and over 800 other experts to explore the vibrant exhibitor hall, participate in the Meet the Mentor program, and earn CPE credits, all while enjoying exclusive networking receptions. Don’t forget to connect and stop by our booth!

Event ended
This is some text inside of a div block.
No items found.
No items found.
Conference
events-webinars
February 26, 2026
April 10, 2026

OWASP BASC

We are excited to sponsor OWASP BASC on April 11 in Boston, MA. This is the premier application security conference that brings together security professionals, developers, and researchers to advance the field of application security in Boston.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Conference
events-webinars
February 26, 2026
April 28, 2026

OT Summit Madrid

Join us at the OpenText Summit Madrid 2026, an in‑person event designed to show how AI, cloud, and secure information management are powering a new generation of intelligent enterprises.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Conference
events-webinars
February 26, 2026
April 27, 2026

Cyber Security Summit

The Cyber Security Summit takes place on April 28th and 29th and is a premier conference that assembles top-tier experts, innovators, and exhibitors to showcase the latest trends, resilient IT strategies, and industry best practices. Don’t miss this opportunity to stop by our booth and connect with us!

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
February 23, 2026
March 17, 2026

Developer Security Proficiency: Accelerating Vulnerability Remediation with Integrated AST and Secure Developer Upskilling

Stop just finding vulnerabilities and start fixing them for good. Detecting a bug is only half the battle. To achieve true Secure by Design, security insights must translate into fast, effective remediation. Join experts Eric Johnson from Secure Code Warrior and Steven Zimmerman from Black Duck on March 18 to learn how to bridge the gap between detection and developer upskilling.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Tradeshow
events-webinars
February 13, 2026
March 22, 2026

Tech Council Parliamentary Innovation Showcase

A flagship event of the Tech Council of Australia (TCA), the Parliamentary Innovation Showcase 2026 offers a fantastic opportunity for decision-makers, industry leaders, academics, and tech enthusiasts to explore cutting-edge technologies, exchange ideas, and gain insight into the future of research, investment, and innovation.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 12, 2026
January 27, 2026

Product Security Virtual Summit

Secure Code Warrior is proud to partner with Cycode for this year’s Product Security Virtual Summit on January 28th. We’re diving into the future of secure software in the AI era and showing how to turn security alerts into developer superpowers.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Hosted Event
events-webinars
December 22, 2025
January 21, 2026

Phishapalooza

SCW is honored to attend the 18th annual Phishapalooza to support the American Cancer Society. We look forward to connecting with the local cybersecurity community for a day of ice fishing and fundraising in the Twin Cities. Join us as we partner with GuidePoint Security to help drive impactful donations for this great cause.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Conference
events-webinars
December 22, 2025
October 28, 2026

OWASP LASCON

We are proud to be a Gold Sponsor for OWASP LASCON 2026 in Austin, TX! Join us at the Norris Conference Center as we gather with over 400 web developers and security professionals to share cutting-edge ideas in application security.

Register
This is some text inside of a div block.
No items found.
No items found.
Tournaments
events-webinars
December 22, 2025
February 18, 2026

New York Secure Code Showdown

SCW, OWASP and AWS invite you to improve your skills at the New York Secure Code Showdown on Thursday, February 19, 2026, from 11 am to 4 pm EST. This tournament challenges you to identify and fix vulnerabilities across your choice of major software languages. It’s a great way to master secure coding foundations while competing against your peers!

Event ended
This is some text inside of a div block.
No items found.
No items found.
Tournaments
events-webinars
December 22, 2025
May 22, 2026

Gold Coast BSides

We are excited to host a secure coding tournament at BSides Goldie! Join us on the Gold Coast Australia for a hands-on competition where you can test your ability to identify and fix real-world vulnerabilities. Whether you are a seasoned developer or a security newcomer, this is a fantastic opportunity to collaborate, sharpen your skills, and help build a more secure local tech community.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Tournaments
events-webinars
December 22, 2025
August 27, 2026

BSides Frankfurt

We are excited to host a secure coding tournament at BSides Frankfurt! Join us on the Goethe-Universität Frankfurt campus for a hands-on competition where you can test your ability to identify and fix real-world vulnerabilities. Whether you are a seasoned developer or a security newcomer, this is a fantastic opportunity to collaborate, sharpen your skills, and help build a more secure local tech community.

Register
This is some text inside of a div block.
No items found.
No items found.
Conference
events-webinars
December 4, 2025
March 22, 2026

RSA Conference

We’re heading San Francisco to the RSA Conference 2026 to discuss. We help organizations empower developers with the skills to write secure code from the start. Join us at booth #250 in the South Expo Hall to see how we can build a community of security-driven developers in your organization.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Conference
events-webinars
December 4, 2025
April 12, 2026

FS-ISAC FinCyber Today Canada

We are ready to discuss developer risk management at FS-ISAC FinCyber Today Canada. We help financial institutions mitigate application risk by empowering their developers with secure code learning. Join us at our booth in the Solutions Hall to see how we can strengthen your security posture.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
October 22, 2025
October 21, 2025

Finding Your Developers

Curriculum and Onboarding Manager Katelynd Trinidad walks through different methods for locating code contributors at your organization to help ensure they receive secure code training.

Watch on demand
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
September 29, 2025
September 28, 2025

The Power of Brand in AppSec DevSec DevSecOps (What's in an Acronym!?)

In AppSec, lasting program impact demands more than just tech—it needs a strong brand. A powerful identity ensures your initiatives resonate and drive sustained engagement within your developer community.

Watch on demand
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
September 25, 2025
September 24, 2025

The Power Of Brand in AppSec, DevSec, DevSecOps (what is an acronym?!)

In the world of AppSec, a strong brand is essential for lasting program impact. Jim Loughran, Principal Consultant at Secure Code Warrior, highlights how a powerful program identity can bridge the gap between security and engineering, fostering developer buy-in and sustained engagement. Join him to learn how to create and leverage a brand to ensure your secure coding initiatives truly shine, turning a great program into a great success story.

Watch on demand
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
July 16, 2025
July 29, 2025

Vibe Coding: Practical Guide to Updating Your AppSec Strategy for AI

Watch on-demand to learn how to empower AppSec managers to become AI enablers, rather than blockers, through a practical, training-first approach. We'll show you how to leverage Secure Code Warrior (SCW) to strategically update your AppSec strategy for the age of AI coding assistants.

Watch on demand
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
July 1, 2025
August 13, 2025

The Future of Cyber Security Virtual Conference

The Future Of Cyber Security Conference series aims to help businesses to stay one step ahead of attackers through a number of insightful sessions not available at any other security conference. Can’t wait to virtually meet with you!

Event ended
This is some text inside of a div block.
No items found.
No items found.
Conference
events-webinars
July 1, 2025
September 29, 2025

SecTor

Come visit our booth #336 at SecTor 2025 in Toronto at the Metro Toronto Convention Centre! Us along with other security professionals will be sharing our latest research and techniques on underground threats and corporate defenses.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Conference
events-webinars
July 1, 2025
September 1, 2025

OWASP New Zealand Day

We are excited to attend OWASP New Zealand Day on the University of Auckland's campus! This conference is all about web and application security, with a mission to help Kiwi developers build more secure applications by focusing on robust architecture and development techniques. Be sure to visit our booth and connect with us to discuss our Developer Management Platform!

Event ended
This is some text inside of a div block.
No items found.
No items found.
Tradeshow
events-webinars
July 1, 2025
November 2, 2025

OWASP Global AppSec 2025 USA

Come visit us at our Expo Space at The Marriott Marquis in downtown Washington, DC! You'll have the chance to connect with us and over 800 security experts who share a passion for all things security.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Conference
events-webinars
July 1, 2025
December 1, 2025

OWASP BeNeLux Days

Visit our booth at OWASP BeNeLux Days happening in Mechelen, Belgium! This event brings you technical talks from experts in security, DevOps, and cloud, alongside hands-on training in top security areas. You'll also hear from industry leaders through keynote speeches, explore the latest security technology at vendor booths, and dive into activities like Capture The Flag and security tool training.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Conference
events-webinars
July 1, 2025
August 19, 2025

Melbourne AppSec & DevSecOps Summit

Get ready for an exciting day of insights and networking at the Melbourne AppSec & DevSecOps Summit! We can't wait to connect with security and development leaders like you, share ideas, and explore the latest trends in application security and DevSecOps. While you're there, let's schedule a brief meeting to discuss how our solutions can enhance your developer management strategies.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Conference
events-webinars
July 1, 2025
June 30, 2025

FS-ISAC Fall Summit

Visit us at FS-ISAC Fall Americas Summit for our Breakfast on Tuesday October 7, 8:00am - at the Catering Sponsor Table to explore how secure by design strategies and developer-focused risk management are transforming cybersecurity.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Conference
events-webinars
July 1, 2025
November 11, 2025

CISO Inspired Summit US

Join us at the CISO Inspired Summit New York 2025! This is your chance to connect with cybersecurity leaders, dive into proactive defense strategies, and build resilient security frameworks to confidently navigate today's evolving digital landscape.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Conference
events-webinars
July 1, 2025
November 26, 2025

CISO Inspired Summit UK

This November, join us at the CISO Inspired Summit UK 2025! Connect with fellow cybersecurity leaders to tackle rising threats, strengthen your digital defenses, and build robust strategies for business resilience in today's rapidly evolving cyber landscape.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Conference
events-webinars
July 1, 2025
August 15, 2025

BSides Bournemouth

BSides Bournemouth is a community-driven cybersecurity conference set to take place on August 16, at the Royal Bath Hotel in Bournemouth, UK. Come join us and other great sponsors like JP Morgan Chase for a day of insightful talks, networking and hands-on activities.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Tradeshow
events-webinars
July 1, 2025
August 1, 2025

Black Hat USA

Join our executives at Black Hat USA at the Mandalay Bay in Las Vegas, NV! They are very excited to talk about AI/LLM secure code risk & ROI of skilled developers!

Event ended
This is some text inside of a div block.
No items found.
No items found.
Tradeshow
events-webinars
May 2, 2025
May 25, 2025

OWASP Global AppSec EU 2025

Visit us at Booth #G08 at OWASP Global AppSec EU to discover how secure by design principles and effective developer risk management are shaping the next generation of cybersecurity.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Conference
events-webinars
May 2, 2025
May 19, 2025

FS-ISAC EMEA Summit

Visit us at FS-ISAC EMEA Summit for our Breakfast on May 21, 8:00am - at the Catering Sponsor Table to explore how secure by design strategies and developer-focused risk management are transforming cybersecurity.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Conference
events-webinars
May 2, 2025
May 13, 2025

Cybersecurity Summit, Hamburg

We’re excited to connect with decision-makers, and innovators at the Cybersecurity Summit to discuss how proactive secure coding can accelerate software development while improving security posture.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Conference
events-webinars
March 17, 2025
April 9, 2025

OpenText Summit Madrid

Secure Code Warrior is proud to sponsor OpenText Summit Madrid 2025 on April 10! This exclusive event brings together leaders to explore how cloud, security, and AI are transforming information management. With tailored sessions across Explore, Transform, and Imagine, attendees will gain insights, best practices, and real-world success stories.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Conference
events-webinars
March 17, 2025
April 2, 2025

Australian Cyber Exchange

On April 3rd, our CEO, Pieter Danhieux, will speak at ACE25, the inaugural Australian Cyber Exchange, uniting government, private sector, and academia to strengthen Australia’s cyber capabilities. With a focus on innovation, sovereignty, and growth, ACE25 will feature panels, showcases, and pitch sessions tackling key cybersecurity challenges.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Conference
events-webinars
February 18, 2025
March 25, 2025

The Future Of Cyber Security London

Secure Code Warrior will be attending this full-day conference that brings together top cybersecurity experts to tackle the evolving threats in our digital world—from ransomware and botnets to crypto-hacking and cybercrime-as-a-service. Looking forward to insightful discussions and cutting-edge strategies!

Event ended
This is some text inside of a div block.
No items found.
No items found.
Conference
events-webinars
February 18, 2025
March 13, 2025

OWASP SnowFROC

Join us at SnowFROC '25, Denver’s premier application security conference! This one-day event, drawing around 400 attendees, features hands-on training, top-notch food, and exceptional networking. Happening Friday, March 14, 2025, with expert-led presentations and workshops covering diverse cybersecurity topics.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Tournaments
events-webinars
February 18, 2025
March 13, 2025

BSides Limburg

Secure Code Warrior will be hosting a tournament at BSides Limburg this year on March 14! BSides is a community-driven cybersecurity event that goes beyond traditional conferences—fostering deep discussions, hands-on demos, and collaboration in an intimate setting. It’s where the next big ideas in security take shape!

Event ended
This is some text inside of a div block.
No items found.
No items found.
Tournaments
events-webinars
February 18, 2025
March 5, 2025

2nd Annual 2025 OWASP Maine Secure Coding Tournament

OWASP Maine partnered with Secure Code Warrior will be hosting the 2nd annual OWASP Maine Secure Coding Tournament! This will be an in-person meetup where we welcome all software developers and appsec professionals from entry-level to principal. Bring your laptop and your secure coding wits and compete against your peers to be crowned the most secure coder in the state of Maine for 2025!

Event ended
This is some text inside of a div block.
No items found.
No items found.
Conference
events-webinars
January 10, 2025
January 19, 2025

NDC Security 2025

Dive into cutting-edge topics, hands-on workshops, and networking with peers in the heart of Oslo. Don’t miss this chance to elevate your knowledge and shape the future of security. Visit us at spot H to learn how Secure Code Warriors empowers developers to improve productivity and code security!

Event ended
This is some text inside of a div block.
No items found.
No items found.
Conference
events-webinars
December 18, 2024
April 27, 2025

RSAConference 2025

Visit us at Booth #2353 at RSAC 2025 to explore innovative solutions and join the conversation shaping the future of cybersecurity.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Conference
events-webinars
December 18, 2024
January 21, 2025

DevSecOps360 London

Join us Wednesday 22nd January 2025 at the IBM Innovation Studio London for an insightful event showcasing our latest integration vision for DevSecOps within the partner ecosystem.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Conference
events-webinars
November 25, 2024
December 8, 2024

Black Hat Europe

Join us at Black Hat Europe at the ExCeL in London

Event ended
This is some text inside of a div block.
No items found.
No items found.
Conference
events-webinars
November 7, 2024
November 27, 2024

OWASP Benelux

SCW is proud to sponsor this year’s conference. Stop by our booth and learn about how SCW is helping companies master the OWASP Top 10 and reduce security risk for organizations all over Europe.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Conference
events-webinars
November 7, 2024
November 11, 2024

German OWASP Day 2024

Join Secure Code Warrior in Liepzig, Germany for great insights from OWASP, insights into the direction of software security in 2025 and fun networking.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Conference
events-webinars
November 7, 2024
November 11, 2024

DevSecOps 360 Toronto

Join SCW, IBM, Black Duck, Iruis Risk and Contrast to learn how your organization can accelerate development while minimizing vulnerabilities, delivering clear benefits to both business and security teams.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Tradeshow
events-webinars
November 7, 2024
November 26, 2024

Cloud & Cyber Security Expo, Paris

Secure Code Warrior is thrilled to be a silver sponsor for the premiere Cybersecurity event in France. Looking forward to seeing you there.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Conference
events-webinars
October 11, 2024
November 17, 2024

OpenText World 2024

Join Secure Code Warrior and OpenText to learn how companies around the world are leveraging SAST findings to create an agile learning experience for secure coding.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Conference
events-webinars
October 9, 2024
October 21, 2024

DevSecOps 360 London

Join SCW, IBM, BlackDuck and IruisRisk for an insightful event showcasing our latest integrations and learn how companies have realized real business and productivity gains for their organisations.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Event
events-webinars
October 9, 2024
October 7, 2024

AppSecDay Stockholm

Join Secure Code Warrior, OpenText and Sonatype for a discussion on navigating Open Source, compliance with NIS2, AI & DevSecOps

Event ended
This is some text inside of a div block.
No items found.
No items found.
Event
events-webinars
September 11, 2024
September 22, 2024

DevSecOps 360 Milan

Join us as we showcase how automation can drive faster, more secure development. A long with our partners IBM Cyber Security Services, Synopsys, and IriusRisk, we’ll dive into practical solutions to reduce vulnerabilities and keep your teams competitive.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Event
events-webinars
September 11, 2024
September 19, 2024

Charity Pro-Am Scramble

Join Secure Code Warrior and our partner Arctiq for the Charity Pro-Am Scramble at Golf Le Diable in Mont Tremblant. Together, we’ll tee off for a great cause, supporting KidSport Québec to help more kids get involved in team sports and build their future through the power of play.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Event
events-webinars
September 11, 2024
September 23, 2024

AppSec Day Utrecht

As application security evolves, organizations are increasingly integrating AI solutions for real-time threat detection and prevention. Join Secure Code Warrior and our partners Opentext and Sonatype!

Event ended
This is some text inside of a div block.
No items found.
No items found.
Event
events-webinars
August 23, 2024
September 8, 2024

SF 49er Red Zone Experience

Join SCW and Guidepoint for amazing football, great tailgate food and engaging conversations on software security and how to avoid being “tackled” by security vulnerabilities.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
August 23, 2024
August 28, 2024

SCW Trust Agent/Q3 Product Roadmap Webinar

Join Patrick Collins, Secure Code Warrior’s Chief Product Officer, as he highlights and demos the brand-new SCW Trust Agent product offering and dives into the product roadmap for the coming months.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Conference
events-webinars
August 23, 2024
September 22, 2024

OWASP 2024 Global AppSec

The Global AppSec US Conference should be action-packed with new trends and topics discussed. Join us at our booth in San Francisco for a demo on our latest product offerings.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Hosted Event
events-webinars
June 13, 2024
June 12, 2024

Transformation DevSecOps

DevSecOps enables the identification of security issues earlier in the development life cycle—surfaced directly to developers who can have the greatest impact.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Tradeshow
events-webinars
June 6, 2024
June 18, 2024

Cybersecurity Summit

The leading experts from mid-sized to large corporations, will meet with innovative providers of digital solutions for Cybersecurity in business. Learn from experts on our stages and meet the leading providers in the trade show area.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Tradeshow
events-webinars
June 6, 2024
August 2, 2024

Blackhat USA

Now in its 27th year, Black Hat USA returns to the Mandalay Bay Convention Center in Las Vegas with a 6-day program. The event will open with four days of specialized cybersecurity Trainings (August 3-8), with courses for all skill levels. The two-day main conference (August 7-8) will feature more than 100 selected Briefings, dozens of open-source tool demos in Arsenal, a robust Business Hall, networking and social events, and much more.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Tradeshow
events-webinars
June 6, 2024
September 11, 2024

AppSec & DevSecOps Summit

Unravel, unite, and uplift your security strategies at the Melbourne AppSec and DevSecOps Summit 2024. Boost your security prowess and be at the forefront of the application and cloud security revolution.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
April 30, 2024
June 11, 2024

Benchmark the Current State of your Security Program with SCW Trust Score

In today's rapidly evolving security landscape, understanding where your security program stands is paramount. Join, Secure Code Warrior Chief Technology Officer & Co-founder, Matias Madou, to discuss an industry leading innovation in our security program benchmarking: SCW Trust Score.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Tradeshow
events-webinars
April 17, 2024
May 22, 2024

Nordic IT Security

The most reputable cyber security summit in Scandinavia, Nordic IT Security, has been around for 17 years acting as a steering wheel for navigation through the Nordic’s “cybersecurity watch-out” scheme.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Hosted Event
events-webinars
April 10, 2024
May 6, 2024

Belgian Coffee Hour

For those RSAC attendees from Belgium, we are hosting a special "Last Coffee of the Day" on Tuesday, March 7 at 3:00 p.m. Join our resident Belgians, CEO Pieter Danhieux and CTO Matias Madou, and other executives from Secure Code Warrior as we wind down another successful day of RSAC with great coffee and delicious bites.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
March 21, 2024
March 20, 2024

Taking charge of vulnerability alerts

Today’s threat landscape is increasingly unmanageable for many companies as they struggle with an application security approach built to react rather than take charge.

Watch on demand
This is some text inside of a div block.
No items found.
No items found.
Hosted Event
events-webinars
March 7, 2024
May 5, 2024

SCW Coffee Shop @ RSAC 2024

The SCW Coffee Shop is back for its 4th year! Join us for coffee and learn how to brew good security into your applications!

Event ended
This is some text inside of a div block.
No items found.
No items found.
Tradeshow
events-webinars
March 7, 2024
May 5, 2024

RSAConference 2024

The art of possibility is here! Stop by Booth 5179 to see how you can reduce your vulnerabilities by 53%

Event ended
This is some text inside of a div block.
No items found.
No items found.
Event
events-webinars
March 7, 2024
May 5, 2024

Meet with SCW Leadership @ RSAC24

Our co-founders and executives will be at Bluestone Lane Union Square Coffee Shop from May 6th through May 7th sipping on one of San Francisco’s best coffee and taking meetings.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Panel Session
events-webinars
March 7, 2024
May 5, 2024

In developers and AI, we trust

SCW Coffee Shop @RSAC24 presents: Join Matias Madou, our cofounder & CTO, and industry experts as they talk about the challenges and strategies for measuring security skills within the development cohort

Event ended
This is some text inside of a div block.
No items found.
No items found.
Event
events-webinars
March 7, 2024
May 6, 2024

How to quantify the effectiveness of your secure coding program with SCW Trust Score

SCW Coffee Shop @RSAC24 presents: Join Patrick Collins, CTPO, and Junie Dinda, CMO, as they dive into an in-depth session of the new SCW Trust Score, an industry-first benchmark reshaping the landscape of secure coding programs.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Partner Workshop
events-webinars
March 7, 2024
March 11, 2024

Carolina Hurricanes with GuidePoint

Join us and our partners from GuidePoint at the hockey rink for an exciting game and some AppSec talks!

Event ended
This is some text inside of a div block.
No items found.
No items found.
Partner Happy Hour
events-webinars
March 7, 2024
March 19, 2024

Bay Area Vendor Happy Hour

More information soon.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Panel Session
events-webinars
March 7, 2024
May 6, 2024

Women Leaders in Security

SCW Coffee Shop @RSAC24 presents: Join Fatemah Beydoun, cofounder & CCO, along a panel of women leaders in the industry as they discuss how to shift left to course correct the gender gap in security. Moderated by our own, Holly Whalen, VP Channel Partners.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Partner Workshop
events-webinars
February 21, 2024
February 20, 2024

From Compliance Checkboxes to Risk Management: Unleashing the True Potential of SAST

Explore innovative strategies for maximizing the effectiveness of your SAST tools and implement a developer-driven security program.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Event
events-webinars
January 19, 2024
March 5, 2024

secIT - Hannover 2024

Schedule time to meet or stop by Booth 14 during secIT!

Event ended
This is some text inside of a div block.
No items found.
No items found.
Partner Workshop
events-webinars
January 19, 2024
February 12, 2024

Hands on Application Security Workshop

In partnership with AWS, Contrast Security, and Artiq, we bring you a interactive hands-on AppSec workshop

Event ended
This is some text inside of a div block.
No items found.
No items found.
Partner Happy Hour
events-webinars
January 19, 2024
February 12, 2024

Virtual Wine Tasting - Ohio

Join us, GuidePoint, and other partners for a Virtual Wine Tasting with Silver Oaks Winery.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Partner Workshop
events-webinars
January 12, 2024
January 28, 2024

DevSecOps 360 - Riyadh

In partnership with IBM, Synopsys, and IriusRisk, we’ll share our latest integration vision for DevSecOps within the partner ecosystem

Event ended
This is some text inside of a div block.
No items found.
No items found.
Partner Workshop
events-webinars
January 12, 2024
January 22, 2024

DevSecOps 360 - Munich

In partnership with IBM, Synopsys, and IriusRisk, we’ll share our latest integration vision for DevSecOps within the partner ecosystem

Event ended
This is some text inside of a div block.
No items found.
No items found.
Partner Workshop
events-webinars
January 12, 2024
January 30, 2024

DevSecOps 360 - Dubai

In partnership with IBM, Synopsys, and IriusRisk, we’ll share our latest integration vision for DevSecOps within the partner ecosystem

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
August 19, 2022

The evolving role of the AppSec developer

Changes, causes, and considerations for one of the most important roles on your company's security team.

Watch on demand
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
August 29, 2022

Strengthen left: Develop your security muscle

How to help your developers build and release secure software faster.

Watch on demand
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
July 21, 2022

Shifting left for secure by design

Reduce the risks and costs associated with application security by empowering developers to be the first line of defense of your organization.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
March 13, 2022

Shift left security training and vulnerability detection for embedded systems

In this webinar, we consider the challenges organizations face when adopting a security-first approach to development especially within embedded software and how to harness best practices in learning technology and benefit from shifting left to optimize developer secure code training.

Watch on demand
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
March 23, 2021

Secure Coding Virtual Summit

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
September 12, 2022

Saltworks and Secure Code Warrior: Better together

Preaching the gospel of when developer learning and skill-sets go up, code vulnerabilities go down.

Watch on demand
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
March 21, 2022

Join us at the DEVOPS Conference

Come join us at the DEVOPS Conference this March 8-9 for some insightful talks and a chance to participate at the secure coding tournament. Get your free tickets now!

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
March 25, 2021

Is security a developer's problem?

Technology has exploded. And it ALL needs to be secured. Yet, security teams don’t have the manpower to cover all bases in times of rapid technological growth and evolving cybersecurity threats.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
August 9, 2022

Increase software release velocity with holistic, developer-driven security

AWS + Secure Code Warrior on the importance of increasing the quantity and quality of developer code output.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
February 23, 2022

Increase software release velocity with holistic, developer-driven security

We know these times may not suit everyone, so if you'd like to listen to the webinar at a more sociable hour please register and we'll send you a recording. With the rise of security breaches stemming from exploitable software vulnerabilities, organizations must look to minimize th

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
June 23, 2021

How to close the avoidance and remediation gap in open source compliance.

Closing this gap is important to help engineering teams and their leaders better understand the impact of open source software on an organization’s ability to create and deliver risk-free solutions. Hear how our experts tackle software audits.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Webinar
events-webinars
January 11, 2024
August 15, 2022

How to build an AppSec program with a strong foundation

The importance and key approaches to setting a baseline when it comes to strategy development for your AppSec program.

Event ended
This is some text inside of a div block.
No items found.
No items found.
Blog
blog-posts
October 7, 2020
October 7, 2020

Coders Conquer Security OWASP Top 10 API Series - Missing Function Level Access Control

The missing function level access control vulnerability allows users to perform functions that should be restricted, or lets them access resources that should be protected.

Learn More
Learning & Development
Learning
October 7, 2020
Dark room with glowing neon numbers in blue and pink projected on walls and columns.
Blog
blog-posts
October 1, 2020
October 1, 2020

National Cybersecurity Awareness Month: More than a phishing expedition

Every organization can utilize Cybersecurity Awareness Month to refresh their security awareness, and this year, were also launching a new, free app for the coding community!

Learn More
Learning & Development
Learning
October 1, 2020
Blog
blog-posts
September 30, 2020
September 30, 2020

Coders Conquer Security OWASP Top 10 API Series - Lack of Resources and Rate Limiting

This vulnerability occurs when too many requests come in at the same time, and the API does not have enough computing resources to handle those requests. The API can then become unavailable or unresponsive to new requests.

Learn More
No items found.
Learning
September 30, 2020
Blog
blog-posts
September 28, 2020
September 28, 2020

ClickShare Vulnerabilities May Have Been Patched, But They Mask a Much Bigger Problem

Shifting security fixes back towards the development process isn't easy, but is necessary in today's world where even seemingly simple devices like presentation tools are both surprisingly complex, and also networked into everything else.

Learn More
No items found.
Learning
September 28, 2020
Blog
blog-posts
September 23, 2020
September 23, 2020

Coders Conquer Security OWASP Top 10 API Series - Excessive Data Exposure

The actual mechanics behind this vulnerability are similar to others, but excessive data exposure, in this case, is defined as involving legally protected or highly sensitive data.

Learn More
No items found.
Learning
September 23, 2020
Blog
blog-posts
September 16, 2020
September 16, 2020

Coders Conquer Security OWASP Top 10 API Series - Broken Authentication

Authentication often acts as a gateway to both an application and potentially to the rest of a network, so they are tempting targets for attackers. If an authentication process is broken or vulnerable, there is a good chance that attackers will discover that weakness and exploit it.

Learn More
No items found.
Learning
September 16, 2020
Close-up of a book's edge with the phrase 'From the real experts' written on the pages.
Blog
blog-posts
September 10, 2020
September 10, 2020

Expert Interview: Infrastructure as Code with Oscar Quintas

We'd like to shine the spotlight on one of our experts, Oscar Quintas. He's part of our Product Content team, working as a Senior Security Researcher. He's also our resident sorcerer on all things Infrastructure as Code (IaC).

Learn More
Learning & Development
Learning
September 10, 2020
Blog
blog-posts
September 9, 2020
September 9, 2020

Coders Conquer Security OWASP Top 10 API Series - Broken Object Level Authorization

In general, object level authorization checks should be included for every function that accesses a data source using an input from the user, and failure to do so comes at a great risk.

Learn More
No items found.
Learning
September 9, 2020
Blog
blog-posts
August 25, 2020
August 25, 2020

Death by Doki: A new Docker vulnerability with serious bite (and what you can do about it)

Cyberattacks are only getting more frequent, and threats affecting Linux-based infrastructure are becoming more common, with the end goal being an opportunity to crack open a loot chest of sensitive data stored in the cloud.

Learn More
No items found.
Learning
August 25, 2020
Stack of books including Ready Player One, The Hitchhiker’s Guide to the Galaxy, and Armada by Ernest Cline.
Blog
blog-posts
August 3, 2020
August 3, 2020

Is your organization really DevSec-ready? Put it to the test.

With your organization in mind, think about these questions in the context of your role. How would it fare when put to the DevSec test?

Learn More
No items found.
Learning
August 3, 2020
Person stirring a smoking cauldron with a wand, surrounded by candles and open books.
Blog
blog-posts
July 20, 2020
July 20, 2020

Strike first, strike hard: Why curated secure coding courses extend no mercy to cyber threats

A curated course containing the exact modules in which your developers would need to show proficiency will have a potent impact, and allow them to hit the ground running when it comes to security best practices in their day-to-day work.

Learn More
No items found.
Learning
July 20, 2020
Close-up view of a glowing filament inside a clear light bulb against a dark background.
Blog
blog-posts
July 15, 2020
July 15, 2020

Want developers to code with security awareness? Bring the training to them.

We already know there is too much going on in a workday, so what incentive do developers have to schlep off to a classroom, or context-switch to go through five steps to access static theory-based training?

Learn More
No items found.
Learning
July 15, 2020
Blog
blog-posts
July 8, 2020
July 8, 2020

COVID-19 contact tracing: What's the secure coding situation?

The idea behind contact tracing apps is sound. This technology, when functioning well, would ensure hotspots are quickly revealed and comprehensive testing can occur - both essential components of fighting the spread of a contagious virus.

Learn More
Learning & Development
Learning
July 8, 2020
Hand touching a plasma ball with colorful electric streams inside glowing in red and blue hues.
Blog
blog-posts
July 1, 2020
July 1, 2020

Stop disrupting my workflow! How you can get the right security training at the right time

We started to think about what we could do to reduce the barrier to getting training when you need it, and how micro-learning could be implemented into your workflow in a more seamless way.

Learn More
No items found.
Learning
July 1, 2020
Person sitting cross-legged on green rug typing on laptop surrounded by programming and tech books.
Blog
blog-posts
June 22, 2020
June 22, 2020

International Women in Engineering Day: Meet Our Stars

June 23rd is a special entry in the geek calendar, marking International Women in Engineering Day. This is our chance to cast light on the contribution of women to software development.

Learn More
Learning & Development
Learning
June 22, 2020
Blog
blog-posts
June 22, 2020
June 22, 2020

Coders Conquer Security Infrastructure as Code Series - Business Logic

This vulnerability can occur when coders fail to properly implement business logic rules, which could leave their applications vulnerable to different kinds of attacks should a malicious user choose to exploit them.

Learn More
No items found.
Learning
June 22, 2020
Close-up of a light blue metal surface covered with irregular brown rust stains and streaks.
Blog
blog-posts
June 18, 2020
June 18, 2020

Rust is the most-loved programming language for the fifth time. Is it our new security savior?

Rust incorporates known and functional elements from commonly used languages, working to a different philosophy that disposes of complexity, while introducing performance and safety.

Learn More
No items found.
Learning
June 18, 2020
Blog
blog-posts
June 15, 2020
June 15, 2020

Coders Conquer Security Infrastructure as Code Series - Using Components From Untrusted Sources

The vulnerability-inducing behavior that we are going to focus on here is using code from untrusted sources, a seemingly benign practice that is causing big problems.

Learn More
No items found.
Learning
June 15, 2020
Blog
blog-posts
June 9, 2020
June 9, 2020

Cybercriminals Are Attacking Healthcare (But We Can Fight Back)

Healthcare could be the next 'great' cybersecurity battleground, with criminals attacking the very machines that diagnose medical problems, provide treatments and sustain life.

Learn More
Learning & Development
Learning
June 9, 2020
Blog
blog-posts
June 8, 2020
June 8, 2020

Coders Conquer Security Infrastructure as Code Series: Security Misconfiguration - Improper Permissions

Security misconfigurations, especially those of the improper permissions variety, most often happen whenever a developer creates a new user or grants permission for an application as a tool in order to accomplish a task.

Learn More
No items found.
Learning
June 8, 2020
Blog
blog-posts
June 1, 2020
June 1, 2020

Coders Conquer Security Infrastructure as Code Series: Insufficient Transport Layer Protection

At times, applications will also share data with other programs as part of an overall workload. Unless the transport layer is protected, it makes it vulnerable to both outside snooping and unauthorized internal viewing.

Learn More
No items found.
Learning
June 1, 2020
Blog
blog-posts
May 25, 2020
May 25, 2020

Coders Conquer Security Infrastructure as Code Series: Insecure Cryptography

These days, having critical data like passwords, personal information and financial records hashed while at rest is a cornerstone of any cybersecurity defense.

Learn More
No items found.
Learning
May 25, 2020
Room with shelves of vintage televisions and a bicycle parked in front of them.
Blog
blog-posts
May 21, 2020
May 21, 2020

COBOL Application Development Security | Secure Code Warrior

Legacy COBOL, although an older computer language, is still effective to this day. Learn more about COBOL secure application development from Secure Code Warrior.

Learn More
No items found.
Learning
May 21, 2020
Blog
blog-posts
May 18, 2020
May 18, 2020

Coders Conquer Security Infrastructure as Code Series: Plaintext Storage of Passwords

The key to most computer security these days involves passwords. Even if other security methods are employed, like two-factor authentication or biometrics, most organizations still employ password-based security as one element of their protection.

Learn More
No items found.
Learning
May 18, 2020
Blog
blog-posts
May 15, 2020
May 15, 2020

Webinar: Are you ready to put the "Sec" in DevOps?

We must get to a stage where security is seen as a shared responsibility across the entire organization, and throughout the SDLC. This is certainly possible when you commit to a fully-fledged, highly supportive DevSecOps environment.

Learn More
No items found.
Learning
May 15, 2020
Blog
blog-posts
May 11, 2020
May 11, 2020

Coders Conquer Security Infrastructure as Code Series: Missing Function Level Access Control

Without infrastructure-level access control in perfect order, it opens up an entire enterprise to attackers, who can use that vulnerability as their gateway for either unauthorized snooping or a full attack.

Learn More
Learning & Development
Learning
May 11, 2020
Badge with a smiling woman raising her fist and text Coders Conquer Security Share and Learn Series.
Blog
blog-posts
May 4, 2020
May 4, 2020

Coders Conquer Security Infrastructure as Code Series: Disabled Security Features

Attackers will always attempt to find easily exploitable vulnerabilities first and may even use a script to run through common weaknesses. It's not unlike a thief checking all the cars on a street to see if any doors are unlocked, which is a lot easier than smashing a window.

Learn More
No items found.
Learning
May 4, 2020
Close-up of white astronaut figurine holding flag with three blurred astronaut figures behind on black background.
Blog
blog-posts
April 17, 2020
April 17, 2020

Turning boring PCI-DSS compliance into a meaningful exercise for everybody: Part 2 - CISOs and developer awareness

This is part 2 of a mini-series on PCI-DSS compliance within an organization. In this final chapter, we detail how CTOs and CISOs can lead from the top in reducing cyber risk and making the process seamless, successful... and maybe a little fun for developers.

Learn More
No items found.
Learning
April 17, 2020
Five airplanes flying in formation releasing white smoke trails in a curved arc against a blue sky.
Blog
blog-posts
April 16, 2020
April 16, 2020

Turning boring PCI-DSS compliance into a meaningful exercise for everybody: Part 1 - AppSec

This is part 1 of a two-part series on successful PCI-DSS compliance within an organization. In this chapter, we detail how AppSec specialists can work closely with development managers to empower developers, strengthen the SSDLC and get specific outcomes from general legislation.

Learn More
No items found.
Learning
April 16, 2020
Blog
blog-posts
April 6, 2020
April 6, 2020

The future of cybersecurity: What WON'T be happening in the year to come

In our industry, many security experts have started predicting the hot-button issues for the year, but with more than five billion sensitive data records stolen in 2019, we figured it would be more accurate to predict what won't be happening in cybersecurity in the foreseeable future.

Learn More
No items found.
Learning
April 6, 2020
Feet in black sneakers standing on pavement near pink chalk words 'START HERE' inside a drawn box.
Blog
blog-posts
March 25, 2020
March 25, 2020

Shifting left is not enough: Why starting left is your key to software security excellence

Much of the initiative around "shifting left", that is, introducing security much earlier in the development process, simply doesnt move the needle far enough.

Learn More
No items found.
Learning
March 25, 2020
Blog
blog-posts
March 5, 2020
March 5, 2020

DevSecOps in DACH: Key findings from secure coding pilot programs

With the advent of GDPR, as well as a revised strategy following a multi-stage attack that exposed the sensitive data of many public figures - as well as servers in the German federal government - it is clear that cybersecurity awareness and action are front-of-mind for leaders in the DACH region.

Learn More
No items found.
Learning
March 5, 2020
Blue neon sign on dark wood wall reads: Wake up. Kick ass. Repeat.
Blog
blog-posts
February 28, 2020
February 28, 2020

How to Become a Kick-Ass DevSecOps Engineer

The world is starting to move on past Waterfall, Agile, and now DevOps, so what is the next solution? And as a developer, what is your role in keeping pace with these changes in approach?

Learn More
No items found.
Learning
February 28, 2020
Black wall covered with abstract white line drawings of overlapping human faces with varied expressions.
Blog
blog-posts
February 12, 2020
February 12, 2020

The most dangerous software errors of 2019: More evidence of history repeating

Towards the end of last year, the amazing community at MITRE published their list of the CWE Top 25 Most Dangerous Software Errors that affected the world in 2019. And most of it was no surprise.

Learn More
No items found.
Learning
February 12, 2020
Blog
blog-posts
January 28, 2020
January 28, 2020

The growth spurt: Happy 5th birthday, Secure Code Warrior

I could have started this article with all the facts and figures indicating a thriving, hyper-growth startup; they are undeniably impressive and our ongoing company trajectory is strong. However, for me, these numbers don't reflect what I am most proud of in 2019.

Learn More
Learning & Development
Learning
January 28, 2020
Wooden artist mannequin hand model positioned upright against blurred black and white sketches.
Blog
blog-posts
January 1, 2020
January 1, 2020

Why DevOps Implementation is Often Unsuccessful (and How You Can Fix It)

Few companies are truly successful in their DevOps implementation. However, the right support, nurturing and understanding across the business can transform your process.

Learn More
No items found.
Learning
January 1, 2020
Person standing on a hill shining bright flashlight into starry night sky with Milky Way visible.
Blog
blog-posts
December 2, 2019
December 2, 2019

The new NIST guidelines: Why customized training is essential to create secure software

The National Institute of Standards & Technology (NIST) released an updated white paper, detailing several action plans for reducing software vulnerabilities and cyber risk.

Learn More
No items found.
Learning
December 2, 2019
Curved building facade with overlapping triangular metal shades and glass panels under cloudy sky.
Blog
blog-posts
November 21, 2019
November 21, 2019

OWASP AppSec Day 2019: Nurturing Secure Developers

These developer-focused events are among my favorite on the calendar; they provide a humbling reminder of the community that works tirelessly to educate and empower software engineers and specialists to champion security in their work.

Learn More
No items found.
Learning
November 21, 2019
Neon blue light trails glowing in dark parking garage with silhouetted people and columns.
Blog
blog-posts
October 31, 2019
October 31, 2019

Static Vs. Dynamic Cybersecurity Training: Impulsive Compliance, Future Problems

While regulatory initiatives will undoubtedly improve and grow over time, if organizations are already hitting the panic button and leaping into training now, they might just find themselves ill-equipped for the future.

Learn More
No items found.
Learning
October 31, 2019
Aerial view of a nighttime market with rows of vibrant multicolored canopies and bright lights.
Blog
blog-posts
October 16, 2019
October 16, 2019

It takes a village: How community spirit creates more secure developers

There are developers of all types, from all walks of life, and there has always been a sense of community in everything we do.

Learn More
Learning & Development
Learning
October 16, 2019
Curved library shelves filled with colorful books leading along a wooden walkway with metal railing.
Blog
blog-posts
September 30, 2019
September 30, 2019

In-depth security training is raising questions in education

While secure coding needs to become a mandatory component of software engineering at the tertiary level, some universities are leading the charge in providing top-notch training and prioritizing security as part of the development process from the very beginning.p

Learn More
Learning & Development
Learning
September 30, 2019
Graffiti of a girl reaching out toward a red heart-shaped balloon on a gray concrete wall.
Blog
blog-posts
September 24, 2019
September 24, 2019

Women in Security: Spotlight on Fatemah Beydoun

Our VP of Customer Success, Fatemah Beydoun, recently presented her talk, "Mentoring for the future: How we can all do better in fostering female cybersecurity talent" to a very receptive audience. She has been an integral part of driving positive change within the cybersecurity industry.

Learn More
Learning & Development
Learning
September 24, 2019
Blog
blog-posts
September 20, 2019
September 20, 2019

Coders Conquer Security: Share & Learn Series - Insecure Deserialization

Insecure deserialization can happen whenever an application treats data being deserialized as trusted. If a user is able to modify the newly reconstructed data, they can perform all kinds of malicious activities such as code injections, denial of service attacks or elevating their privileges.

Learn More
Learning & Development
Learning
September 20, 2019
Blog
blog-posts
September 11, 2019
September 11, 2019

Contextual, Hands-On Learning: The Supercharged Way to Train Your Brain for Security

It truly boggles the mind that many places still rely on classrooms, dry textbooks and mind-numbing video training to get their best and brightest on-board with new initiatives, especially when there's a far better, more engaging and more valuable way to learn: contextual training.

Learn More
Learning & Development
Learning
September 11, 2019
Hand holding eyeglasses showing a clear view of a street mural with red roses amidst blurred surroundings.
Blog
blog-posts
September 5, 2019
September 5, 2019

Empathy, Gratitude, and Staying Humble: The Foundation of Our Culture

The software security industry isn't exactly known for its warm and fuzzy feelings, whimsical observations and life commentary, but, perhaps as I get older, I find myself reflecting on the impact we can all have in the world.

Learn More
Learning & Development
Learning
September 5, 2019
Blog
blog-posts
September 4, 2019
September 4, 2019

Coders Conquer Security: Share & Learn Series - Sensitive Data Exposure

Sensitive data exposure occurs whenever information that is only meant for authorized viewing is exposed to an unauthorized person in an unencrypted, unprotected, or weakly protected state.

Learn More
Learning & Development
Learning
September 4, 2019
Close-up of an owl with one eye open and the other squinting indoors with blurred background.
Blog
blog-posts
August 14, 2019
August 14, 2019

Why we need to support, not punish, curious security minds

Teen security researcher, Bill Demirkapi, exposing major vulnerabilities in software used by his school certainly brought back some memories. I remember being the curious kid, lifting the hood on software to take a peek underneath and see how it all worked... and if I could break it.

Learn More
Learning & Development
Learning
August 14, 2019
Modern stairs outlined with bright blue LED lights against a dark floor and walls.
Blog
blog-posts
August 5, 2019
August 5, 2019

The Great Global Patch: VxWorks Flaws Set to Compromise Millions of Devices

While VxWorks isn't a household name to the average consumer, this software product benefits many people just like you and me, each and every day. And now, we are faced with the possibility that hundreds of millions of VxWorks-powered devices are now compromised.

Learn More
No items found.
Learning
August 5, 2019
Blog
blog-posts
August 1, 2019
August 1, 2019

Coders Conquer Security: Share & Learn Series - XXE Injection

The XML External Entity Injection attack, sometimes simply abbreviated as XXE injection, is relatively new, but it's extremely popular among hacking communities right now, and growing even more so as it racks up successes.

Learn More
Learning & Development
Learning
August 1, 2019
Blog
blog-posts
July 25, 2019
July 25, 2019

Coders Conquer Security: Share & Learn Series - CRLF Injection

If an attacker can insert a CR or LF code into an existing application, they can sometimes change its behavior. The effects are less easy to predict compared with most attacks, but can be no less dangerous to the target organization.

Learn More
Learning & Development
Learning
July 25, 2019
Blog
blog-posts
July 23, 2019
July 23, 2019

How creative CISOs and CIOs can innovate and transform their security program

Creative, inspiring CISOs and CIOs have the power to innovate and shape our digital world, but they can also be instrumental in transforming an organizations security culture.

Learn More
No items found.
Learning
July 23, 2019
Blog
blog-posts
July 18, 2019
July 18, 2019

Coders Conquer Security: Share & Learn Series - Remote File Inclusion

In many ways, the remote file inclusion vulnerability is much more dangerous, and also easier to exploit, than its local file counterpart. As such, it should be found and remedied as soon as possible.

Learn More
Learning & Development
Learning
July 18, 2019
White left-pointing arrow painted on a turquoise brick wall.
Blog
blog-posts
July 4, 2019
July 4, 2019

The Revamped PCI Security Standards Council Guidelines: Do They Shift Far Enough Left?

This year, the PCI Security Standards Council released an all-new set of software security guidelines as part of their PCI Software Security Framework. This update aims to bring software security best practice in-line with modern software development.

Learn More
No items found.
Learning
July 4, 2019
Blog
blog-posts
July 4, 2019
July 4, 2019

Coders Conquer Security: Share & Learn Series - Local File Inclusion and Path Traversal

Unlike many vulnerabilities, exploiting local file inclusion and path traversal processes for nefarious purposes requires a sufficiently skilled attacker, a fair amount of time, and perhaps a bit of luck.

Learn More
Learning & Development
Learning
July 4, 2019
Blog
blog-posts
June 27, 2019
June 27, 2019

Coders Conquer Security: Share & Learn Series - Insufficient Transport Layer Protection

Even if you have completely secured an application server and the backend systems it uses, communications might still be vulnerable to snooping if you have insufficient transport layer protection.

Learn More
Learning & Development
Learning
June 27, 2019
Blog
blog-posts
June 20, 2019
June 20, 2019

Coders Conquer Security: Share & Learn Series - XML Injections

XML injection attacks are nasty little exploits invented by hackers to help them compromise systems hosting XML databases. This includes the kinds of things that come to mind when one thinks about traditional databases - detailed stores of information about anything from medicines to movies.

Learn More
Learning & Development
Learning
June 20, 2019
Red double-decker bus on a bridge with London’s Big Ben and Parliament buildings in the background.
Blog
blog-posts
June 6, 2019
June 6, 2019

Huawei security UK problems demonstrate the need for secure coding

A recent report from the UK's Huawei Cyber Security Evaluation Centre identified major security issues within Huawei's software engineering processes. But it's a problem that can be fixed.

Learn More
No items found.
Learning
June 6, 2019
Blog
blog-posts
June 5, 2019
June 5, 2019

Best of the Brunch: Our Leaders in AppSec Share Their Wisdom

Addressing hot-button issues like how to make the most of an organization's AppSec budget, as well as several curly questions from the audience, the Leaders in AppSec panel delivered some real morning magic that will help security specialists build out viable programs within their organizations.

Learn More
No items found.
Learning
June 5, 2019
Blog
blog-posts
May 30, 2019
May 30, 2019

Coders Conquer Security: Share & Learn Series - Insufficient Logging and Monitoring

Insufficient logging and monitoring is one of the most dangerous conditions that can exist within an application's defensive structure. If this vulnerability or condition exists, then almost any advanced attack made against it will eventually be successful.

Learn More
Learning & Development
Learning
May 30, 2019
Blog
blog-posts
May 23, 2019
May 23, 2019

Coders Conquer Security: Share & Learn Series - Unvalidated Redirects and Forwards

Coding a website or application with the ability to process unvalidated redirects and forwards can be extremely dangerous for both your users and your organization.

Learn More
Learning & Development
Learning
May 23, 2019
Crowd throwing colorful powder in the air during an outdoor festival under a blue sky.
Blog
blog-posts
May 22, 2019
May 22, 2019

Secure Code Warrior and Bugcrowd: A Match Made in Security Geek Heaven

It's official: we are joining forces with Bugcrowd in the fight to educate, empower and enlighten developers on secure coding.

Learn More
No items found.
Learning
May 22, 2019
Blog
blog-posts
May 16, 2019
May 16, 2019

Coders Conquer Security: Share & Learn Series - Code Injection

Code injection attacks are among the most common, and also the most dangerous, that many websites and applications will encounter. They run the gamut both in terms of sophistication and in the danger that they pose, but nearly any site or app that accepts user input could be vulnerable.

Learn More
Learning & Development
Learning
May 16, 2019
Red neon light sign on a black wall with symbols: question mark, dollar, skull, hashtag, swirl, and percent.
Blog
blog-posts
May 9, 2019
May 9, 2019

GitHub Users Held to Ransom with Plaintext Pain

The recent attack on GitHub repositories highlights a well-known issue within the security industry: most developers are simply not sufficiently security-aware, and valuable data could be at risk at any time.

Learn More
No items found.
Learning
May 9, 2019
Blog
blog-posts
May 9, 2019
May 9, 2019

Coders Conquer Security: Share & Learn Series - Broken Access Control

When you build a business application, whether for internal use or external use by your customers, you probably don't let every user perform every single function. If you do, you may be vulnerable to broken access control.

Learn More
Learning & Development
Learning
May 9, 2019
Night view of Singapore Marina Bay Sands with illuminated Helix Bridge and reflections on water.
Blog
blog-posts
May 3, 2019
May 3, 2019

For Cybersecurity Best Practice, Look to the Finance Industry

With cyberattacks on the rise - affecting every type of organisation in every vertical - the threat of expensive, embarrassing and bottom-line-affecting data breaches is very real. The problem is not getting smaller, it's growing like a tumour.

Learn More
Learning & Development
Learning
May 3, 2019
Blog
blog-posts
May 2, 2019
May 2, 2019

Coders Conquer Security: Share & Learn Series - Information Exposure

When your web app reveals too much information, it can make it easier for attackers to break into it. jIn this post, we'll cover what information exposure is, why it's dangerous, and how to prevent it.

Learn More
Learning & Development
Learning
May 2, 2019
Blog
blog-posts
April 25, 2019
April 25, 2019

Coders Conquer Security: Share & Learn Series - Using Components with Known Vulnerabilities

Since all applications use components, most of which you haven't written, vulnerabilities within the components you use can become liabilities. Let's discuss what using components with known vulnerabilities means, how dangerous it is, and how to resolve it.

Learn More
Learning & Development
Learning
April 25, 2019
White-tiled wall with large framed text saying 'WE LIKE YOU, TOO :)' under green hanging vines.
Blog
blog-posts
April 17, 2019
April 17, 2019

Security' is Not a Dirty Word: How a Positive Approach Will Transform Your Security Program

Having been on both sides of the fence, I know all too well the tension that can arise between the development team and AppSec specialists when it comes to upholding security best practice. However, there is a better approach.

Learn More
Learning & Development
Learning
April 17, 2019
Blog
blog-posts
April 11, 2019
April 11, 2019

Coders Conquer Security: Share & Learn Series - Authentication

Were going to cover one of the most common problems faced by organizations that either run websites, or which allow employees to remotely access computer resources - which is pretty much everyone. And yes, you probably guessed that we are going to be talking about authentication.

Learn More
Learning & Development
Learning
April 11, 2019
Blog
blog-posts
April 4, 2019
April 4, 2019

Coders Conquer Security: Share & Learn Series - Insufficient Anti-Automation

If an application has insufficient anti-automation checks in place, attackers can simply keep guessing at passwords until they find a match. Heres how to stop them.

Learn More
Learning & Development
Learning
April 4, 2019
Blog
blog-posts
March 28, 2019
March 28, 2019

Coders Conquer Security: Share & Learn Series - Business Logic Problems

Although coding issues may be part of the problem, business logic errors are most frequently a result of design flaws or incorrect logical assumptions when an app is first created.

Learn More
Learning & Development
Learning
March 28, 2019
Blog
blog-posts
March 27, 2019
March 27, 2019

DevSecOps: The Old Security Bugs Still Performing New Tricks

In cybersecurity, we are often like hunters. Our eyes are firmly glued to the horizon, scanning for the next breakout vulnerability. However, this forward-looking focus can have the surprising effect of dampening our overall security awareness.

Learn More
No items found.
Learning
March 27, 2019
Blog
blog-posts
March 21, 2019
March 21, 2019

Coders Conquer Security: Share & Learn Series - Email Header Injection

It's common for websites and applications to allow users to send feedback and various other bits of information through an application using email. And most people don't even think about it in terms of a potential security risk.

Learn More
Learning & Development
Learning
March 21, 2019
Blog
blog-posts
March 14, 2019
March 14, 2019

Coders Conquer Security: Share & Learn Series: Insecure Direct Object Reference

A direct object reference is when a specific record (the 'object'), is referenced within an application. It usually takes the form of a unique identifier and may appear in a URL.

Learn More
Learning & Development
Learning
March 14, 2019
Leaning weathered wooden building in dry grassy field with old wagon, truck, and small cabins under blue sky.
Blog
blog-posts
March 13, 2019
March 13, 2019

Software Security is in the Wild West (and it's going to get us killed)

Software security is always front-of-mind for me, as is the very real danger posed by our increasingly digital, personal information-sharing lifestyles. After all, we are in a largely unregulated, unsupervised and blissfully ignored territory. We're in the Wild West.

Learn More
No items found.
Learning
March 13, 2019
Blog
blog-posts
March 7, 2019
March 7, 2019

Insecure Cryptographic Storage & Security | Secure Code Warrior

In this digital society, developers are responsible for keeping info & businesses safe from insecure cryptographic storage. Learn from Secure Code Warrior.

Learn More
No items found.
Learning
March 7, 2019
Blog
blog-posts
February 28, 2019
February 28, 2019

Coders Conquer Security: Share & Learn Series - XQuery Injection

A huge majority of websites use XML databases to perform critical functions such as holding user login credentials, customer information, personal identity information and confidential or sensitive data, leaving XQuery attacks with a rather large attack footprint.

Learn More
Learning & Development
Learning
February 28, 2019
Blog
blog-posts
February 21, 2019
February 21, 2019

What is Security Misconfiguration? | Secure Code Warrior

What is security misconfiguration? Find the most popular security misconfigurations & how to prevent vulnerabilities. Learn from Secure Code Warrior.

Learn More
No items found.
Learning
February 21, 2019
Cluster of colorful balloons in blue, yellow, red, and white floating against a partly cloudy sky.
Blog
blog-posts
February 15, 2019
February 15, 2019

Happy 4th Birthday Secure Code Warrior, You Cheeky Little Toddler

The older my daughter and the company gets, the more I realise there are so many similarities between a startup journey and the ���first-time�۝ parent journey. I am in my fourth year for both now.pi

Learn More
Learning & Development
Learning
February 15, 2019
Blog
blog-posts
February 14, 2019
February 14, 2019

Coders Conquer Security: Share & Learn Series - Clickjacking

Let's take a look now at how clickjacking works, why it's dangerous, and what developers like you can do to prevent it.

Learn More
Learning & Development
Learning
February 14, 2019
Blog
blog-posts
February 7, 2019
February 7, 2019

Coders Conquer Security: Share & Learn Series - OS Command Injection

OS command injection attacks can be performed by entry-level and less skilled hackers, which makes them one of the most common weaknesses that security teams experience. Thankfully, there are quite a few very effective ways to prevent them from being successful.

Learn More
Learning & Development
Learning
February 7, 2019
Blog
blog-posts
January 31, 2019
January 31, 2019

Coders Conquer Security: Share & Learn Series - Session Management Weaknesses

Sessions are key to a good user experience when using the web. However, managing sessions incorrectly can lead to security holes that attackers can exploit.

Learn More
Learning & Development
Learning
January 31, 2019
Blog
blog-posts
January 30, 2019
January 30, 2019

Developer Tournaments: AppSec's Secret Weapon to Improve Security Culture and Engagement

Don't you think it's time we gave security a makeover? It's as simple as changing the conversation and making everything a little more positive (not to mention fun!) for both sides, especially the development team.

Learn More
No items found.
Learning
January 30, 2019
Blog
blog-posts
January 24, 2019
January 24, 2019

Coders Conquer Security: Share & Learn Series - Padding Oracle

While Padding Oracle sounds like a really bad name for an alternative rock band, it's actually a vulnerability that can be used by attackers to decrypt information without knowing the encryption key.

Learn More
Learning & Development
Learning
January 24, 2019
Blog
blog-posts
January 17, 2019
January 17, 2019

Coders Conquer Security: Share & Learn Series - LDAP Injections

Problems can occur when malicious users can manipulate an LDAP query. Doing this can trick the receiving server into executing invalid queries that would normally not be allowed, or even granting high level or administrator access to invalid or low-security users without a password.

Learn More
Learning & Development
Learning
January 17, 2019
An opened fortune cookie on blue background reveals a fortune about a plan taking shape.
Blog
blog-posts
January 16, 2019
January 16, 2019

The Change We Need In The AppSec Badlands: My 2019 Predictions

The real battle we face isn't against script kiddies, or dangerous organized cybercrime syndicates... its in getting more people to care that data breaches are happening at all.

Learn More
No items found.
Learning
January 16, 2019
Blog
blog-posts
January 10, 2019
January 10, 2019

Coders Conquer Security: Share & Learn Series - Unrestricted File Uploads

In cybersecurity, attackers can be quick to exploit any application or program that has been allowed to support unrestricted file uploads. And the results can be devastating.

Learn More
Learning & Development
Learning
January 10, 2019
Blog
blog-posts
December 20, 2018
December 20, 2018

Coders Conquer Security: Share & Learn Series - NoSQL Injection

NoSQL databases are becoming increasingly popular. It's hard to deny their speed and ease of dealing with unstructured data, but as use becomes widespread, more vulnerabilities inevitably bubble to the surface.

Learn More
Learning & Development
Learning
December 20, 2018
Blog
blog-posts
December 13, 2018
December 13, 2018

Coders Conquer Security: Share & Learn Series - Cross-Site Request Forgery

CSRF attacks are fairly complex and rely on multiple layers to be successful. In other words, lots of things have to break in favor of the attacker for it to work. Despite this, they are an extremely popular, lucrative attack vector.

Learn More
Learning & Development
Learning
December 13, 2018
Blog
blog-posts
December 6, 2018
December 6, 2018

Coders Conquer Security: Share & Learn - SQL Injection

Attackers are using SQL injection - one of the oldest (since 1998!) and peskiest data vulnerabilities out there - to steal and change the sensitive information available in millions of databases all over the world.

Learn More
Learning & Development
Learning
December 6, 2018
Blog
blog-posts
November 16, 2018
November 16, 2018

Confusing Privacy with Security: The Fatal Mistake

When online privacy attempts to exist without security, chaos reigns. Just ask Ross Ulbricht.

Learn More
Learning & Development
Learning
November 16, 2018
Black and white photo of birds flying in a V formation against a cloudy sky.
Blog
blog-posts
September 28, 2018
September 28, 2018

Why financial institutions are leading the charge to upskill their developers in secure coding

Observing: the rising innovation and leadership of financial institutions in upskilling their developers on secure coding.

Learn More
No items found.
Learning
September 28, 2018
Bright blue beetle with long antennae on dark green ivy leaves against a soft green background.
Blog
blog-posts
September 26, 2018
September 26, 2018

Why SQL Injections Are The Cockroaches of the AppSec World (and how CISOs can eradicate them once and for all)

There's a well-known theory that cockroaches can survive basically anything - even a nuclear explosion.

Learn More
No items found.
Learning
September 26, 2018
Blog
blog-posts
August 13, 2018
August 13, 2018

A Brighter Future For DevSecOps? It's Closer Than You Think

There are many solutions that find vulnerabilities in code, but security needs to place more emphasis on teaching developers to follow security guidelines that will prevent them from making these mistakes in the first place.

Learn More
Learning & Development
Learning
August 13, 2018
Magnifying glass over files and network icons above the words LEVEL UP in orange gradient text.
Blog
blog-posts
August 1, 2018
August 1, 2018

Why gamification is the key to leveling up your software security

We must work to change the conversation, to make security an integral part of every developer's working life. And I think one of the best ways to do this is by empowering and engaging with developers on security through, for example, gamification.

Learn More
No items found.
Learning
August 1, 2018
Rows of empty red theater seats with aisle steps in the center under dim lighting.
Blog
blog-posts
July 5, 2018
July 5, 2018

More Breaches, More Problems: The Cost of Trust in Third-Party Apps

We must stop thinking of security as an irritating obstacle on the path of company innovation.

Learn More
No items found.
Learning
July 5, 2018
Blog
blog-posts
June 21, 2018
June 21, 2018

Celebrating International Women in Engineering Day: Meet Lucy

I thought I would end up in an infrastructure or service support sort of career, and then got a development opportunity in a graduate program. Turns out thats exactly where I needed to be.

Learn More
No items found.
Learning
June 21, 2018
Blog
blog-posts
April 7, 2018
April 7, 2018

Some CISOs are turning the security skills shortage into an opportunity

Empowering developers to write secure code from the start is an opportunity for CISOs to seize some proactive control from the security predicament, and where there is the chance for fast, easy and measurable improvements for both security and development teams.

Learn More
No items found.
Learning
April 7, 2018
Black and white photo of industrial metal pipes, stairs, and platforms in a complex factory setting.
Blog
blog-posts
March 15, 2018
March 15, 2018

"Explosive" cyber attacks in Oil and Gas are life threatening

The only thing that prevented an explosion was a mistake in the attackers computer code, the investigators said.

Learn More
Learning & Development
Learning
March 15, 2018
Three-tier pink birthday cake with a large number 3 and Secure Code Warrior logo below
Blog
blog-posts
January 25, 2018
January 25, 2018

Secure Code Warrior - Happy 3rd Birthday to us

Our vision is to empower developers to be the first line of defence in their organisation by making security highly visible and providing them with the skills and tools to write secure code from the beginning.

Learn More
Learning & Development
Learning
January 25, 2018
Browser window icon with bold letters KVK and two blue horizontal lines below on a gradient blue background.
Case Study
case-studies
January 6, 2026
January 6, 2026

Kamer van Koophandel: Developer-Driven Security at Scale

Kamer van Koophandel shares how it embedded secure coding into everyday development through role-based certifications, Trust Score benchmarking, and a culture of shared security ownership.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Browser window with Paysafe logo and three light blue bullet points on a blue gradient background.
Case Study
case-studies
October 8, 2025
October 8, 2025

Going for Gold: Soaring Secure Code Standards at Paysafe

See how Paysafe's partnership with Secure Code Warrior led to a 45% boost in developer productivity and a major reduction in code vulnerabilities.

Learn More
C-Suite
Learning
This is some text inside of a div block.
Golden shield emblem inside a stylized browser window with blue header and two blue lines on the right.
Case Study
case-studies
November 28, 2023
November 28, 2023

Devlympics 2023: In Review

Explore the Devlympics 2023 results in this report. Dive into developer engagement, tech stack and languages trends in each industry that participated, and key vulnerabilities and CWEs covered in the annual global event hosted by Secure Code Warrior.

Learn More
Engineering Teams
Learning
This is some text inside of a div block.
Case Study
case-studies
November 22, 2023
November 22, 2023

One Culture of Security: How Sage Built Their Champions Program

Discover how Sage enhanced security with a flexible, relationship-focused approach, creating 200+ security champions and achieving measurable risk reduction.

Learn More
Security Teams
Learning & Development
Learning
This is some text inside of a div block.
Case Study
case-studies
October 2, 2023
October 2, 2023

The path to security champions: How Workday utilized agile learning to upskill developers

Discover how Workday transformed developer training with agile learning through Secure Code Warrior. By empowering developer with hands-on, language-specific education, Workday reduced vulnerabilities early in the SDLC. See their impressive results and key takeaways to build a secure code culture.

Learn More
Learning & Development
Learning
This is some text inside of a div block.
Browser window with the word THALES centered in dark blue letters on a light background.
Case Study
case-studies
July 22, 2023
July 22, 2023

How Thales implemented developer-driven security

In this case study, learn how Thales has developed people, process, and technology approaches for an agile secure code learning program in order to engage developers to become active security champions.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Colgate-Palmolive logo in blue on a white browser window graphic with a blue header bar.
Case Study
case-studies
June 7, 2023
June 7, 2023

How Colgate-Palmolive boosted developer security skills and created a secure coding culture

Discover how retail giant Colgate-Palmolive reshaped its application security during its digital transformation journey. Facing challenges in secure coding, they innovated their approach by integrating bite-sized, in-context learning into the developer workflow.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Logo of Insurance Australia Group with blue and gray text and icon inside a web browser window design.
Case Study
case-studies
January 1, 2021
January 1, 2021

How a ‘Game of Codes’ is leading IAG Group to a more secure coding future

IAG Group is the name behind many of the leading insurancecompanies in the Asia-Pacific region, underwriting policies formillions of customers to the tune of approximately AUD $11.4 Billionin premiums per annum.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Minimalist graphic of a browser window with a blue top bar and two blue bullet-point lines in the bottom right corner.
Case Study
case-studies
January 1, 2021
January 1, 2021

Creating a revolutionary security certification experience

Learn how they created an in-house technology education initiative, aimed at supporting thousands of employees to learn practical, cutting-edge skills in a number of disciplines, including machine learning and cybersecurity.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Browser window with the letters ASRG in bold, black and white, centered on a blue gradient background.
Case Study
case-studies
January 1, 2021
January 1, 2021

ASRG's push for automotive software security

Explore this comprehensive case study to learn more about how they utilized Secure Code Warrior's tournaments to engage developers, increase awareness of key vulnerabilities affecting automotive software, and gain metrics across multiple languages and frameworks.

Learn More
Security Teams
Learning
This is some text inside of a div block.
ITwire logo with stylized white letters on a red square background.
News Article
news-articles
December 8, 2025
December 8, 2025

ITWire: Five Steps to Improve the Security of AI Developed Code

Industry guidance on managing the risks of AI-generated code increasingly points to the same conclusion: effective safeguards rely on close collaboration between humans and machines, with developers remaining firmly in the loop.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
The word SecurityBrief in white and gray on a purple background.
News Article
news-articles
December 1, 2025
December 1, 2025

SecurityBrief Australia: Agentic AI to transform APJ businesses & security by 2026

Agentic artificial intelligence (AI) is set to reshape the enterprise landscape in the Asia-Pacific and Japan (APJ) region in 2026, according to industry executives. Organisations are expected to embrace increasingly autonomous software agents, raising both productivity and new categories of risk across business domains.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
Red circle with white stylized letters S and C inside.
News Article
news-articles
December 1, 2025
December 1, 2025

SC Magazine UK: Why Firms Can’t Ignore Agentic AI

How big a threat does agentic AI pose to businesses currently? And what should security leaders be doing to address the risk?

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
Two overlapping white squares on a blue background forming a stylized logo.
News Article
news-articles
November 25, 2025
November 25, 2025

VMBlog: Cybersecurity Predictions: What AI will (and won't) do for us in 2026

My co-founder and CTO, Matias Madou, Ph.D., and I consulted our crystal ball (or should that be our NVIDIA GPUs?), and this is what we believe 2026 has in store for us from an AI security perspective.

Learn More
AI Governance
C-Suite
AI Software Governance
This is some text inside of a div block.
SD Times logo with text software development and website www.sdtimes.com on black background.
News Article
news-articles
November 21, 2025
November 21, 2025

SD Times: Pumping the Brakes on Agentic AI Adoption in Software Development

An alleged nation-state attacker used Claude Code and a range of tools in the developer ecosystem, namely Model Context Protocol (MCP) systems, to almost autonomously target specific companies with benign open-source hacking tools at scale. Of the over thirty attacks, several were successful, and proved that AI agents could indeed execute large-scale, malicious tasks with little to no human intervention. Maybe it’s time we went a little slower, stopped to reflect on what is at stake here, and how best to defend ourselves.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
Blue AI letters inside square brackets on a white background.
News Article
news-articles
November 20, 2025
November 20, 2025

AIthority: Building Secure and Ethical AI Practices in Software Development

AI is now a key piece of modern software development. More than four out of five developers use AI coding tools daily or weekly – with many relying on multiple tools in parallel. Teams must understand where automation ends, and where accountability begins.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
Red circle with bold white letters S and C inside, forming a simple logo.
News Article
news-articles
November 18, 2025
November 18, 2025

SC Media: Secure Coding as Critical Thinking Instead of Vulnspotting – Matias Madou – ASW #357

Secure code should be grounded more in concepts like secure by default and secure by design than by “spot the vuln” thinking. Matias Madou shares his experience in secure coding training and the importance of teaching critical thinking. He also discusses why critical thinking is so closely related to threat modeling and how LLMs can be a tool for helping developers get beyond the superficial advice of, “Think like an attacker.”

Learn More
Security Teams
Learning
This is some text inside of a div block.
Large white capital letter F on a solid black background.
News Article
news-articles
November 17, 2025
November 17, 2025

Forbes: How CISOs Can Increase Their Influence In AI-Obsessed Boardrooms

Organizations are at an inflection point driven by the explosive adoption of AI, which promises significant changes in how businesses operate. That leaves CISOs on unsteady ground. As the gatekeepers of their organization’s data and access, they must ensure the security of the enterprise. However, the prospects of a headlong charge into wide-ranging, and possibly unchecked, use of AI could create a flood of security issues that many CISOs, under their current organizational structures, aren’t equipped to handle.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
Security Boulevard logo with stylized letters S and B above the company name.
News Article
news-articles
November 14, 2025
November 14, 2025

Security Boulevard: Security Degradation in AI-Generated Code: A Threat Vector CISOs Can’t Ignore

Security leaders and developers alike are already acutely aware that AI coding assistants and agentic agents can introduce vulnerabilities into the code they generate. A recent study unveiled another critical concern to keep them up at night — LLMs used for making iterative code improvements may introduce new vulnerabilities over time, even when explicitly asked to make code more secure.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
Partial circular chart with segments in red, navy blue, and gray on a white background.
News Article
news-articles
November 13, 2025
November 13, 2025

Information Week: Make your own mandate: How CISOs can implement GenAI governance

Government bodies are trying to develop rules and regulations for safe AI use, but enterprises can't afford to wait. They need to address the risks now.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
CFOtech logo with blue background and Australia text.
News Article
news-articles
November 12, 2025
November 12, 2025

CFOtech Australia: How women can continue to foster fulfilling high-tech careers in the AI age

In the sphere of cybersecurity in general and application security in particular, human oversight remains an absolute 'must' to harness the benefits of AI productivity.

Learn More
Learning & Development
Learning
This is some text inside of a div block.
Red circle with a white letter T integrated in the lower right inside the circle.
News Article
news-articles
November 11, 2025
November 11, 2025

Tanium: Vibe coding may be unstoppable—but here’s how to rein in the risks

Like the meteoric rise of ChatGPT, vibe coding is all anybody can talk about this year. In fact, it just became a word in the dictionary. But beware the boom: These new AI coding tools offer speed, savings—and astounding vulnerabilities.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Stack Overflow logo with orange stacked bars rising from a gray base.
News Article
news-articles
November 11, 2025
November 11, 2025

[PODCAST] Stack Overflow: AI code means more critical thinking, not less

Ryan is joined by Secure Code Warrior’s co-founder and CTO Matias Madou to discuss the implications of LLMs’ variability on code security, the future of developer training as AI coding assistants become more popular, and the importance of critical thinking—especially for junior developers—in the age of AI.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
Text reading 'Cybersecurity Insiders' with three green human silhouettes on a black background.
News Article
news-articles
November 9, 2025
November 9, 2025

Cybersecurity Insiders: Use It or Lose It: Overreliance on AI Diminishes Critical Cybersecurity Thinking Skills

Software developers reap a host of benefits from making use of artificial intelligence assistants, whether in the form of Large Language Model (LLM) code creators or agentic AI agents. But recent reports, highlighted by a new study at MIT, warn that heavy use of AI can result in a loss of critical thinking skills among users.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
Black letter S with blue dots trailing left in a digital-speed motion design.
News Article
news-articles
November 3, 2025
November 3, 2025

Security Week: How Software Development Teams Can Securely and Ethically Deploy AI Tools

To deploy AI tools securely and ethically, teams must balance innovation with accountability—establishing strong governance, upskilling developers, and enforcing rigorous code reviews.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
White text logo reading DARK Reading on a black background.
News Article
news-articles
November 3, 2025
November 3, 2025

Dark Reading: AI Developed Code: 5 Critical Security Checkpoints for Human Oversight

To write secure code with LLMs developers must have the skills to use AI as a collaborative assistant rather than an autonomous tool, Madou argues.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
Techstrong TV logo with stylized text and red circle around tv.
News Article
news-articles
October 23, 2025
October 23, 2025

Techstrong.tv: Secure Code Warrior in the Age of AI with Pieter Danhieux

Secure Code Warrior’s Chief Executive Officer, Chairman, and Co-Founder Pieter Danhieux explains his transition from offensive cybersecurity to promoting secure software development. Founded in 2015, Secure Code Warrior aims to help developers build secure code from the start, a practice Danhieux and host Alan Shimel agree is more effective than fixing vulnerabilities later. The two also discuss the impact of AI on software development, noting that while AI increases coding speed and accessibility for more people, the security of AI-generated code still lags. They emphasize the growing need for developers to master secure coding practices amidst these technological advancements.

Learn More
AI Governance
C-Suite
AI Software Governance
This is some text inside of a div block.
Logo with blue stylized letters M, S, and B forming a cubic shape.
News Article
news-articles
October 20, 2025
October 20, 2025

SMBtech: Cybersecurity Awareness Month 2025: Australian Industry Reactions and Commentary

October is Australia’s Cybersecurity Awareness Month, the annual reminder for Aussies to stay vigilant online. This year’s theme, ‘Building our cyber safe culture’ once again highlights the importance of taking personal responsibility for staying secure in an increasingly digital world.

Learn More
Security Teams
Learning
This is some text inside of a div block.
SecurityBrief text in white and gray on a purple background.
News Article
news-articles
October 16, 2025
October 16, 2025

SecurityBrief: SMEs urged to cut data & boost cyber defences as attacks rise

Cybersecurity Awareness Month has brought renewed attention to the increasing risks faced by organisations of all sizes, with a particular focus on the growing threat to small and medium-sized enterprises (SMEs) in Australia and the UK.

Learn More
Security Teams
Learning
This is some text inside of a div block.
ITBrief Australia logo with red and pink arrow design and text on white background.
News Article
news-articles
October 14, 2025
October 14, 2025

ITBrief: Our biggest security risk isn’t our software - it’s our thinking

In the world of cybersecurity, we face creative and unconventional threats every day. But our greatest vulnerability isn't a flaw in our software, but a flaw in our collective thinking.

Learn More
Engineering Teams
Security Teams
Learning
This is some text inside of a div block.
KBI Media brand logo with black text on white background.
News Article
news-articles
October 10, 2025
October 10, 2025

KBI Media: Overcoming the Security Risks of Using AI In Software Development

Development teams face relentless pressure to deliver, yet they must continue to prioritise building secure, high-quality software. Leaders play a crucial role in reinforcing how a Secure by Design approach, supported by observability, benchmarking, and ongoing education, directly enhances code quality. By embedding these practices, organisations can close governance gaps and fully capture the benefits of AI-driven productivity and efficiency, while reducing the risk of security flaws or costly rework during the SDLC.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
Blue circuit-style letters AI above gray text stating IN AI TODAY.
News Article
news-articles
October 1, 2025
October 1, 2025

In AI Today: The looming security challenges posed by Agentic AI

While agentic AI holds the promise of delivering significant business benefits, it also comes with significant caveats. The technology’s capabilities and autonomy present a potent enterprise threat vector beyond the realm of existing security concerns.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
Help Net Security logo with a yellow square and white text on a black background.
News Article
news-articles
September 25, 2025
September 25, 2025

Help Net Security: Secure Code Warrior gives CISOs visibility into developer AI tool usage

Secure Code Warrior has launched a beta program to expand the AI capabilities of its Trust Agent product. The new offering provides CISOs with security traceability, visibility, and governance over developers’ use of AI coding tools.

Learn More
AI Governance
C-Suite
AI Software Governance
This is some text inside of a div block.
Logo text that reads Cyber Risk Leaders with red stripes above and below.
News Article
news-articles
September 25, 2025
September 25, 2025

Cyber Risk Leaders: Secure Code Warrior Launches AI Traceability

Secure Code Warrior have released a beta program for a major expansion of AI capabilities within its Trust Agent product. The upgrade, collectively referred to as Trust Agent: AI, leverages a combination of key signals, including AI coding tool usage, vulnerability data, code commit data and developer secure coding skills, to provide visibility into how AI development tools are impacting risk within the software development lifecycle (SDLC).

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
Black letters CSO on a light gray background.
News Article
news-articles
September 25, 2025
September 25, 2025

CSO Online: AI coding assistants amplify deeper cybersecurity risks

Although capable of reducing trivial mistakes, AI coding copilots leave enterprises at risk of increased insecure coding patterns, exposed secrets, and cloud misconfigurations, research reveals.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
Media Release
news-articles
September 24, 2025
September 24, 2025

Secure Code Warrior Launches Industry-First AI Traceability to Enable Secure Developers and Supercharge Safe Productivity

New capabilities in SCW Trust Agent provide visibility and control over LLM usage for security leaders and CISOs.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
ITOps Times text logo with black letters and a red dot over the letter i.
News Article
news-articles
September 24, 2025
September 24, 2025

ITOps Times: Secure Code Warrior announces new solution that provides visibility and governance for AI coding tools

Secure Code Warrior is trying to provide organizations with greater visibility and control over developers’ use of AI coding tools with the launch of its new solution, Trust Agent: AI.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
Text logo displaying 'DEVOPS' in blue and 'digest' in brown lowercase letters on white background.
News Article
news-articles
September 24, 2025
September 24, 2025

DevOps Digest: Secure Code Warrior Introduces AI Traceability

Secure Code Warrior announced the launch of a beta program for a major expansion of AI capabilities within its Trust Agent product.

Learn More
C-Suite
AI Governance
AI Software Governance
This is some text inside of a div block.
Logo with the letters C in orange and W in gray on a black background.
News Article
news-articles
September 24, 2025
September 24, 2025

CyberWire: Business Briefing for 09.24.25

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Learning & Development
Learning
This is some text inside of a div block.
Blue circular icon with lowercase white letters 'bn'.
News Article
news-articles
September 24, 2025
September 24, 2025

Betanews: AI is an even playing field -- how secure by design can tip the scale [Q&A]

Vibe coding is currently all the rage, with more than 97 percent of respondents to a survey earlier this year reporting having used AI coding tools at work. The adoption of these tools only continues to grow but it comes with a catch, attackers are also employing the same techniques. We spoke to Pieter Danhieux, co-founder and CEO of Secure Code Warrior, to discuss how vibe coding is redefining the software development landscape, how malicious actors are also leveraging this technology and the need for organizations to implement secure by design strategies from the outset.

Learn More
AI Governance
Learning
This is some text inside of a div block.
SD Times logo with text Software Development and website www.sdtimes.com on black background.
News Article
news-articles
September 22, 2025
September 22, 2025

SD Times: Benchmarking AI-assisted developers (and their tools) for superior AI governance

If the tech stack lacks tools that oversee not only developer security proficiency, but also the trustworthiness of approved AI coding companions each developer uses, then it is likely that efforts to uplift the overall security program and the developers working within it will be short of the appropriate data insights to effect change.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
White lowercase letters 'itw' on a solid red square background.
News Article
news-articles
September 22, 2025
September 22, 2025

ITWire: The Benefits and Risks of Using AI Tools in Software Development

The process of software development is undergoing a period of expedited change. Thanks to massive advances in artificial intelligence (AI) technology, projects can be completed more rapidly and by people with little or no prior experience.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
Logo with a white L shape and a dark blue angled shape on a pink background.
News Article
news-articles
September 10, 2025
September 10, 2025

LeadDev: Ethics are being forgotten as the AI race heats up

Is the tech industry capable of the change needed to curb ethical and environmental concerns?

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
Secure Code Warrior logo with stylized yellow S shield and navy text on the right.
Media Release
news-articles
September 9, 2025
September 9, 2025

Secure Code Warrior Expands Commitment to Secure by Design Best Practices with Free Secure Code Video Series for Developers

Launch of new 12-week video series on AI/LLM security empowers developers to safely adopt AI coding and mitigate emerging security risks.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Black letters C S O on a light gray background.
News Article
news-articles
September 9, 2025
September 9, 2025

CSO Online: When AI nukes your database: The dark side of vibe coding

As developers lean on Copilot and GhostWriter, experts warn of insecure defaults, hallucinated dependencies, and attacks that slip past traditional defenses.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
Text with black uppercase letters AIJ on a white background.
News Article
news-articles
September 8, 2025
September 8, 2025

The AI Journal: Resilience and Developer Risk Management: Two Pillars of Success in the Era of Secure by Design and AI Coding

Change is afoot in cybersecurity governance, and it couldn’t come at a more transformative time for security leaders worldwide. The White House issued a recent Executive Order (EO) designed to “reprioritize cybersecurity efforts to protect America”, and with it, reduce friction related to overzealous government oversight to focus on protecting critical digital assets and enhanced secure technology practices. Coupled with significant cuts to CISA, one could be forgiven for being apprehensive of the right approach going forward, especially in the wake of rapid AI technology progression and Secure by Design initiatives.

Learn More
AI Governance
C-Suite
AI Software Governance
This is some text inside of a div block.
Security Week logo with tagline Internet and Enterprise Security News, Insights & Analysis.
News Article
news-articles
September 5, 2025
September 5, 2025

SecurityWeek: How to Close the AI Governance Gap in Software Development

Widespread adoption of AI coding tools accelerates development—but also introduces critical vulnerabilities that demand stronger governance and oversight.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
Teiss cybersecurity logo with the tagline Cracking Cyber Security on dark blue background.
News Article
news-articles
September 3, 2025
September 3, 2025

teiss: When regulations aren’t enough

Pieter Danhieux at Secure Code Warrior explains why “Secure by Design” has emerged as mission critical for software development

Learn More
C-Suite
Learning
This is some text inside of a div block.
ACS logo with stylized white letters and a red top section featuring a white sunburst.
News Article
news-articles
September 2, 2025
September 2, 2025

Information Age: Vibe coding is a hot skill – and security experts are worried

GenAI tools are building insecure apps faster than ever.

Learn More
Engineering Teams
Security Teams
Learning
This is some text inside of a div block.
Logo for CX Focus Magazine with CX in black and orange and Focus Magazine in black text.
News Article
news-articles
August 26, 2025
August 26, 2025

CXFocus Magazine: Going above and beyond in 2026

Today’s customers are an exacting lot with little tolerance for suppliers that fail to meet their ever-increasing expectations. Almost 94 per cent of Australian consumers stopped purchasing from at least one company after a negative experience, according to CPM’s 2025 The State of Customer Experience in Australia Report.

Learn More
Learning & Development
Learning
This is some text inside of a div block.
Safety Detectives logo with a magnifying glass and fedora hat icon in white on dark background.
News Article
news-articles
August 25, 2025
August 25, 2025

SafetyDetectives: Interview With Matias Madou - CTO and Co-Founder at Secure Code Warrior

SafetyDetectives recently sat down with Matias Madou, CTO and Co-Founder of Secure Code Warrior, to discuss his journey from software developer to cybersecurity leader and entrepreneur. With a background in security research, obfuscation techniques, and nearly a decade at Fortify, Matias has seen firsthand how critical it is to upskill developers if organizations hope to defend against modern threats. In this interview, he shares how Secure Code Warrior is helping organizations foster a security-first development culture, the risks and opportunities of AI-driven coding tools, and why the path to safer software must always begin with better-trained developers.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Dark Reading text logo in white on a black background.
News Article
news-articles
August 22, 2025
August 22, 2025

Dark Reading: Do Claude Code Security Reviews Pass the Vibe Check?

AI-assisted security reviews from Anthropic and others could help level up enterprise application security in the era of vibe coding.

Learn More
Security Teams
Learning
This is some text inside of a div block.
GovTech Review logo with a clock icon replacing the letter o in tech.
News Article
news-articles
August 13, 2025
August 13, 2025

GovTech Review: The global challenge of achieving cyber resilience

Concerningly, 2030 is only five years away, and cybersecurity efforts — whether national, international or specific to organisations — still face many of the same barriers that have always hampered comprehensive security. For this reason there remains a question mark over whether countries will be able to meet their 2030 goals.

Learn More
C-Suite
Security Teams
Learning
This is some text inside of a div block.
KBI Media logo with stylized black text inside a partial rectangular border.
News Article
news-articles
August 11, 2025
August 11, 2025

KBI Media: AI Coding Assistants Boost Productivity … But At What Cost to Security?

As the pressure mounts to ship faster and innovate more aggressively, development teams must remember that code security is no longer optional but a business-critical necessity.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
Forbes logo in white serif text on a black background.
News Article
news-articles
August 11, 2025
August 11, 2025

Forbes: Beware Of Agentic AI’s Heel Turn As Corporate Security Villain

Enterprises need to assert AI governance and ensure that developers are equipped to maintain oversight, with the security skills to safely prompt and review AI-assisted code and commits.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
TechRadar Pro logo with white and gray text on a purple background.
News Article
news-articles
August 4, 2025
August 4, 2025

Techradar Pro: Why continuous security improvement for developers is the key to renewed resilience

While change can be challenging to navigate, the current security climate feels like the perfect time to embrace measures that will improve software quality and reduce risk for years to come.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
DevOps Digest brand name in blue and gold text on a white background.
News Article
news-articles
July 31, 2025
July 31, 2025

DevOps Digest: From Helper to Hacker: How AI Tools Can Be Turned Against You

A recent finding by InvariantLabs uncovered a critical vulnerability in the Model Context Protocol (MCP), an API-like framework allowing powerful AI tools to autonomously interact with other software and databases, that allows for what has been dubbed "Tool Poisoning Attacks," a new vulnerability category that could prove especially damaging in the enterprise.

Learn More
C-Suite
AI Governance
AI Software Governance
This is some text inside of a div block.
Technology Decisions logo with orange power symbol and grey text.
News Article
news-articles
July 17, 2025
July 17, 2025

Technology Decisions: Secure by Design: Vital in an evolving threat landscape

In the evolving world of software development, a familiar term is gaining renewed urgency: Secure by Design.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Partial circular chart with three colored segments in red, gray, and dark blue on white background.
News Article
news-articles
July 17, 2025
July 17, 2025

Information Week: Will Any Countries Meet the Cyber Resilience Challenge?

One of the key hurdles facing nations and enterprises in achieving cyber resilience goals is the lack of security personnel and advanced security skills.

Learn More
Learning & Development
Learning
This is some text inside of a div block.
White and gray text reading 'SecurityBrief' on a solid purple background.
News Article
news-articles
July 16, 2025
July 16, 2025

SecurityBrief Australia: The risks of using AI in the software development pipeline

AI coding assistants are not going away, and the upgrade in code velocity cannot be ignored. However, security leaders must act now to manage their use safely.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
White ITWire logo on a solid red square background.
News Article
news-articles
July 15, 2025
July 15, 2025

ITWire: AI Appreciation Day

Artificial Intelligence Appreciation Day celebrates the way AI has changed our lives for the better. This year, we speak to AI leaders to analyse what the next wave of innovations has in store for us and their transformative impact on various industries worldwide.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
Text logo reading Dynamic Business in bold black font on white background.
News Article
news-articles
July 15, 2025
July 15, 2025

Dynamic Business: AI Appreciation Day: What business leaders really think about AI right now

On AI Appreciation Day, industry experts reveal how smart, responsible AI use is transforming business, empowering people, and driving meaningful innovation.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
Blue AI letters with circuit lines over gray text saying IN AI TODAY.
News Article
news-articles
July 2, 2025
July 2, 2025

In AI Today: How to keep AI-assisted software development under control

Faced with large workloads and relentless deadlines, developers are understandably inclined to turn to third-party AI tools, sometimes without vetting them or getting approval from supervisors. It’s creating a trend dubbed ‘Shadow AI’. This should be of concern for all senior executives as unmanaged AI decreases overall enterprise visibility of development processes while increasing the potential for new vulnerabilities that are not adequately captured or managed.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
Help Net Security logo with a yellow square and black plus sign on a black background.
News Article
news-articles
July 2, 2025
July 2, 2025

Help Net Security: Cybersecurity essentials for the future: From hype to what works

Cybersecurity never stands still. One week it’s AI-powered attacks, the next it’s a new data breach, regulation, or budget cut. With all that noise, it’s easy to get distracted. But at the end of the day, the goal stays the same: protect the business.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Cyberdaily.au text logo with 'daily' in blue and other letters in white on black background.
News Article
news-articles
July 2, 2025
July 2, 2025

Cyber Daily: Bad practices are increasing security risks within software development projects

A recent CISA discussion paper details some exceptionally risky software development activities that are in all-too-common use.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Techstrong TV logo with the word Techstrong and a red circle containing tv.
News Article
news-articles
June 30, 2025
June 30, 2025

Techstrong.tv: [VIDEO] Secure Code Warrior CTO Matias Madou on Empowering Developers with AI-Driven Security Tools

Matias Madou, CTO and Co-Founder of Secure Code Warrior, shares his journey in app security and how AI is helping developers write secure code. He introduces new AI security rules, available free on GitHub, and discusses the future of development tools and AI solutions.

Learn More
AI Governance
C-Suite
AI Software Governance
This is some text inside of a div block.
DevOps.com logo with stylized linked D and O letters in red and dark blue.
News Article
news-articles
June 26, 2025
June 26, 2025

DevOps.com: Secure Code Warrior Defines Security Rules for AI Coding

Secure Code Warrior has made available a set of security rules for application developers using artificial intelligence (AI) tools to generate code.

Learn More
C-Suite
AI Governance
AI Software Governance
This is some text inside of a div block.
Text reading SecurityBrief on a solid purple background.
News Article
news-articles
June 18, 2025
June 18, 2025

SecurityBrief Australia: Secure Code Warrior unveils free AI security rules for developers

Secure Code Warrior has released AI Security Rules on GitHub, offering developers a free resource aimed at improving code security when working with AI coding tools.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
KBI media logo with stylized black letters and a black line above KBI.
News Article
news-articles
June 18, 2025
June 18, 2025

KBI Media: Overcoming The Complexity And Security Issues Posed By AI Coding Tools

The current software environment has grown out of control security-wise and this trend shows no signs of slowing. However there is hope for slaying the twin challenges of complexity and insecurity.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
Secure Code Warrior logo with yellow shield icon and dark blue text.
Media Release
news-articles
June 17, 2025
June 17, 2025

Secure Code Warrior Unveils Industry-First AI Coding Rulesets to Guide Safer AI Code Deployment

Secure Code Warrior, the leading developer risk management company, today announced the availability of AI Security Rules on GitHub – a first-of-its-kind, free resource to help developers generate more secure code when working with AI coding tools like GitHub Copilot, Cline, Roo, Cursor, Aider and Windsurf.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
Help Net Security logo with a yellow plus symbol on black background.
News Article
news-articles
June 17, 2025
June 17, 2025

Help Net Security: Free AI coding security rules now available on GitHub

Developers are turning to AI coding assistants to save time and speed up their work. But these tools can also introduce security risks if they suggest flawed or unsafe code. To help address that, Secure Code Warrior has released a new set of free AI Security Rules on GitHub.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
Logo with text DEV in blue, PRO in gray, and JOURNAL in red below the PRO.
News Article
news-articles
June 17, 2025
June 17, 2025

DevPro Journal: Secure Code Warrior unveils AI coding rulesets to guide safer AI code deployment

Community-driven resource empowers developer teams of all sizes to integrate AI safely into critical workflows.

Learn More
C-Suite
AI Governance
AI Software Governance
This is some text inside of a div block.
SD Times logo with a red dot and the words Software Development in red on top.
News Article
news-articles
June 16, 2025
June 16, 2025

SD Times: Managing the growing risk profile of agentic AI and MCP in the enterprise

Security leaders need to take a hard look at how these risks affect their business, being sure they understand the potential vulnerabilities that result from using agentic AI and MCP, and take the necessary steps to minimize those risks.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
HackerOne brand name in stylized black text on a white background.
News Article
news-articles
June 16, 2025
June 16, 2025

HackerOne Launches Technology Alliance Program to Advance AI-Powered Security Ecosystem and Customer Innovation

HackerOne, a global leader in offensive security solutions, today announced the launch of its PartnerOne Technology Alliance Program. The initiative is designed to accelerate secure innovation by connecting leading technology providers with HackerOne’s AI-powered platform that seamlessly scales human security expertise through AI agents to not just find but remediate vulnerabilities.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
Dark Reading logo with the word DARK in bold uppercase and Reading below in a lighter font on black background.
News Article
news-articles
June 10, 2025
June 10, 2025

Dark Reading: Next-Gen Developers Are a Cybersecurity Powder Keg

AI coding tools promise productivity but deliver security problems, too. As developers embrace "vibe coding," enterprises face mounting risks from insecure code generation that security teams can't keep pace with.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Red speech bubble with three horizontal pink bars resembling a stylized database or layers.
News Article
news-articles
June 9, 2025
June 9, 2025

Conversational AI News: Training Developers to Build Defensively with AI

Today we're meeting Pieter Danhieux, CEO & Co-Founder at Secure Code Warrior. They specialise in secure coding practices and developer risk management.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
ITwire logo with white stylized letters on a red background.
News Article
news-articles
June 4, 2025
June 4, 2025

ITWire: The Importance Of Security Benchmarking When Using AI Development Tools

If it was possible to have an experienced chef in the kitchen to help prepare a sophisticated dish, most people would happily accept the assistance. The same holds true for a qualified contractor to work on a home-improvement project, or an office aide to handle tedious, repetitive tasks.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
Logo text reading 'DEVOPS' in blue uppercase and 'digest' in lowercase gold letters below it.
News Article
news-articles
May 28, 2025
May 28, 2025

DevOps Digest: Fix It or Face the Consequences: CISA's Memory-Safe Muster

While CISA's efforts can help companies navigate the "need for speed" in a fast-moving DevOps environment, IT and security leaders across the private sector must do their part to prepare their companies for the necessary changes.

Learn More
Engineering Teams
Security Teams
C-Suite
Learning
This is some text inside of a div block.
SC Magazine logo with bold white letters on a red background.
News Article
news-articles
May 23, 2025
May 23, 2025

SC Magazine UK: Secure-by-Design Is Hard, but Our Online Future Depends on It

Secure software hinges on introducing security at the beginning of the SDLC.

Learn More
Engineering Teams
Security Teams
Learning
This is some text inside of a div block.
ITWire logo with white lowercase letters on a red square background.
News Article
news-articles
May 23, 2025
May 23, 2025

ITWire: Experts Confirm DeepSeek Too Insecure for Enterprise Deployment

While DeepSeek’s capabilities seem to be extensive, experts have identified significant failings – particularly from a security perspective.

Learn More
Engineering Teams
Security Teams
Learning
This is some text inside of a div block.
Cyberdaily.au text logo with daily in blue and other letters in white on black background.
News Article
news-articles
May 23, 2025
May 23, 2025

Cyber Daily: Secure-by-design principles struggle to find unified enterprise adoption

While awareness of the concept of ‘Secure by Design’ is growing within many organisations, its usage remains fragmented and inconsistent.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Builtin logo with the word BUILTIN in navy and a blue to teal gradient arrow to the right.
News Article
news-articles
May 20, 2025
May 20, 2025

Built In: How to Tame ‘Unleashed’ AI-Assisted Software Development

The rise of AI coding assistants in software development has introduced new vulnerabilities. Our expert, Dr Matias Madou, offers advice for stemming the tide.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
Logo of Cyber Security Tribe with geometric shapes forming an abstract tribal design.
News Article
news-articles
May 16, 2025
May 16, 2025

Cybersecurity Tribe: Experts Reveal How Agentic AI Is Shaping Cybersecurity in 2025

We were lucky enough at RSAC 2025 to interview a series of industry experts to explore this issue, "Where exactly are we with Agentic AI in cybersecurity in 2025?"

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
DevOps.com logo with stylized initials D and O in navy and red colors.
News Article
news-articles
May 12, 2025
May 12, 2025

DevOps.com: How Benchmarking Can Help Software Development Teams Achieve CISA’s “Secure by Design”

Organizations can more readily achieve CISA’s Secure by Design through benchmarking by implementing the following developer-centric best practices.

Learn More
Engineering Teams
Security Teams
C-Suite
Learning
This is some text inside of a div block.
Bank Info Security logo with stylized orange letter i on dark background.
News Article
news-articles
May 6, 2025
May 6, 2025

Bank Info Security: Secure by Design: Moving Beyond Checkbox Compliance

Secure Code Warrior CEO Danhieux Urges Clarity Around Secure-by-Design Practices.

Learn More
Security Teams
Learning
This is some text inside of a div block.
SecurityWeek logo with tagline Cybersecurity News, Insights & Analysis on black background.
News Article
news-articles
May 1, 2025
May 1, 2025

SecurityWeek: Developers Must Slay the Complexity and Security Issues of AI Coding Tools

The advantages AI tools deliver in speed and efficiency are impossible for developers to resist. But the complexity and risk created by AI-generated code can’t be ignored.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
AIJ text logo in black serif font on white background.
News Article
news-articles
April 25, 2025
April 25, 2025

The AI Journal: Why Security Benchmarking Has Emerged as Critical for AI in Software Development Tools

In the last five years, nearly two-thirds of IT executives and administrators say their organisation has incorporated AI tools into the software development lifecycle (SDLC), according to research from KPMG and OutSystems, which makes available a low-code, AI-supported platform to build applications.

Learn More
AI Governance
C-Suite
AI Software Governance
This is some text inside of a div block.
KBI media logo with stylized black letters inside a black frame.
News Article
news-articles
April 22, 2025
April 22, 2025

KBI Media: How Adopting Maturity Models Can Improve Enterprise IT Security

With risk assessments becoming a higher priority, organisations need to take an approach with developer-driven security that actively targets developer risk management, skills enhancement and strategic repository “gatekeeping”. Initiatives that can help them stay on course while assessing their current security levels and creating an action plan that aligns with BSIMM or OWASP SAMM.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Forbes brand name in white serif font on a black background.
News Article
news-articles
April 22, 2025
April 22, 2025

Forbes: How Companies Can Chart The Way Along The Secure-By-Design Path

From our own observations, we've found that organizations generally need three to five years to fully integrate SBD into their software development practices as part of a developer risk management commitment. But we've also seen that it’s well worth the time and effort: Within the context of the software development life cycle (SDLC), SBD promotes a “security first” enterprise culture and mindset in eliminating vulnerabilities as early as possible in the process.

Learn More
Security Teams
Learning
This is some text inside of a div block.
TechRadar Pro logo with white and gray text on a maroon background.
News Article
news-articles
April 15, 2025
April 15, 2025

TechRadar Pro: Secure by design: what we can learn from the financial services sector

Secure by design in software development, inspired by financial services.

Learn More
C-Suite
Learning
This is some text inside of a div block.
Bold black letters D and B on a white background.
News Article
news-articles
April 9, 2025
April 9, 2025

Dynamic Business: 26 Aussie startups to unleash cyber fixes at ACE 25

The Australian Cyber Exchange 2025 (ACE 25), in collaboration with the Tech Council of Australia (TCA), rolled out in Sydney and is aimed at building up Australia’s own cyber capabilities.

Learn More
Security Teams
Learning
This is some text inside of a div block.
White stylized itwire text logo on a solid red background.
News Article
news-articles
April 8, 2025
April 8, 2025

iTWire: The Tech Council of Australia Bolsters Collaboration To Building Sovereign Capability To Keep Australians Safe

The Tech Council of Australia (TCA) is collaborating with industry and government leaders to advocate for the national approach across the cyber ecosystem and is reinforcing its position on building sovereign cyber security capability.

Learn More
Security Teams
Learning
This is some text inside of a div block.
White text 'INTELLIGENT CIO' centered on black circular background.
News Article
news-articles
April 8, 2025
April 8, 2025

Intelligent CIO: The Tech Council of Australia bolsters collaboration to building sovereign capability

Collaboration pitched as a critical step to ensure industry and government are taking a coordinated approach to building Australia’s cyber security and resilience.

Learn More
C-Suite
Learning
This is some text inside of a div block.
KBI media logo with bold uppercase KBI above lowercase media, framed by a black square border.
News Article
news-articles
April 4, 2025
April 4, 2025

KBI Media: How Organisations Can Achieve Secure-By-Design By 2030

Governments worldwide, from the UK to Australia, have set ambitious goals to enhance software security by 2030, particularly within critical infrastructure. However, achieving a secure-by-design (SBD) approach is not merely a matter of deploying advanced security tools or implementing stringent policies. Rather, it necessitates a fundamental shift in organisational culture, prioritising security at every level of software development.

Learn More
Learning & Development
Learning
This is some text inside of a div block.
Cyberdaily.au logo with 'daily' in blue and other text in white on black background.
News Article
news-articles
March 31, 2025
March 31, 2025

Cyber Daily: Paving a pathway to better Australian cyber security preparedness

Australia’s goal of seeding a zero-trust culture across all organisations can be significantly achieved by focusing on the first line of defence against threat actors: software developers.

Learn More
Security Teams
Learning
This is some text inside of a div block.
SecurityWeek logo with tagline Internet and enterprise security news, insights, and analysis.
News Article
news-articles
March 13, 2025
March 13, 2025

SecurityWeek: Security Maturity Models: Leveraging Executive Risk Appetite for Your Secure Development Evolution

Organizations can align their processes with one of two global industry standards for self-assessment and security maturity—BSIMM and OWASP SAMM.

Learn More
Security Teams
Engineering Teams
C-Suite
Learning
This is some text inside of a div block.
SD Times logo with tagline Software Development and website URL www.sdtimes.com.
News Article
news-articles
March 12, 2025
March 12, 2025

SD Times: DeepSeek is unsafe for enterprise use, tests reveal

The birth of China’s DeepSeek AI technology clearly sent shockwaves throughout the industry, with many lauding it as a faster, smarter and cheaper alternative to well-established LLMs. However, similar to the hype train we saw (and continue to see) for the likes of OpenAI and ChatGPT’s current and future capabilities, the reality of its prowess lies somewhere between the dazzling controlled demonstrations and significant dysfunction, especially from a security perspective.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Logo with bold white text 'ENERGY' over yellow and black abstract circle and arrow design.
News Article
news-articles
March 12, 2025
March 12, 2025

Energy Source & Distribution: How to boost security of Australia’s critical infrastructure

Increasing technical complexity and a widening attack surface are making life tough for IT security professionals. Faced with an evolving threat landscape, the pressure is on to deploy and maintain effective protection for critical infrastructure.

Learn More
Security Teams
Learning
This is some text inside of a div block.
KBI media company logo with black text inside a black-bordered square.
News Article
news-articles
March 11, 2025
March 11, 2025

KBI Media: A Supercharged Security Culture is Needed to Navigate Australia’s Cybersecurity Rules

A success marker in cybersecurity has traditionally been for an organisation to have an uneventful year – but this has become much harder to pull off. Even if an organisation manages to navigate the threat landscape without incident, it must still meet an ever-growing list of requirements just to maintain its license to operate. Australian CISOs have never had to deal with a greater number of legislative and regulatory requirements being imposed to drive secure behaviours and uplift collective cybersecurity postures.

Learn More
C-Suite
Learning
This is some text inside of a div block.
Logo with text intelligent CISO and a lock icon, tagline covering security across borders on yellow background.
News Article
news-articles
March 3, 2025
March 3, 2025

Intelligent CISO: Q&A: How organizations can achieve Secure-by-Design by 2030

Matias Madou, Co-founder and CTO, Secure Code Warrior, says Secure-by-Design (SBD) requires a cultural shift in how developers approach security.

Learn More
C-Suite
Learning
This is some text inside of a div block.
Logo text reading 'cyberdaily.au' with 'daily' in blue and rest in white on black background.
News Article
news-articles
February 28, 2025
February 28, 2025

Cyber Daily: Finalists revealed for the Australian Cyber Awards 2025

Cyber Daily has unveiled that more than 220 finalists have been selected out of over 300 submissions for the annual Australian Cyber Awards.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Manufacturing.net logo with a silver M and red NET, tagline underneath about manufacturing news.
News Article
news-articles
February 4, 2025
February 4, 2025

Manufacturing.net: Rethinking Critical Infrastructure: A Secure Path for High-Risk Connectivity

Digital frontiers are highly prized targets, and this will ramp up in the coming years.

Learn More
Security Teams
Learning
This is some text inside of a div block.
KBI media logo with stylized black text and geometric border on white background.
News Article
news-articles
February 3, 2025
February 3, 2025

KBI Media: Understanding The Risks Associated With ‘Shadow AI’ In Software Development

According to research by the Australian Government’s Department of Industry, Science and Resources[1], 35% of small and mid-sized businesses are already using AI tools and usage is expected to continue to increase. Applications include everything from marketing automation and fraud detection to data and document processing.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
Text logo reading cyberdaily.au with 'daily' in blue and other text in white on black background.
News Article
news-articles
January 28, 2025
January 28, 2025

Cyber Daily: The Industry Speaks: Data Privacy Day 2025

January 28 is International Data Privacy Day, and this year’s theme is ‘Taking Control of Your Data’ – here’s some expert advice and perspectives on how to do just that.

Learn More
Security Teams
Learning
This is some text inside of a div block.
DevOps.com logo with stylized interlocking DO letters in red and dark blue.
News Article
news-articles
January 27, 2025
January 27, 2025

DevOps.com: How to Prove That Your Security-Aware Developers are a Cut Above the Rest

Companies that need to respond by upskilling their developers should take a three-tiered approach that includes implementing a measured program to deliver education and competency, providing right-fit tools that suit the organization’s tech stack, and overhauling the processes that have led to cut corners and insecure coding patterns running rampant.

Learn More
Engineering Teams
Security Teams
C-Suite
Learning
This is some text inside of a div block.
DevOps.com logo with linked chain icon inside red circle next to text DevOps.com in gray and red.
News Article
news-articles
January 23, 2025
January 23, 2025

DevOps.com: Navigating the Next Wave of Cybersecurity Legislation With a Supercharged Security Culture

CISA’s Secure-by-Design guidelines are gaining traction as a higher standard for software vendors to achieve, while updates from NIST, PCI and the EU-wide NIS2 Directive are having a global impact on many enterprise companies. Smart CISOs are utilizing their full team potential through role-based upskilling and especially enabling the development cohort to take pressure off the AppSec team by honing their security prowess on an ongoing basis.

Learn More
Engineering Teams
Security Teams
C-Suite
Learning
This is some text inside of a div block.
teiss logo with tagline Cracking Cyber Security in dark blue text with a blue arc over the letter i.
News Article
news-articles
January 17, 2025
January 17, 2025

teiss: Balancing AI innovation and security

LLMs struggle to generate consistently secure code. Security-skilled developers can help ensure secure AI-generated code while optimising performance. Pieter Danhieux at Secure Code Warrior explores a CISO’s role in AI-powered coding.

Learn More
AI Governance
C-Suite
AI Software Governance
This is some text inside of a div block.
Dark Reading logo in bold white on black background.
News Article
news-articles
January 16, 2025
January 16, 2025

Dark Reading: OWASP's New LLM Top 10 Shows Emerging AI Threats

Ultimately, there is no replacement for an intuitive, security-focused developer working with the critical thinking required to drive down the risk of both AI and human error.

Learn More
Engineering Teams
Security Teams
C-Suite
Learning
This is some text inside of a div block.
KBI media logo in black text with a horizontal line above and below the letters.
News Article
news-articles
January 15, 2025
January 15, 2025

KBI Media: Cybersecurity’s Evolution And The Shift Toward Secure-By-Design Principles

In the ever-changing landscape of cybersecurity, experts are increasingly advocating for Secure-by-Design principles to address the accelerating challenges of today’s digital world. The concept emphasises embedding security into software from the beginning of the development process in a shift that reflects a significant maturation of the cybersecurity industry.

Learn More
Learning & Development
Learning
This is some text inside of a div block.
SecurityWeek logo with tagline Internet and Enterprise Security News, Insights & Analysis.
News Article
news-articles
January 14, 2025
January 14, 2025

SecurityWeek: How to Eliminate “Shadow AI” in Software Development

With a security-first culture fully in play, developers will view the protected deployment of AI as a marketable skill, and respond accordingly.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
eBook
downloads
July 21, 2026
July 21, 2026

Which AI Model Codes Most Securely?

See how 16 leading AI models actually code, scored across 11 real-world frameworks and 1,760 codebases — the framework matters as much as the model.

Learn More
AI Governance
AI Software Governance
This is some text inside of a div block.
One Pager
downloads
July 7, 2026
July 7, 2026

Citizen AI by Secure Code Warrior

AI risk doesn't stop at engineering. Get the one-pager on Citizen AI — build AI literacy and safe habits across your whole workforce.

Learn More
Engineering Teams
Learning
This is some text inside of a div block.
Whitepaper
downloads
June 23, 2026
June 23, 2026

Understand how AI is transforming software development—and how security must evolve with it.

From AI autocomplete to autonomous agents—explore how software development is evolving and what it means for security, governance, and your team.

Learn More
No items found.
No items found.
This is some text inside of a div block.
One Pager
downloads
June 9, 2026
June 9, 2026

SCW named in new Agentic Coding Security category

Gartner named SCW twice in the 2026 Hype Cycle for Secure Software Engineering. Here's why it matters for AI-driven development.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Guide
downloads
May 15, 2026
May 15, 2026

SCW Learning Content for KnowBe4

Secure Code Warrior content available through KnowBe4 helps technical teams build secure coding and AI governance awareness through structured learning covering OWASP Top 10 risks, AI-assisted development, and modern secure coding practices.

Learn More
Learning & Development
Learning
This is some text inside of a div block.
One Pager
downloads
May 13, 2026
May 13, 2026

Secure AI-driven development with KnowBe4 + Secure Code Warrior

Secure Code Warrior joins KnowBe4 to bring hands-on secure coding training into security awareness programs — covering OWASP, AI development, and 10 languages.

Learn More
Engineering Teams
Security Teams
Learning
This is some text inside of a div block.
One Pager
downloads
April 1, 2026
April 1, 2026

Trust Agent:AI - Secure and scale AI-Drive development

AI is writing code. Who’s governing it? With up to 50% of AI-generated code containing security weaknesses, managing AI risk is critical. Discover how SCW's Trust Agent: AI provides the real-time visibility, proactive governance, and targeted upskilling needed to scale AI-driven development securely.

Learn More
No items found.
No items found.
This is some text inside of a div block.
One Pager
downloads
March 23, 2026
March 23, 2026

OpenText Application Security + Secure Code Warrior

OpenText Application Security and Secure Code Warrior combine vulnerability detection with AI Software Governance and developer capability. Together, they help organizations reduce risk, strengthen secure coding practices, and confidently adopt AI-driven development.

Learn More
Security Teams
Learning
This is some text inside of a div block.
One Pager
downloads
March 19, 2026
March 19, 2026

Secure Code Warrior corporate overview

Secure Code Warrior is an AI Software Governance platform designed to enable organizations to safely adopt AI-driven development by bridging the gap between development velocity and enterprise security. The platform addresses the "Visibility Gap," where security teams often lack insights into shadow AI coding tools and the origins of production code.

Learn More
Learning & Development
Learning
This is some text inside of a div block.
Brochure
downloads
March 11, 2026
March 11, 2026

Secure code training topics & content

Our industry-leading content is always evolving to fit the ever changing software development landscape with your role in mind. Topics covering everything from AI to XQuery Injection, offered for a variety of roles from Architects and Engineers to Product Managers and QA. Get a sneak peek of what our content catalog has to offer by topic and role.

Learn More
Learning & Development
Security Teams
Learning
This is some text inside of a div block.
One Pager
downloads
January 20, 2026
January 20, 2026

Cyber Resilience Act (CRA) Aligned Learning Pathways

SCW supports Cyber Resilience Act (CRA) readiness with CRA-aligned Quests and conceptual learning collections that help development teams build the Secure by Design, SDLC, and secure coding skills aligned with the CRA’s secure development principles.

Learn More
Security Teams
Learning
This is some text inside of a div block.
eBook
downloads
December 23, 2025
December 23, 2025

OWASP Top 10 2025 eBook

Want to dominate the OWASP Top 10? Download the No-BS Guide to Defending Your Applications Against the OWASP Top 10:2025

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
One Pager
downloads
September 24, 2025
September 24, 2025

Trust Agent: AI by Secure Code Warrior

This one-pager introduces SCW Trust Agent: AI, a new set of capabilities that provide deep observability and governance over AI coding tools. Learn how our solution uniquely correlates AI tool usage with developer skills to help you manage risk, optimize your SDLC, and ensure every line of AI-generated code is secure.

Learn More
Security Teams
Engineering Teams
No items found.
This is some text inside of a div block.
Whitepaper
downloads
July 9, 2025
July 9, 2025

AI Coding Assistants: A Guide to Security-Safe Navigation for the Next Generation of Developers

Large language models deliver irresistible advantages in speed and productivity, but they also introduce undeniable risks to the enterprise. Traditional security guardrails aren’t enough to control the deluge. Developers require precise, verified security skills to identify and prevent security flaws at the outset of the software development lifecycle.

Learn More
Engineering Teams
Learning
This is some text inside of a div block.
One Pager
downloads
April 2, 2025
April 2, 2025

Professional Services - Accelerate with expertise

Secure Code Warrior’s Program Strategy Services (PSS) team helps you build, enhance, and optimize your secure coding program. Whether you're starting fresh or refining your approach, our experts provide tailored guidance.

Learn More
Learning & Development
Learning
This is some text inside of a div block.
One Pager
downloads
March 19, 2025
March 19, 2025

Quests: Industry leading learning to keep developers ahead of the game mitigating risk.

Quests is a learning platform that helps developers mitigate software security risks by enhancing their secure coding skills. With curated learning paths, hands-on challenges, and interactive activities, it empowers developers to identify and prevent vulnerabilities.

Learn More
Learning & Development
Learning
This is some text inside of a div block.
Whitepaper
downloads
October 15, 2024
October 15, 2024

Benchmarking Security Skills: Streamlining Secure-by-Design in the Enterprise

The Secure-by-Design movement is the future of secure software development. Learn about the key elements companies need to keep in mind when they think about a Secure-by-Design initiative.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Video
downloads
August 15, 2024
August 15, 2024

Trust Agent in action

SCW Trust Agent gives you the tools you need to deliver secure code faster, ensuring developers have the knowledge and skills to implement security best practices in the specific programming language of their code commits.

Learn More
No items found.
No items found.
This is some text inside of a div block.
One Pager
downloads
July 23, 2024
July 23, 2024

Trust Agent by Secure Code Warrior

Are you confident that every line of code committed is backed by a developer with the necessary secure coding skills? Many organizations face this critical gap, leading to preventable vulnerabilities and reduced development velocity. SCW Trust Agent offers unparalleled visibility across your code repositories, analyzing commits directly against developer security proficiency. With policy gates, Trust Agent enables you to apply governance at the commit level, with policies to ensure code contributors have the secure code knowledge you require for your business-critical applications. Download our one-pager today to learn how SCW Trust Agent can help you strengthen your security posture, optimize your development lifecycle, and significantly reduce vulnerabilities.

Learn More
Security Teams
Engineering Teams
No items found.
This is some text inside of a div block.
Video
downloads
June 28, 2024
June 28, 2024

SCW Trust Score - The best way to build, measure, and optimize your security program

Learn more about Secure Code Warrior Trust Score, the best way to build, measure and optimize your security program.

Learn More
Security Teams
Learning
This is some text inside of a div block.
One Pager
downloads
April 26, 2024
April 26, 2024

Trust Score by Secure Code Warrior

Discover SCW Trust Score, an industry-first benchmark to help measure your security program's effectiveness. Benchmark against industry peers, optimize your security posture, and drive data-driven decisions for enhanced software security.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Whitepaper
downloads
April 26, 2024
April 26, 2024

Preparing for PCI-DSS 4.0 Compliance

Evaluate your software security infrastructure to support PCI-DSS requirements

Learn More
Security Teams
Learning
This is some text inside of a div block.
Guide
downloads
April 5, 2024
April 5, 2024

The ultimate guide to security trends in financial services

Financial services institutions face an array of challenges that hinge on their ability to make efficient, effective use of technology in a fast-evolving financial world. Organizations are operating in a time of rapid changes—both internally and across the industry—in a highly competitive, cloud-based business environment. In pursuing their ongoing digital transformations, for example, organizations are working to get around the organizational friction that hinders investments into new technologies, such as artificial intelligence, that could accelerate payment processes and other procedures.

Learn More
No items found.
Learning
This is some text inside of a div block.
Whitepaper
downloads
March 7, 2024
March 7, 2024

PCI DSS 4.0 Unraveled

This guide offers practical strategies to engage development teams in PCI DSS 4.0 compliance. It outlines the modern developer's requirements for compliance, strategies for security professionals and development managers to collaborate on developer-focused security programs, and step-by-step advice on effective training initiatives to mitigate vulnerabilities permanently.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Infographic
downloads
February 1, 2024
February 1, 2024

ROI of Secure Code Learning

Explore the long-term ROI of secure coding education. Learn how investing in agile, proactive learning strategies enhances security and offers cost-effective protection against today's cyber threats.

Learn More
Learning & Development
Learning
This is some text inside of a div block.
Whitepaper
downloads
January 30, 2024
January 30, 2024

Why developers need security skills to effectively navigate AI development tools

The promise of artificial intelligence writing complex code at the touch of a button is intriguing, but the reality is that AI will need a lot of help from human developers to craft truly secure and reliable code.

Learn More
Engineering Teams
No items found.
This is some text inside of a div block.
Infographic
downloads
January 29, 2024
January 29, 2024

Top 10 predictions for 2024

Check out what SCW experts are predicting in the world of cybersecurity and software security in 2024.

Learn More
Learning & Development
Learning
This is some text inside of a div block.
Whitepaper
downloads
November 30, 2023
November 30, 2023

Agile learning platforms: ROI of developer-driven security

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Whitepaper
downloads
September 12, 2023
September 12, 2023

Forge your fortress: Six essential pillars of developer enablement in software security

In this white paper, security expert and Secure Code Warrior CTO & Co-Founder Matias Madou, Ph.D. will discuss:The six pillars you need to roll out effective security education and enablement for your development cohort. Lessons learned from ten executives implementing security programs at the enterprise level, and common pitfalls to avoid on your road to success.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Video
downloads
September 1, 2023
September 1, 2023

The Agile Learning Platform

Empower your development team with Secure Code Warrior, the agile learning platform designed to tackle the evolving challenges of application security. Stay ahead in the battle against security breaches and regulatory complexities with our industry-leading, up-to-date content, ensuring a proactive and engaging approach to secure code education.

Learn More
No items found.
No items found.
This is some text inside of a div block.
eBook
downloads
August 14, 2023
August 14, 2023

OWASP Top 10 API 2023: A tactical guide for smart developers

Explore the Latest in API Security. Dive into our 2023 OWASP Top 10 guide. Elevate your coding skills, tackle vulnerabilities, and stay agile in the ever-evolving world of API development. Download now for an insightful journey!

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
eBook
downloads
July 17, 2023
July 17, 2023

The secure code learning blueprint

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Learning
This is some text inside of a div block.
eBook
downloads
December 13, 2022
December 13, 2022

Your handbook to developer-driven security and agile learning

Start shifting left with developer-driven security. This handbook will show you how to engage with developers to upskill and increase their security knowledge, as well as how to go about measuring impact to write more secure code.

Learn More
Engineering Teams
Security Teams
Learning
This is some text inside of a div block.
Whitepaper
downloads
July 28, 2022
July 28, 2022

Software is your colleague: A new perspective to strengthen access control and API security

APIs act like flawed humans; is treating them as such the key to better cybersecurity?

Learn More
Security Teams
Learning
This is some text inside of a div block.
eBook
downloads
July 21, 2022
July 21, 2022

The secure code training blueprint

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Infographic
downloads
July 1, 2022
July 1, 2022

The developer security maturity matrix

Building security maturity in development teams can be approached in stages. Based on our experience with 400+ organizations, we've identified common practices and traits in three different stages of security maturity - defining, adopting, and scaling.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Whitepaper
downloads
July 1, 2022
July 1, 2022

The importance of security maturity in developer teams

By assessing and understanding a development team’s security maturity, organizations can formulate a plan with the right stakeholders, process, and technology to build and support the necessary skills and capabilities.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Infographic
downloads
July 1, 2022
July 1, 2022

Development Team Security Maturity

Security maturity in development teams should be a continuous cycle of improvement with realistic goals along the way. As development teams increase their security maturity, they reduce the amount of rework and minimize risk, while also allowing automation to help create efficiency in the SDLC.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Report
downloads
June 30, 2022
June 30, 2022

Report: The state of developer driven security 2022

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Whitepaper
downloads
June 30, 2022
June 30, 2022

Whitepaper: The challenges (and opportunities) to improve software security

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Brief
downloads
June 20, 2022
June 20, 2022

Brief: A cohesive approach to developer-led security

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Other
downloads
June 16, 2022
June 16, 2022

Security and privacy at Secure Code Warrior

Secure Code Warrior is committed to safeguarding our information assets, and those of our customers, against misuse, abuse or compromise. We adopt and foster a risk-based approach to managing information security, with the goal of consistently implementing appropriate risk management and mitigation measures to address the threat landscape posed to the security of the platform, customer data and information. As Secure Code Warrior continues to succeed as a major player providing services to our customers, we will continue to build security capabilities as part of our security and privacy programs. Read our whitepaper for more information.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Brief
downloads
May 3, 2022
May 3, 2022

Shift left (and achieve compliance) with repeatable secure coding skills

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Brief
downloads
May 3, 2022
May 3, 2022

Defining secure code

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Whitepaper
downloads
February 17, 2022
February 17, 2022

Why you need more than scanning tools to create secure code

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Learning
This is some text inside of a div block.
eBook
downloads
February 14, 2022
February 14, 2022

Your guide to defense against the dark art of zero-day attacks

Zero-day attacks can be the stuff of nightmares, but when an organization commits to using all available tools in their security arsenal towards a preventative strategy, security professionals can sleep a little easier.

Learn More
Learning & Development
Learning
This is some text inside of a div block.
Guide
downloads
January 14, 2022
January 14, 2022

A plan to upskill and engage your developers

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Learning & Development
Learning
This is some text inside of a div block.
Whitepaper
downloads
January 13, 2022
January 13, 2022

The preventative, developer-driven approach to software security

Learn more about how security-aware developers represent a vast and largely untapped resource that can support cyber defenses by consistently standing against modern threats.

Learn More
Security Teams
Learning
This is some text inside of a div block.
eBook
downloads
September 24, 2021
September 24, 2021

OWASP Top 10 API: Strategies for Smart Developers

Download the practical guide to defeating common API security baddies in your code.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Guide
downloads
September 20, 2021
September 20, 2021

How to unify your security and development teams to stand together against security risk

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Whitepaper
downloads
August 4, 2021
August 4, 2021

How AppSec can reduce vulnerabilities and achieve compliance - leaving them free to tackle larger beasts

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Other
downloads
July 18, 2021
July 18, 2021

Shared Assessments SIG Lite Questionnaire

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Other
downloads
July 18, 2021
July 18, 2021

SCW Pen Test Summary

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Other
downloads
July 18, 2021
July 18, 2021

SCW Cyber Insurance Certificate

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
Learning
This is some text inside of a div block.
Whitepaper
downloads
June 3, 2021
June 3, 2021

Cybersecurity Executive Order: A deliberate approach to improve software security with developer skills

While this Executive Order for touches on many aspects of functional cybersecurity, it specifically outlines, for the first time, the impact of developers, and the need for them to have verified security skills and awareness.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Other
downloads
May 18, 2021
May 18, 2021

FSQS-NL Certificate

Secure Code Warrior is now FSQS-NL registered. This registration is an important milestone in our continuous efforts to being compliant with regulations within the financial industry.

Learn More
No items found.
Learning
This is some text inside of a div block.
Other
downloads
May 17, 2021
May 17, 2021

Platform Architecture Diagram

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Engineering Teams
Learning
This is some text inside of a div block.
Other
downloads
May 16, 2021
May 16, 2021

CAIQ Questionnaire

Secure Code Warrior has completed a publicly available Consensus Assessment Initiative Questionnaire (CAIQ), based on the results of our due diligence self-assessment.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Whitepaper
downloads
May 12, 2021
May 12, 2021

The DevSecOps Super Bowl: How security champions can support your team to victory against late-stage vulnerabilities

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Whitepaper
downloads
March 16, 2021
March 16, 2021

Executive Roundtable Whitepaper - Visma & Blue Prism

How has 2020 changed the way we look at software security, an executive roundtable with Visma.

Learn More
No items found.
Learning
This is some text inside of a div block.
Other
downloads
March 9, 2021
March 9, 2021

The women of mimmit koodaa movement dive into secure coding

Mimmit Koodaa (women who code in Finland) tell us about their secure coding experiences.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Other
downloads
March 9, 2021
March 9, 2021

Teams in a global financial institution go head-to-head in secure coding contest.

See how a global financial organization promoted the importance of securing their banking applications across the world. With fun interactive tournaments.

Learn More
No items found.
Learning
This is some text inside of a div block.
Brochure
downloads
February 15, 2021
February 15, 2021

Missions - Experience the impact of poor code in real-world simulations

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
Learning
This is some text inside of a div block.
Brochure
downloads
February 15, 2021
February 15, 2021

Courses - Build Secure Coding Skills and Competency

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Learning & Development
Engineering Teams
Learning
This is some text inside of a div block.
Video
downloads
January 1, 2021
January 1, 2021

A Step-By-Step Guide to Tournaments

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Engineering Teams
Learning
This is some text inside of a div block.
eBook
downloads
January 1, 2021
January 1, 2021

Your Battle Plan to Defeat the OWASP Top 10

The ten most common security vulnerabilities don’t stand a chance against secure development superheroes like you. This free eBook is your ultimate field guide to understanding each infamous entry in the OWASP Top 10 2021, gaining insight into how each bug operates.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Whitepaper
downloads
January 1, 2021
January 1, 2021

Triumph with OWASP and Secure Code Warrior Tournaments - Whitepaper

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Brochure
downloads
January 1, 2021
January 1, 2021

Tournaments - Build organizational awareness and developer engagement, making secure coding top of mind

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
eBook
downloads
January 1, 2021
January 1, 2021

The Infamous 8: Infrastructure as Code Vulnerabilities to Find and Fix

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Whitepaper
downloads
January 1, 2021
January 1, 2021

The Five-Step Road to DevSecOps Success: How AppSec Professionals Can Thrive in Their Dream Team

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Other
downloads
January 1, 2021
January 1, 2021

The Fastest and Easiest Way to Improve Your Software Security Program

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Guide
downloads
January 1, 2021
January 1, 2021

The Creative CISO's Guide to Transforming Their Security Program

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
No items found.
Learning
This is some text inside of a div block.
Other
downloads
January 1, 2021
January 1, 2021

Introduction to Secure Code Warrior

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Whitepaper
downloads
January 1, 2021
January 1, 2021

Empowering developers to write secure code

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Brochure
downloads
January 1, 2021
January 1, 2021

Empower developers to be the first line of defense and grow your organization's security posture

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Brochure
downloads
January 1, 2021
January 1, 2021

Assessments - Benchmark the secure coding skills of your developers, and build your security posture.

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Learning
This is some text inside of a div block.
Guide
downloads
January 1, 2021
January 1, 2021

AppSec Checklist

Download the AppSec checklist and see if you’re in need of a security lifeline.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
eBook
downloads
January 1, 2021
January 1, 2021

6 Critical Steps Before You Roll Out a Security Uplift Program

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Security Teams
Engineering Teams
Learning
This is some text inside of a div block.
Other
downloads
January 1, 2021
January 1, 2021

2019 AppSec Trend Report

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

Learn More
Engineering Teams
Security Teams
Learning
This is some text inside of a div block.
No resources found. Try another search!