Security News

Check in here for all the late-breaking AppSec news, including details about new vulnerabilities and recent breaches.

Live From RSA: Michael McCaul Keynote – Fight for Our Digital Lives

jlavery's picture
By Jessica Lavery February 15, 2017  | Security News
RSAC Michael McCaul keynote

The RSA 2017 theme of cyberwar and the need for improved national security continued with a presentation by Michael McCaul, Chairman of the House Committee on Homeland Security. Like many of the other speakers I heard today, McCaul danced a political line. But if others were dancing a ballet, he was more of a tap dancer, clearly stomping on the line while others glided around it. He began his... READ MORE

Live From RSA: Brad Smith Keynote – We Need a Cyber Geneva Convention

jlavery's picture
By Jessica Lavery February 15, 2017  | Security News
RSAC Brad Smith

When RSA’s Zulfikar Ramzan finished his keynote discussing technology’s “ripple effect,” Brad Smith, President of Microsoft, took the stage to talk about cyberspace as the new battlefield. He started by pointing out that – unlike when war shifted from land, to the sea, to the air – cyberspace is not physical. Yet the battle can still have... READ MORE

Live From RSA: Zulfikar Ramzan Keynote – Ripples and Technology

jlavery's picture
By Jessica Lavery February 15, 2017  | Security News
RSA 2017: Zulfikar Ramzan

Once John Lithgow left the stage, Zulfikar Ramzan, RSA’s CTO, took the stage to talk about business-driven security. He implored the security professionals in the room to not draw lines between departments, but instead create connections for better collaboration and enhanced security. Sounds a lot like DevOps. Ramzan then spoke a lot about how small events can create larger ripples that... READ MORE

Live From RSA Conference 2017 – The Power of Opportunity

jlavery's picture
By Jessica Lavery February 15, 2017  | Security News
CA Veracode at RSA Conference 2017

It almost didn’t happen, but I made it to the RSA Conference. A series of unfortunately timed winter storms delayed/canceled flights, but I was able to make it out of Boston and to San Francisco only a day late – which meant I only missed the DevSecOps @ RSA Conference 2017 talks on Monday. And the big takeaway after my first day at the conference: it’s all about DevOps. If... READ MORE

How About Some Shared Security Responsibility For Developers?

eschuman's picture
By Evan Schuman February 9, 2017  | Security News
Developers need their fair share of code security responsibility.

With the New Year unfolding, 'tis the season to be reminded that app security has not yet arrived at the optimal state. Consider this piece from Kaspersky's Threatpost pointing out how re-used third-party libraries perpetuate security holes long after they have been discovered. For 2017, the industry needs a change in approach. AppSec is certainly getting better, but enterprise security... READ MORE

Examining Security Spend Reveals Much About Priorities

eschuman's picture
By Evan Schuman February 7, 2017  | Security News

When it is treated as an afterthought, security can never work. When enterprises purchase and write thousands of applications without any formal app security mechanism, they are opening themselves up to breaches. What recent reports show is that there is a real disconnect between the spend on applications and the investment in protecting them.  Gartner is projecting that U.S. enterprises... READ MORE

Podcast: What We Expect to See at RSA 2017

sciccone's picture
By Suzanne Ciccone February 7, 2017  | Security News

The annual RSA Conference is one of the biggest security industry events of the year and, as such, is often a “canary in the coalmine” – signaling the trends, themes and future direction of the security industry. In Episode 2 of CA Veracode’s AppSec in Review podcast, Brian Fitzgerald, CA Veracode Chief Marketing Officer, talks to Evan Schuman about what those emerging 2017 trends and themes... READ MORE

Some Surprises in the New New York Cybersecurity Regulations

eschuman's picture
By Evan Schuman February 2, 2017  | Security News

In the US, there exist no meaningful national cybersecurity rules, but, as a practical matter, that is likely to change this year. But it's not coming from Congress. The catalyst is new rules slated to start in March from the New York State Department of Financial Services. In financial areas, that New York department is typically mimicked by a wide range of other state regulators, along with... READ MORE

Podcast: Making Sense of the New York DFS Cybersecurity Regulations

sciccone's picture
By Suzanne Ciccone January 28, 2017  | Security News

View our new guide for continued learning: Navigating the New York Department of Financial Services' Cybersecurity Regulations The New York Department of Financial Services recently issued proposed regulations for cybersecurity that seek to standardize the way that financial services institutions protect information systems and the business and personal information they manage. Organizations... READ MORE

Podcast: Challenges of the Digital Economy

sciccone's picture
By Suzanne Ciccone January 26, 2017  | Security News

The digital innovations used by companies are making it easier for companies to improve their productivity. They also remove barriers for startups to enter new markets and make our everyday lives easier. However, the digital economy comes with challenges and risks. During this installment of CA Veracode’s AppSec in Review Podcast, Brian Fitzgerald, CMO at CA Veracode discusses the... READ MORE

Love to learn about Application Security?

Get all the latest news, tips and articles delivered right to your inbox.

 

 

 

contact menu