Software Development Life Cycle (SDLC): Phases and Methodologies
Learn more about SDLC (Software Development Life Cycle) phases and methodologies that define the entire software development procedure step-by-step.
Article
Vulnerability Assessment: Tools and Steps to Improve Security Posture
Learn more about vulnerability assessment to stay secure and efficiently evaluate the state of security weaknesses and flaws in your systems and environments.
Article
Sichere Programmierungspraktiken, die Sie kennen sollten
Eine sichere Programmierung erfordert eine höhere Programmiersprache und folgt strikten Grundsätzen, um potenzielle Sicherheitslücken schon während der Entwicklung zu schließen.
Article
Docker-Sicherheits-Scans – Leitfaden 2023
Erfahren Sie mehr über Docker-Sicherheits-Scans. In unserem Cheatsheet erklären wir die fünf Schritte, wie Sie Ihre Docker-Images auf Schwachstellen überprüfen.
Article
Tipps für sichere cloudnative Anwendungen
Unter cloudnativer Sicherheit versteht man den Schutz von Plattformen, Infrastrukturen und Anwendungen in der Cloud. Dabei werden Sicherheitsaspekte im gesamten Entwicklungsprozess mit einbezogen.
Article
Anwendungssicherheit: Der Guide
Jede Aktion zur Beseitigung von Schwachstellen, alle Maßnahmen zur Stärkung des Security-Status und zum Schutz sensibler Daten, in sämtlichen Phasen des App-Lifecycle: Das ist Anwendungssicherheit.
Article
Application Security Testing (AST) - Top Questions Answered
Application security testing is a key step in the SSDLC. Learn more about types of application security testing, app sec testing tools, and get started with building secure apps.
Article
Infrastructure as Code in a DevSecOps World
Learn more about infrastructure as code (IaC), what it is exactly, and the security implications of using IaC in the real world.
Article
SAST vs. DAST: what is the difference and how to combine the two?
Dynamic security testing (DAST) uses the opposite approach of SAST. Whereas SAST tools rely on white-box testing, DAST uses a black-box approach.
Article
What is CI/CD? CI/CD pipeline and tools explained
Learn more about CI/CD continuous integration and continuous delivery, CI/CD pipeline, and framework. CI/CD as the foundation for DevSecOps.
Article
Node.js licensing and security considerations
With the Node.js runtime environment becoming more popular, it's important to know about Node.js licensing and security risks for your web applications.
Article
Copyleft: The rise of open-source software licensing
Learn more about most popular copyleft licenses, terms, conditions, difference of copyleft vs copyright. Find out what’s best for your team.