Coffee with a Pinch of AppSec

Logo
Presented by

Christopher Cummings, Principal Consultant

About this talk

Securing your applications requires more than just tools, but which tools do you need? And where do you start? Empirical data shows that 50% of application security issues are design-level problems. You can address these issues with a comprehensive architecture risk analysis (ARA). Threat modelling is also performed as a part of an ARA. It helps determine the effect of theoretical attacks and risks to your application, as well as the consequences of not addressing those risks. It can be performed throughout the SDLC and repeated as often as necessary. In this webinar, we’ll discuss best practices experts use when they perform an ARA, including - The methodology used to perform threat and risk assessments - Risk prioritization - Identifying missing and weak controls - Security flaw mitigation
Related topics:

More from this channel

Upcoming talks (13)
On-demand talks (129)
Subscribers (67615)
Black Duck® offers the most comprehensive, powerful, and trusted portfolio of application security solutions in the industry. We have an unmatched track record of helping organizations around the world secure their software quickly, integrate security efficiently in their development environments, and safely innovate with new technologies. As the recognized leaders, experts, and innovators in software security, Black Duck has everything you need to build trust in your software. As of October 1, 2024 the Synopsys Software Integrity Group is now Black Duck®