Organizations are seeing more attacks on their applications, leading to concerns. Penetration testing and code scanning are helpful, but not enough.
A lot of companies do not have sufficient security measures in place during their SDLC which leads to more vulnerabilities. To address this, it is important to invest in secure coding training and consistent education for developers and support teams. This will enable teams to identify and prevent issues before they even get to scanning tools or production.
In a video, Amy Baker discusses the importance of security education in solving this application security issue.