Application Security Maturity and Frameworks - Francesco Cipollone - ASW #239
Application Security Maturity and Frameworks - Francesco Cipollone - ASW #239

Application Security Maturity and Frameworks - Francesco Cipollone - ASW #239

adilassil

52 min0 plays0 favorites
News
Play

Description

<p>Application security is messy and is getting messier. Modern application security teams are struggling to identify what's more important to fix. Cloud security and application security is getting squeezed all together. Modern vulnerability maturity needs a new approach and guidance. Vulnerability management framework and mature defect management is often overlooked as organizations tend to identify issues and stop there. The devil is usually in the details and time gets burned down in identifying who needs to solve what where. Vulnerability Management Maturity Framework has been created to address that.</p> <p>Segment Resources:</p> <p>Framework: <a href= "https://phoenix.security/vulnerability-management-framework/">https://phoenix.security/vulnerability-management-framework/</a></p> <p>Books on metrics: <a href= "https://phoenix.security/whitepapers-resources/data-driven-application-security-vulnerability-management-are-sla-slo-dead/"> https://phoenix.security/whitepapers-resources/data-driven-application-security-vulnerability-management-are-sla-slo-dead/</a></p> <p>Vulnerability aggregation and prioritization <a href= "https://phoenix.security/whitepapers-resources/whitepaper-vulnerability-management-in-application-cloud-security/"> https://phoenix.security/whitepapers-resources/whitepaper-vulnerability-management-in-application-cloud-security/</a></p> <p>Shift left: <a href= "https://phoenix.security/shift-everywhere/">https://phoenix.security/shift-everywhere/</a></p> <p>Vulnerability management talk: <a href= "https://phoenix.security/web-vuln-management/">https://phoenix.security/web-vuln-management/</a></p> <p>Vulnerability management framework playlist (explained) <a href= "https://www.youtube.com/playlist?list=PLVlvQpDxsvqHWQfqej5Gs7bOd-cq8JO24"> https://www.youtube.com/playlist?list=PLVlvQpDxsvqHWQfqej5Gs7bOd-cq8JO24</a></p> <p>How to act on risk: <a href= "https://phoenix.security/phoenix-security-act-on-risk-calculation/"> https://phoenix.security/phoenix-security-act-on-risk-calculation/</a></p>

Creators

OwenWatch

OwenWatch

Creator