Best Practices For Application Security Testing In The Era Of Devops And AI
Application security testing is no easy feat. And yet, it’s usually the first topic that most articles about application security address. The reasons are simple: As the pace of application development techniques (and their inevitable vulnerabilities) evolve, AppSec personnel have found themselves caught between the desire to keep pace with their management of security testing requirements and their ability to allow the developer teams to operate in the modern, the fast-paced ecosystem of DevOps and artificial intelligence. To better understand the best practices for conducting AppSec testing in the era of DevOps and AI, it is important to first appreciate the technologies available to us that allow us to do so. At the heart of the modern application security testing , there are five main technologies to be aware of: · Static application security testing (SAST) · Dynami...