Security Journey Blog
Here you’ll find the latest news, information, and trends in application security and compliance, plus tips and strategies for writing safer code and building a security culture.

Stay Up-to-Date on all Security Journey news and events.
Featured Articles

Developer-Tailored Secure Code Training: A New Approach from Security Journey
Security training for developers has traditionally been a one-size-fits-all experience—generic, compliance-driven, and...

New Content for Your Most Pressing & Emerging Vulnerabilities: AI/LLM & CWE Top 25
At Security Journey, we continuously evolve our training content to help organizations stay ahead of the most pressing...
Posts by Security Journey/HackEDU Team
Security Champions, Are We Doing It All Wrong? Part 1
This is part 1 in a 3-part series about Security Champions by Michael Burch, host of The Security Champion Podcast.
Customizing Your AppSec Learning Themes (with Examples)
Are you looking for ways to elevate your AppSec training? First, it's essential to keep in mind that not all learners are the same, and everyone has different learning needs and preferences – whether on an organizational level, team level, or employee level.
Patch Tuesday: March 2023
Following March’s Patch Tuesday updates, it’s important that we don’t forget equally critical patches released earlier in the month.
What is Application Security Training?
Does your organization have application security training? Considering that 95% of data breaches last year were on web apps, now may be the time to invest in comprehensive training that can be applied to everyone within your SDLC.
What Is Secure Coding Training?
That's where secure coding training comes in - it is a proactive measure that can help software developers understand and implement security best practices in their code to protect against potential threats.
6 Tips To Encourage PCI Training Completion [INFOGRAPHIC]
As a program administrator, you have a lot on your plate - including how to get your employees to complete their assigned training. However, with a few small updates, you can help keep your employees engaged in their training programs.
Top 8 PCI DSS Compliance Tips
In today's world, the security of sensitive data has become more critical than ever. PCI DSS standards were created to protect credit cardholders' data from theft and fraud. Any organization that accepts credit card payments must comply with these standards.
What The National Cyber Strategy Means For You [2023]
The new National Cyber Strategy from the Biden administration aims to strengthen the nation's cybersecurity and protect against cyber threats. The strategy emphasizes cybersecurity more, with increased regulation, collaboration, and funding for cybersecurity initiatives.
Measuring the ROI of AppSec Training [INFOGRAPHIC]
Security Journey provides engaging and effective AppSec training to developers and all members of the SDLC. This infographic breaks down the ROI of AppSec training for an organization with the calculations.
[SiliconANGLE] White House Publishes New National Cybersecurity Strategy
This article was written by Maria Deutscher for Silicon ANGLE. The White House has released a national cybersecurity strategy that seeks to make the digital ecosystem more resilient against hacking campaigns.
[Hackernoon] ChatGPT Will Change Cybersecurity…but How?
This article was written by John Campbell for HackerNoon. ChatGPT, OpenAI's impressive chatbot, has fueled a leap in the global understanding of the potential of artificial intelligence (AI).