Security Journey Blog
Here you’ll find the latest news, information, and trends in application security and compliance, plus tips and strategies for writing safer code and building a security culture.
Stay Up-to-Date on all Security Journey news and events.
Featured Articles
Empower Your Developers, Secure Your APIs: Free OWASP Top 10 Training
The digital world thrives on APIs, the connectors that power seamless interactions between applications and services....
What You Need To Know About Secure Coding Training for PCI DSS v4.0 Requirements
Posts by Security Journey/HackEDU Team
Why You Need a Vulnerability Disclosure Response Plan & How to Develop One
Common Federated Identity Protocols: OpenID Connect vs OAuth vs SAML 2
DevSecOps Best Practices
You’ve decided to integrate DevSecOps into your software development operations. That’s an important first step to improving your product’s overall security by including it into the development...
What Is DevSecOps?
What is PCI Compliance?
If your organization accepts credit card payments, you should be familiar with PCI DSS compliance. No matter your company size -- or how many credit card transactions you process - you are required...
What Are Security Champion Responsibilities?
Drupalgeddon2 (CVE-2018-7600) Vulnerability
Apache Struts 2 Namespace (CVE-2018-11776) Vulnerability
2.3
to 2.3.34
and 2.5
to 2.5.16
of Apache Struts 2, one of the most used Java-based web application frameworks.
How Do You Select Security Champions?
Security champions should be an integral part of your security team. When this position was first introduced five or so years ago as part of the cybersecurity structure, the security champion was...