Anzeige
Mehr »
Sonntag, 15.06.2025 - Börsentäglich über 12.000 News
Von SOL zu BTC: Pioneer aktiviert automatisierte Bitcoin-Treasury über Kora AI Beta
Anzeige

Indizes

Kurs

%
News
24 h / 7 T
Aufrufe
7 Tage

Aktien

Kurs

%
News
24 h / 7 T
Aufrufe
7 Tage

Xetra-Orderbuch

Fonds

Kurs

%

Devisen

Kurs

%

Rohstoffe

Kurs

%

Themen

Kurs

%

Erweiterte Suche
ACCESS Newswire
220 Leser
Artikel bewerten:
(1)

Security Journey: Security Leaders are Calling for Industry to Take Action and Programmatically Improve Secure Coding Education

PITTSBURGH, PA / ACCESSWIRE / October 25, 2022 / Security Journey, a best-in-class application-security education company, today launched a report revealing that security experts across industry and academia are calling for greater focus on programmatic secure coding training to solve the 'AppSec dilemma'. As a group, the application security leaders acknowledged the gap that academia has left when teaching developers how to deliver code securely, and outlined the ways enterprises can make this education possible.

Currently, none of the top 50 undergraduate computer science programs in the U.S. require a course in code or application security. Yet the attack surface is growing; new vulnerabilities within the NIST National Vulnerability Database increased by over 200% from 2015 to 2021. The Security Journey report was born out of a roundtable discussion, conducted during cybersecurity awareness month, to find a solution to this lack of secure coding education for developers and others involved in the Software Development Lifecycle (SDLC).

Roundtable participants include a Professor in the Human Computer Interaction Institute at Carnegie Mellon University, a Program Manager for Security Awareness and Education, Security Journey's CEO, Director of Content Engineering, and Security Education Evangelist, Amy Baker, as Moderator. The roundtable established key differences between security 'awareness' and 'education', noted the areas that AppSec regulation can go further, and concluded that enabling more continuous and programmatic education is essential.

To make this education possible, the report from the roundtable discussion identifies key shifts that organizations need to make, which include:

  • Investment needs to be driven down from the top: Key decision-maker, financial, and organizational support to advance 'shift left' initiatives.
  • Training must be relevant to each professional: Training programs bespoke to the challenges that developers face in their day-to-day, complementing their current stage of knowledge.
  • Industry and academia collaboration: Computer science and computer engineering professors examining curriculum to ensure security is included, making it easier for industry to embrace security from the start.

"Education is an underrated but essential part of computer security. The industry is currently severely under-educating all developers out there on really basic aspects of security and it's hurting organizations." Says Jason Hong, Professor in the Human Computer Interaction Institute at Carnegie Mellon University. "Education in academia and industry now needs to start focusing more on the human side of things - how do we improve people's knowledge, where are their biggest gaps in understanding, and how do we incentivize and motivate not just developers but the corporations that employ them?"

Amy Baker, Security Education Evangelist at Security Journey added, "We need to bridge the gap between what development teams need to know about cybersecurity, and what education is provided to them either as part of undergraduate curriculum or by their employers. It's not an impossible feat by any means, and we have a truly exciting opportunity now to improve application security knowledge in industry and academia.

To read all insights from the Security Journey Education vs. Awareness roundtable discussion, download the full paper.

About Security Journey

Security Journey helps enterprises reduce vulnerabilities through application security education for developers and everyone in the SDLC. Their programmatic approach provides video-based and text-based lessons along with live sandbox code experiments and real-world application exercises. All culminating in a collective security-first culture among development teams.

HackEDU's spring 2022 acquisition of Security Journey brings together two powerful platforms to provide application security education for developers and the entire SDLC team. The two officially became one in August 2022 and are now Security Journey. Two approaches, one path to building a security-first development culture. Learn more and try our training at www.securityjourney.com.

SOURCE: Security Journey

View source version on accesswire.com:
https://www.accesswire.com/721758/Security-Leaders-are-Calling-for-Industry-to-Take-Action-and-Programmatically-Improve-Secure-Coding-Education

© 2022 ACCESS Newswire
Die USA haben fertig! 5 Aktien für den China-Boom
Die Finanzwelt ist im Umbruch! Nach Jahren der Dominanz erschüttert Donald Trumps erratische Wirtschaftspolitik das Fundament des amerikanischen Kapitalismus. Handelskriege, Rekordzölle und politische Isolation haben eine Kapitalflucht historischen Ausmaßes ausgelöst.

Milliarden strömen aus den USA – und suchen neue, lukrative Ziele. Und genau hier kommt China ins Spiel. Trotz aller Spannungen wächst die chinesische Wirtschaft dynamisch weiter, Innovation und Digitalisierung treiben die Märkte an.

Im kostenlosen Spezialreport stellen wir Ihnen 5 Aktien aus China vor, die vom US-Niedergang profitieren und das Potenzial haben, den Markt regelrecht zu überflügeln. Wer jetzt klug investiert, sichert sich den Zugang zu den neuen Wachstums-Champions von morgen.

Holen Sie sich den neuesten Report! Verpassen Sie nicht, welche 5 Aktien die Konkurrenz aus den USA outperformen dürften, und laden Sie sich das Gratis-PDF jetzt kostenlos herunter.

Dieses exklusive Angebot gilt aber nur für kurze Zeit! Daher jetzt downloaden!
Werbehinweise: Die Billigung des Basisprospekts durch die BaFin ist nicht als ihre Befürwortung der angebotenen Wertpapiere zu verstehen. Wir empfehlen Interessenten und potenziellen Anlegern den Basisprospekt und die Endgültigen Bedingungen zu lesen, bevor sie eine Anlageentscheidung treffen, um sich möglichst umfassend zu informieren, insbesondere über die potenziellen Risiken und Chancen des Wertpapiers. Sie sind im Begriff, ein Produkt zu erwerben, das nicht einfach ist und schwer zu verstehen sein kann.