Wrong confirmation ID
  • Email
  • Favorite
  • Download
  • Embed
  • Private Content

Loading…

Flash Player 9 (or above) is needed to view presentations.
We have detected that you do not have it on your computer. To install it, go here.

Vulnerability Management In An Application Security World: AppSecDC

by Denim Group on Nov 17, 2009

  • 1,152 views

Identifying application-level vulnerabilities via penetration tests and code reviews is only the first step in actually addressing the underlying risk. Managing vulnerabilities for applications is mor...

Identifying application-level vulnerabilities via penetration tests and code reviews is only the first step in actually addressing the underlying risk. Managing vulnerabilities for applications is more challenging than dealing with traditional infrastructure-level vulnerabilities because they typically require the coordination of security teams with application development teams and require security managers to secure time from developers during already-cramped development and release schedules. In addition, fixes require changes to custom application code and application-specific business logic rather than the patches and configuration changes that are often sufficient to address infrastructure-level vulnerabilities.
This presentation details many of the pitfalls organizations encounter while trying to manage application-level vulnerabilities as well as outlines strategies security teams can use for communicating with development teams. Similarities and differences between security teams’ practice of vulnerability management and development teams’ practice of defect management will be addressed in order to facilitate healthy communication between these groups.

Accessibility

Categories

Tags

vulnerability management appsecdc dan cornell vulnerability manager application security software security owasp

More...

Upload Details

Uploaded via SlideShare as Adobe PDF

Usage Rights

© All Rights Reserved

Flagged as inappropriate Flag as inappropriate
Flag as inappropriate

Select your reason for flagging this presentation as inappropriate. If needed, use the feedback form to let us know more details.

Cancel

4 Embeds 14

http://denimgroup.typepad.com 10
http://www.slideshare.net 2
http://blog.denimgroup.com 1
http://translate.googleusercontent.com 1

Statistics

Favorites
0
Downloads
34
Comments
0
Embed Views
14
Views on SlideShare
1,138
Total Views
1,152
Post Comment
Edit your comment Cancel

Vulnerability Management In An Application Security World: AppSecDC — Presentation Transcript