This document provides an overview of IBM's vision and roadmap for application security. It discusses the changing security landscape and growing threats from web applications. It outlines IBM's acquisition of Ounce Labs to strengthen its capabilities in static analysis security testing. The roadmap focuses on adding new language support, improving string analysis, enhancing the static analysis engine, and tighter integration with development tools. It also introduces the AppScan Tester edition to embed security testing into the QA process.