Security Control Framework
How GitLab's application security dashboard helps AppSec engineers

How GitLab's application security dashboard helps AppSec engineers

7/7/2020 · Fernando Diaz

What this post added

This post details how GitLab's application security dashboard helps AppSec engineers by outlining four key capabilities: finding vulnerabilities with security scans (SAST, DAST, Container Scanning, Dependency Scanning, License Scanning), managing vulnerabilities with the Security Dashboard (group and project level views, integration with third-party scanners), auditing vulnerabilities (tracking dismissed issues, reasons, and creating confidential issues/branches), and managing software licenses (setting policies and blocking MRs with unacceptable licenses). It highlights the integration of security scans into CI/CD pipelines and merge requests.

Read the original post ↗