Security Control Framework
How information security practices help everyone

How information security practices help everyone

9/14/2020 · Heather Simpson

What this post added

This post details the application security engineer's role in collaborating with Growth and Enablement teams, assessing risk, reviewing code, and driving security-conscious outcomes. It highlights the initiative to enable GitLab's secure tooling (Container Scanning, SAST, DAST, License Compliance, Dependency Scanning) in major product repositories by configuring CI/CD pipelines. The post also emphasizes the importance of writing unit tests for unexpected cases to improve application security and prevent vulnerabilities.

Read the original post ↗