securitycompass-logo
  • Products

    Developer-centric Threat Modeling

    Continuously model threats at scale and proactively write code that significantly reduces risks and remediation costs.

    Learn More

    About  Careers  Partners

    SD Elements

    Training

    Product Info

    Overview
    How It Works
    Pricing
    Features
    Content Library
    Integrations
    DevSecOps Services
    Just-In-Time Training

    Solutions

    Overview
    Threat Modeling
    Secure Development

    Industries

    Technology
    Manufacturing
    Financial Services & Insurance
    U.S. Federal Government

    Training

    ELEARNING

    Enterprise
    Software Security Practitioner Suites
    Virtual Lab
    Course Descriptions
  • Services

    Services

    Our services help enterprises meet compliance requirements and raise security standards. We offer eLearning courses in application security, operation security, and compliance that teach secure software development principles to development teams, in addition to general security awareness suitable for non-technical learners.

    About   Careers  Partners

    Advisory

    Security Compass Advisory is now part of Kroll. Read the press release.
    Kroll Logo
    • Overview

      We can help to strengthen your security posture and reduce risk.
    • Cloud Security Services

      Operate smoothly in the cloud while satisfying security and regulatory concerns.
    • Penetration Testing

      Streamline Your Operations with a Penetration Testing Program
    • Red Team Services

      Strengthen Your Defenses With the Full Picture
  • Resources

    Research

    Security Compass’ research team creates insights that challenge the way we think.

    Learn More

    Upcoming Events

    Join us at one of our virtual or in-person events.

    Event Calendar
    About   Careers  Partners

    Resources

    Media

    Blog
    Podcast
    SC In The News
    Videos
    Webinars

    Documents

    Case Studies
    Datasheets
    Guides & Whitepapers
    Research Reports

    Educational

    Infographics
    Training Courses
  • Careers
  • Contact Us
  • Book Demo
  • Mobile Only
    Contact Us
    Book Demo
    About
    Careers
    Partners

Tag: blog

Quantifying Reduced Costs Due to Automation with SD Elements

May 27, 2022
 |  No Comments
 |  Blog

Author: Trevor Young, Security Compass Chief Product Officer In an earlier blog post, we explained why Security Compass commissioned Forrester Consulting to conduct a study […]

Read More →

Microservices and What You Need to Know About Their Security

April 4, 2022
 |  No Comments
 |  Blog

In the past, building an application meant just that: a single, monolithic application built by a single team. When the application was updated, any change […]

Read More →

How to Best Threat Model Cloud-Native Applications

March 22, 2022
 |  No Comments
 |  Blog

Organizations of all sizes are accelerating their move to the cloud. The benefits of instant upward or downward scalability are obvious. As is the avoidance […]

Read More →

Three Important Steps to Launching a Successful Security Training Program

March 14, 2022
 |  No Comments
 |  Blog

Why Security Training Matters When we talk about training, our goal is to align the intrinsic motivations of a learner with the company’s strategy and […]

Read More →

How to Build Interest and Excitement for Your Security Training Program

March 13, 2022
 |  No Comments
 |  Blog

Communication is Vital When an organization launches an exciting new program, such as a security training program, they often think about all the elements required […]

Read More →

The Second Annual Equilibrium Conference Focused on Product Security

March 12, 2022
 |  No Comments
 |  Blog

The Second Annual Equilibrium Conference Focused on Product Security Security Compass, developer of the automated threat modeling solution, SD Elements, is proud to host Equilibrium […]

Read More →

What is DevSecOps and How Can You Start or Mature A Program?

March 11, 2022
 |  No Comments
 |  Blog

Mid-market organizations face the same security, regulatory, and compliance requirements as their larger peers without the same resources. Security resources are scarce. Synopsys’ BSIMM12 report found that […]

Read More →

A Security Champions Program: What It Is and Why You Need One

March 10, 2022
 |  No Comments
 |  Blog

Organizations of all sizes continue to place a high value on software security. At the same time, businesses require faster release cycles to meet user […]

Read More →

Agile Penetration Testing: A Continuous Approach that Won’t Slow You Down

 |  No Comments
 |  Blog

As a product manager, I’ve worked with many companies who made the move to Agile methodologies to develop and release software. Agile offers businesses a […]

Read More →

Contact Tracing: Managing Public Trust Amid Privacy Concerns

 |  No Comments
 |  Blog

Contact tracing apps have become critical tools for managing the global spread of the COVID-19 pandemic — but are we trading-off data privacy to battle […]

Read More →

Posts navigation

1 2 3 … 18 Next

Topics

  • Application Security
  • Authority to Operate
  • Blog
  • CIO
  • CISO
  • DevSecOps
  • Financial Services
  • Government
  • Insurance
  • Manufacturing
  • Risk Assessment
  • Secure Development
  • Security Analyst
  • Security Awareness
  • Software Developer
  • Technology
  • Threat Modeling

ABOUT US

CAREERS

PARTNERS

RESEARCH

SDE SUPPORT

TRAINING SUPPORT

SD ELEMENTS

SD ELEMENTS

Product Info

  • Overview
  • How It Works
  • Content Library
  • Integrations
  • Just-In-Time Training
  • Features
  • DevSecOps Services

Solutions

  • Use Case Overview
  • Threat Modeling
  • Secure Development

Industries

  • Manufacturing
  • Technology
  • U.S. Federal Government
  • Financial Services

TRAINING

  • Enterprise
  • Virtual Lab
  • Software Security Practitioner (SSP) Suites
  • Course Descriptions

ADVISORY

  • Overview
  • Cloud Security Services
  • Penetration Testing
  • Red Team Services

RESOURCES

  • LOG4J2 Information
  • Threat Modeling
  • Secure Development
  • Authority to Operate (ATO)
  • Security Awareness
  • Application Security
Facebook Linkedin Twitter Instagram

Copyright © 2022 Security Compass. All Rights Reserved.

  • Public Vulnerability Disclosure
  • Accessibility
  • Privacy Policy
  • Legal