Maintaining a strong organizational security posture is a demanding task. Most best practices – e.g. CIS Controls, the OWASP Vulnerability Management Guide – advocate a continuous program of asset discovery and vulnerability management. Due to fundamental changes in infrastructure provisioning and paradigm shifts like Infrastructure as Code (IaC), most organizations had to shift their regular vulnerability assessments to a more frequent pattern. Adoption of Agile and DevOps practices in managing infrastructure, as well as frequent … More
The post Review: ThreadFix 3.0 appeared first on Help Net Security.