Topic
Application security & DevSecOps
SAST, SCA, DAST, containers, SBOMs and penetration testing, integrated into secure delivery.
Case studies
Articles
Making security findings comparable across tools
How to turn SAST, SCA, DAST and container scan output into one schema, with stable fingerprints, CWE and CVE mapping, normalised severity and expiring suppressions.
From detection to verified remediation
Closing the loop on vulnerabilities with ownership routing, severity-based SLAs, targeted re-scans, regression tests and metrics that leadership and auditors can trust.
Work with me
Working on a problem like the ones above? I am glad to compare notes.