SCA, SBOMs, SSDLCs and the security posture around them? We're talking about software security. At the intersection of application security, vulnerability management, and software supply chain security, software security is the scope of practices we employ to defend software assets from unauthorized access, use, and damage. Where the lines between physical infrastructure and software blur (IaC and software-defined systems), software security overlaps with the equivalent domain of product security. Even from the lens of a small business's software shipping operation, the span of software security processes can be considerable and often complicated to build and manage.
Season 3 of the ArmorCode show is here with one goal: let's talk about it.