Posts by Ewan Maalerud

Next-Level AppSec: Transforming Secure Development using Automation Platforms
As the rate of application adoption accelerates globally, teams are expected to produce software faster, and often under tight budget…
Application Attacks on the Rise
One alarming trend in the fintech industry is the sharp increase in application attacks. According to recent reports, 64% of…
Why Security Design Reviews are More Effective than Pentesting
Many companies rely on pentesting to achieve compliance and strengthen their security posture. However, pentesting alone cannot identify all of…
The-power-of-Threat-Modeling
The Power of Threat Modeling for Application Security
Threat modeling stands as the cornerstone of modern application security, offering a strategic approach that empowers companies to safeguard their…
Reduce Cybersecurity Risks for Remote or Hybrid Work Environments
The shift to remote work has significantly impacted security threats, as organizations’ digital footprints expand and expose them to new…
How to Minimize False Positives in Automated Application Security Scans
Every time a software development team introduces new code into their Software Development Life Cycle (SDLC), it potentially opens up…
The Challenge with Using Multiple Security Scanners
Development and security teams rely on automated scanners such as SAST, SCA, DAST, and others to scan applications for bugs…
The Importance of Zero Trust in Cybersecurity
What Does Zero Trust Mean in Cybersecurity? Zero trust is a security model in cybersecurity that operates on the assumption…
The Crucial Role of Threat Modeling in Application Security
Threat modeling is a proactive approach aimed at identifying potential threat scenarios specific to your application. Following threat modeling is…
Penetration Testing Execution Standards (PTES)
It’s all too common for AppSec companies to claim they offer vulnerability assessments when in fact they are just doing…