Designing for Defense: Architecting APIs with Zero Trust Principles
Renato Losio and a panel of security experts discuss designing for defense and architecting APIs with Zero Trust principles. They explain Zero Trust concepts, address challenges developers face in applying these, and highlight common API vulnerabilities.
GitOps and mutating policies: the tale of two loops
Member post originally published on Nirmata’s blog by Jim Bugwadia Do policies that mutate or generate resources violate GitOps principles? In this blog post, I will show you how policy-based resource…
From Compliance-First to Risk-First: Why Companies Need a Culture Shift
Transitioning from a "Compliancе-First" approach to a "Risk-First" mindset rеcognizеs that compliancе should not be viеwеd in isolation but as a componеnt of a broadеr risk managеmеnt strategy.
GitGuardian/APISecurityBestPractices: Resources to help you keep secrets (API keys, database credentials, certificates, ...) out of source code and remediate the issue in case of a leaked API key. Made available by GitGuardian.