Security Journey Blog
Here you’ll find the latest news, information, and trends in application security and compliance, plus tips and strategies for writing safer code and building a security culture.

Stay Up-to-Date on all Security Journey news and events.
Featured Articles

Developer-Tailored Secure Code Training: A New Approach from Security Journey
Security training for developers has traditionally been a one-size-fits-all experience—generic, compliance-driven, and...

New Content for Your Most Pressing & Emerging Vulnerabilities: AI/LLM & CWE Top 25
At Security Journey, we continuously evolve our training content to help organizations stay ahead of the most pressing...
Security Champions are Key to Successful Threat Modeling Facilitation
5 Tips for Successful Cybersecurity Threat Modeling at Your Organization
With cybersecurity regularly getting the spotlight, focusing on securing our systems and data has become essential. One of the most efficient ways to start this is with threat modeling. This...
How To Use Threat Modeling to Minimize the Attack Surface of Your Application
Make AppSec Training Accessible for Everyone with WCAG
Security Journey Launches Enterprise-Grade Security and Accessibility Features for World-Class Secure Coding Training Platform
Boost Your Security with These 3 Game-Changing Threat Modeling Tools
In this blog post, we will explore three top threat modeling tools: Microsoft Threat Modeling Tool, IriusRisk, and OWASP Threat Dragon.
Top 10 Biggest Security Threats to Your Products
Practical Threat Model Creation: A Step-by-Step Guide & Free Template
Enhance Your Security: Unveiling the 3 Key Benefits of Threat Modeling
It is crucial to prioritize security throughout the entire lifecycle of a product or application, from conception to release. Threat modeling is an essential step in this process.
Security Journey Announces New AI/LLM and API Learning Paths to Teach Development Teams How to Build Software Securely
In-House vs. Vendor: Which is the Best Way to Provide Secure Coding Training?