Security Journey Blog
Here you’ll find the latest news, information, and trends in application security and compliance, plus tips and strategies for writing safer code and building a security culture.

Stay Up-to-Date on all Security Journey news and events.
Featured Articles

New Content for Your Most Pressing & Emerging Vulnerabilities: AI/LLM & CWE Top 25
At Security Journey, we continuously evolve our training content to help organizations stay ahead of the most pressing...

5 Types of Data You Should NEVER Share with AI
Large language models (LLMs) like ChatGPT are powerful tools, but it's crucial to remember that data privacy is paramount.
Read More
Mike talks to Chris Romeo about the growth of champions programs, the Security Champions Framework, and the mistake that organizations make with their programs.
Secure Coding Training Against Injection Vulnerabilities [INFOGRAPHIC]
This infographic breaks down the stats around injection vulnerabilities and how secure coding training can help protect your organization.
Security Champions, Are We Doing It All Wrong? Part 3
This is part 3 in a 3-part series about Security Champions by Michael Burch, host of The Security Champion Podcast. You can read part 1 and part 2 on our website.
How To Improve Your Code Reviews
The key you should know about code reviews – the review is only as good as the developer. Giving your development team effective, secure coding training is the best way to improve your code review process.
Security Champions, Are We Doing It All Wrong? Part 2
This is part 2 in a 3-part series about Security Champions by Michael Burch, host of The Security Champion Podcast. You can read part 1 on our website.
Security Champions, Are We Doing It All Wrong? Part 1
This is part 1 in a 3-part series about Security Champions by Michael Burch, host of The Security Champion Podcast.
Customizing Your AppSec Learning Themes (with Examples)
Are you looking for ways to elevate your AppSec training? First, it's essential to keep in mind that not all learners are the same, and everyone has different learning needs and preferences – whether on an organizational level, team level, or employee level.
Patch Tuesday: March 2023
Following March’s Patch Tuesday updates, it’s important that we don’t forget equally critical patches released earlier in the month.
What is Application Security Training?
Does your organization have application security training? Considering that 95% of data breaches last year were on web apps, now may be the time to invest in comprehensive training that can be applied to everyone within your SDLC.
What Is Secure Coding Training?
That's where secure coding training comes in - it is a proactive measure that can help software developers understand and implement security best practices in their code to protect against potential threats.
6 Tips To Encourage PCI Training Completion [INFOGRAPHIC]
As a program administrator, you have a lot on your plate - including how to get your employees to complete their assigned training. However, with a few small updates, you can help keep your employees engaged in their training programs.