Security Journey Blog
Here you’ll find the latest news, information, and trends in application security and compliance, plus tips and strategies for writing safer code and building a security culture.
Stay Up-to-Date on all Security Journey news and events.
Featured Articles
Security Journey Unveils Developer Manifesto as the Foundation for a Reimagined Platform in the Age of AI
The manifesto guides a developer-first platform experience with hands-on AI/LLM security training, GitHub-driven risk...
5 Types of Data You Should NEVER Share with AI
Closing the Security Gap in AI
This article ORIGINALLY APPEARED on DEVOPSDIGEST.COM
To examine the growing gap between how software is built and how secure it is, Security Journey brought together a panel of seasoned developers,...
CWE Top 25: What the ‘On the Cusp’ Weaknesses Tell Us About Emerging Threats
Most developers are familiar with the CWE Top 25, the annual list of the most dangerous software weaknesses. But fewer know about the lesser-publicized lists that accompany it, which reveal what’s...
What Is a Virtual Machine and How Do You Use Them?
At Security Journey, we strive to create lessons that are compelling, engaging, and informative. Unlike other secure coding training providers that rely on simulations for hands-on lessons, we take a...
How AI/LLMs Can Help, Hinder Developers
THIS ARTICLE WAS WRITTEN BY Michael Burch FOR cacm.acm.org.
The future of software development lies in striking a balance between the unique strengths of AI and human developers.
OWASP Top 10 Proactive Controls [Complete 2026 Guide]
Instead of chasing threats, it pays to be proactive. OWASP noticed the increase in technology's complexity and interconnectivity and recognized that it would become more difficult to secure our...
From Soft Skills to Hard Data: Measuring Success of Security Champions and Culture Change
The Application Security Endgame
For software-centered businesses, Application Security (AppSec) is one of the most critical enablers of cybersecurity’s broader mission. It addresses risk at the...
Empowering Secure AI Development: Security Journey’s Comprehensive AI/LLM Training Approach
As enterprises rush to integrate AI and LLM capabilities across their workflows, one reality becomes clear: without secure design and development practices, these powerful tools can introduce serious...
Experts Reveal How Agentic AI Is Shaping Cybersecurity in 2025
THIS ARTICLE WAS CONTRIBUTED BY MICHAEL BURCH FOR CYBERSECURITYTRIBE.COM.
It was hard to find an exhibition booth at RSAC 2025 that did not include Agentic AI somewhere within their messaging. Last...
Building Elite AppSec Teams: A Conversation with David Kosorok
This article was written by Dustin Lehr, cohost of The Security Champions Podcast.
Why Secure Code Knowledge Matters for Developers
THIS ARTICLE WAS WRITTEN BY JOHN CAMPBELL FOR DEVOPSDIGEST.COM.
Artificial intelligence (AI) remains a transformative force in organizations, providing decision-makers with an efficient and...