A CISO's Guide To Application Security - Part 5: Justifying an Investment in AppSec<p style="text-align: left;"><em>This post is the last in a 5-part series on Application Security, or ?AppSec?. <br /></em></p><p style="text-align: left;"><strong>By Fergal Glynn</strong></p><p><img src="https://threatpost.com/sites/default/files/fergal2_4.jpg" alt="Fergal Glynn" title="Fergal Glynn" style="float: left;" border="0" height="100" width="100" />This blog post series has examined the growing threats to software, defined the components of a sound AppSec program, described an evolutionary path to AppSec maturity, and considered a number of tools and technologies worthy of investment. Ultimately, it is the Chief Information Security Officer (CISO) or e<strong></strong>quivalent?s responsibility to mitigate the enterprise?s level of software risk as part of a comprehensive infosec strategy. In this, the final post in this series, let?s review the return on investment possible from a sound AppSec program, including ways to build a business case for further investment in this critical IT security discipline.</p><p><a href="http://threatpost.com/en_us/blogs/cisos-guide-application-security-part-5-justifying-investment-appsec-051612" target="_blank">read more</a></p>
Source:
A CISO's Guide To Application Security - Part 5: Justifying an Investment in AppSec