No items found.
Event

Managing Open Source Vulnerabilities for PCI DSS Compliance

Date
June 18, 2024
Time
9:00am - 9:30am PT
Event Type
Virtual

PCI DSS version 4.0 contains a host of new practices that will become requirements on March 31, 2025. In this talk, we focus on a change that looks — at first glance — to be minor, but in reality could have significant implications for Application Security teams: the requirement to manage all internal vulnerabilities, regardless of criticality.

We’ll focus on how to address open source software (OSS) vulnerabilities, including:

  • What it means to “manage vulnerabilities”
  • Why OSS presents the greatest risk to compliance with this new requirement
  • The security tool problem preventing organizations from addressing OSS risk
  • Getting accurate dependency inventories and prioritizing remediation
  • Setting up guardrails to ensure developers select safe OSS dependencies
The first part of the EU Cyber Resiliency Act comes into effect on September 11th. Are you ready?
The first part of the EU Cyber Resiliency Act comes into effect on September 11th. Are you Ready?
Read more
Better models are making agent patch review more expensive, not less
Agent fixes got 47% cheaper to generate. Review still costs ten times more.
Read more
GPT-6 Astra on Codex - the Biggest Codex Leap to Date
GPT-6 Astra on Codex - the Biggest Codex Leap to Date
Read more
The first part of the EU Cyber Resiliency Act comes into effect on September 11th. Are you ready?
The first part of the EU Cyber Resiliency Act comes into effect on September 11th. Are you Ready?
Read more
Better models are making agent patch review more expensive, not less
Agent fixes got 47% cheaper to generate. Review still costs ten times more.
Read more
GPT-6 Astra on Codex - the Biggest Codex Leap to Date
GPT-6 Astra on Codex - the Biggest Codex Leap to Date
Read more

Want to stay in the loop?

Sign up for our newsletter.