This domain focuses on designing, performing, and analyzing security tests, vulnerability assessments, and audit results.

Application Security Testing (AST) Tools (SAST, DAST, SCA)

      1. Static Application Security Testing (SAST): Analyzes source code (without executing it) to find flaws like buffer overflows or injection issues.
      2. Dynamic Application Security Testing (DAST): Tests running applications to identify vulnerabilities visible to an attacker, such as configuration errors and broken authentication.
      3. Software Composition Analysis (SCA): Scans third-party and open-source libraries for known vulnerabilities (CVEs) and license compliance issues.

Exposure Assessment Platforms (EAP)

Penetration Testing (Pen Test)

cybersecurity research icon

Subscribe to the
Software Analyst

Subscribe for a weekly digest on the best private technology companies.