CloudSec Academy

Benvenuto in CloudSec Academy, la tua guida per navigare nella zuppa alfabetica degli acronimi sulla sicurezza del cloud e del gergo del settore. Elimina il rumore con contenuti chiari, concisi e realizzati da esperti che coprono i fondamenti e le best practice.

What is Application Security testing?

Application security testing (AST) is a set of processes designed to detect and address security gaps during the early phases of the software development lifecycle (SDLC). In other words, teams take steps in pre-production to identify and mitigate risks before applications are released into operational environments.

Managed Cloud Security

Team di esperti Wiz

Managed cloud security helps organizations scale protection across cloud environments by outsourcing key operations like detection, response, and compliance monitoring.

Problemi di Sicurezza Cloud: 17 Rischi, Minacce e Sfide

Team di esperti Wiz

Scopri i principali problemi di sicurezza del cloud che affliggono le organizzazioni di oggi. Scopri come affrontare i rischi, le minacce e le sfide per la sicurezza del cloud per proteggere il tuo ambiente cloud.

Guarda la demo di 12 minuti

Guarda come Wiz trasforma la visibilità istantanea in una rapida bonifica.

Per informazioni su come Wiz gestisce i tuoi dati personali, consulta il nostro Informativa sulla privacy.

Wiz starWiz starWiz starWiz star

Che cos'è SSPM? (Gestione della postura di sicurezza SaaS)

La gestione del comportamento di sicurezza SaaS (SSPM) è un set di strumenti progettato per proteggere le app SaaS identificando configurazioni errate, gestendo le autorizzazioni e garantendo la conformità alle normative in tutto il patrimonio digitale dell'organizzazione.

What is Data Risk Management?

Data risk management involves detecting, assessing, and remediating critical risks associated with data. We're talking about risks like exposure, misconfigurations, leakage, and a general lack of visibility.

What are Application Security Frameworks?

Team di esperti Wiz

Application security frameworks are essential guidelines, best practices, and tools designed to help organizations stay consistent in their security practices, meet compliance requirements, and effectively manage risks associated with application security.

How to implement CI/CD security scanning: Best practices

Team di esperti Wiz

CI/CD security scanning is the practice of adding automated security checks into your build and deployment pipelines. This means every meaningful code change is tested for risk before it can reach production.

The top 11 open-source Kubernetes security tools

It’s a good idea to consider a range of Kubernetes security tools. Open source solutions can greatly improve the security of your Kubernetes clusters, so this section explores the top 11 open-source Kubernetes security tools that can help to safeguard your Kubernetes environment.

MTTD and MTTR in Cybersecurity Incident Response

Most incident response teams measure both MTTD and MTTR to not only shorten attackers’ dwell times in their systems but also to gauge the team’s readiness to combat future security incidents and then optimize response times.

Black-box testing explained for security teams

Team di esperti Wiz

Black-box security testing shows what your cloud environment actually exposes to the internet, helping teams focus on reachable and exploitable risk rather than theoretical weaknesses.

Cloud penetration testing: A practical guide

Team di esperti Wiz

Cloud penetration testing is primarily about identities, permissions, trust relationships, and exposed services; it’s not just IP ranges and open ports.

External penetration testing: A practitioner's guide

Team di esperti Wiz

External penetration testing assesses the exploitability of public-facing assets. It doesn’t just determine whether vulnerabilities exist; it also indicates whether attackers can actually reach and leverage them.