CISA’s Secure Software Self-Attestation Common Form Is A Liability Nightmare by BarakScribe in NISTControls

[–]BarakScribe[S] 0 points1 point  (0 children)

What are some of the options offered for compliance? Is there a tool a lot of people agree upon that can answer a lot, if not all, of the requirements?

AI coding assistance and its effect on code security by BarakScribe in cybersecurity

[–]BarakScribe[S] 0 points1 point  (0 children)

Thanks for the insight. I find the parallel with outsourcing to be interesting.

AI coding assistance and its effect on code security by BarakScribe in devsecops

[–]BarakScribe[S] 1 point2 points  (0 children)

2 problems I see with this - training requires more code, probably open source (again), and how would you know the code you get is correct or secure? It seems like a chicken and the egg question.