Amy Schurr
As mobile app privacy endures increasing scrutiny, developers and application security managers must prioritize compliance with privacy regulations such as Global Data Protection Regulation (GDPR), the California Consumer Privacy Act (CCPA), the Children’s Online Privacy Protection Act (COPPA) and Federal Trade Commission (FTC) rules to avoid fines and penalties. Large multi-million dollar fines and enforcement […]
The Singapore Cyber Security Agency (CSA) paved the way in establishing national mobile app safety guidelines with the January 2024 introduction of the Safe App Standard. Designed in consultation with industry experts, the Safe App Standard sets a baseline of recommended security controls to ensure developers follow best practices for secure application development. The standard […]
Mobile health (mHealth) apps revolutionize healthcare delivery and transform patient outcomes. mHealth apps empower patients to better manage their health by providing personalized monitoring, tracking and therapeutic support, all from the convenience of their mobile apps. Buoyed by the COVID-19 pandemic and the rise of remote patient monitoring, there are now more than 350,000 health […]
Mobile app development teams often struggle to ship high-quality software on time and on budget. Developers face the pressure of accelerated release cycles, revenue demands, bug fixes, security breaches and compliance and regulatory requirements. Given an intense focus on developer efficiency and user experience, it’s inevitable that security and privacy issues can creep into their […]
The U.S. Cybersecurity & Infrastructure Security Agency (CISA) and Office of Management and Budget (OMB) released a secure software development attestation form on March 11, 2024, in a long awaited followup to Executive Order (EO) 14028. EO 14028, “Improving the Nation’s Cybersecurity,” outlines the federal cybersecurity strategy to reduce software supply-chain risks. The OMB M-22-18 […]
Mobile penetration testing helps businesses defend against cyberattacks, safeguard data privacy and preserve brand reputation. Best practices call for continuous automated mobile application security testing throughout the software developement lifecycle to gain speed and efficiency. However, organizations should augment automation with manual mobile penetration testing for certain high-risk mobile apps to achieve the greatest coverage. […]