Live Webinar: Go inside the biggest OWASP MAS update yet with the person who led it. Live Webinar: Go inside the biggest OWASP MAS update yet with the person who led it. Register Now →
magnifying glass icon

Best Practices

DevSecOps Best Practices: Integrating Mobile AppSec Testing Into the Dev Pipeline

By Amy Schurr / December 12, 2018 / Comments Off on DevSecOps Best Practices: Integrating Mobile AppSec Testing Into the Dev Pipeline

As DevSecOps teams incorporate mobile application security testing into the build pipeline, they need the process to be painless. Follow these smart strategies for selecting and implementing an automated testing tool that keeps pace with the mobile app release cycle and helps ensure security, compliance and privacy.

Recognize the Security Risks of Low and No-Code Mobile Apps

By Amy Schurr / December 5, 2018 / Comments Off on Recognize the Security Risks of Low and No-Code Mobile Apps

Popular low or no-code mobile application development platforms empower new ranks of citizen developers. However, the tools can also shortchange application security and must be properly tested before the apps are rolled out. Learn some best practices for safely incorporating these app dev platforms into your organization.

Q&A: What Is It Like to Be a Mobile Security Researcher?

By Amy Schurr / October 31, 2018 / Comments Off on Q&A: What Is It Like to Be a Mobile Security Researcher?

Keeping pace with ever-increasing mobile security threats is a team sport that requires the support and performance of many key players. Here at NowSecure, our security research team spends countless hours helping our customers find and fix vulnerabilities to secure their mobile apps. The research group at NowSecure holds multiple responsibilities. Part of its mission […]

Slashing the Cost of Mobile AppSec Testing

By NowSecure Marketing / October 17, 2018 / Comments Off on Slashing the Cost of Mobile AppSec Testing

Many organizations struggle with mobile appsec testing due to a lack of resources, technology challenges, insufficient skills and a lack of understanding about the costs and economics of various testing options. At the same time, they face ever-increasing levels of risk, particularly in industries commonly targeted by hackers. What they don’t realize is organizations can deploy automated tools that deliver continuous security testing every day for less than half the cost of an outsourced pen test.

5 Ways to Conquer the Cybersecurity Skills Shortage

By Amy Schurr / October 10, 2018 / Comments Off on 5 Ways to Conquer the Cybersecurity Skills Shortage

Follow these five tips for contending with the cybersecurity skills shortage by broadening your organization’s approach to filling jobs.

A 3-Part Mobile App Security Testing Checklist to Build Your Program

By NowSecure Marketing / August 23, 2018 / Comments Off on A 3-Part Mobile App Security Testing Checklist to Build Your Program

To help security analysts and developers craft a more effective list of mobile testing requirements, we’ve assembled a Mobile App Security Testing Checklist of three key questions to address

A Security Analyst’s Guide to Network Security Configuration in Android P

By Amy Schurr / August 15, 2018 / Comments Off on A Security Analyst’s Guide to Network Security Configuration in Android P

Network Security Configuration is an XML file in which developers customize network security settings for an Android app. Let’s examine several benefits of using Network Security Configuration in Android mobile apps and dive into best practices for implementing this feature.

Mobile App Security Standards to Look for in Your Testing Tools

By Amy Schurr / August 8, 2018 / Comments Off on Mobile App Security Standards to Look for in Your Testing Tools

As organizations dig into secure coding and testing best practices, they quickly discover a variety of sometimes confusing approaches and solutions for mobile app security testing. Security professionals and leaders alike can ease the process of finding the testing tools that best fit their needs by requiring mobile app security standards in their selection criteria.

TLS 1.3: 4 Key Takeaways for Mobile Security Teams

By Amy Schurr / April 24, 2018 / Comments Off on TLS 1.3: 4 Key Takeaways for Mobile Security Teams

Understanding how TLS 1.3 protocols will affect mobile development and security practices is critical for any appdev or appsec team.

New Year’s resolution for iOS developers? Support App Transport Security (ATS)

By NowSecure Marketing / December 29, 2017 / Comments Off on New Year’s resolution for iOS developers? Support App Transport Security (ATS)

Eighty percent of the top free iOS apps don’t support App Transport Security – does yours? Don’t delay. Protect your organization and users. Read on for tips on how to transition to ATS support.