Application Security Governance Series
After several requests from customers about information on how enterprise class application security programs are set up, I am writing a series of blogs about my experience helping some large enterprises set up application security teams similar to the ACE team at Microsoft. This series will share lessons learnt at Microsoft IT and other large enterprises.
Application Security Governance 1: Understanding your portfolio
Application Security Governance 2: Mandatory or not?
April 27, 2008 at 4:01 pm
Akshay,
I’m glad that I stumbled across this. My org is trying to set up a application security division. I heard you at the CSO summit. Wanted to thank you for your invaluable advise.
-Cruz