Do you know what a STIG is?
Not who as in the Top Gear guy, but what. It's from the Department of Defense and stands for Security Technical Implementation Guides. One of these guides covers Application Security and Development. Just wondering if anyone out there in the yellowverse has come into contact with any of these, what the review process was like, and whether you uncovered any tools to help automate this review.
John
Category IT Governance