This talk by Matt Tesauro introduces OWASP DefectDojo, an open source platform designed specifically for DevSecOps professionals struggling to manage multiple applications and security issues. Learn how DefectDojo serves as a comprehensive single pane of glass by aggregating outputs from over 150 different security tools, distilling information, and automating AppSec processes. Discover the platform's powerful features including vulnerability management, report generation, application inventory tracking, and metrics monitoring through its REST-based API. Tesauro shares a real-world case study where implementing DefectDojo increased security assessments from 44 to 414 in just two years—a 9.4x improvement in AppSec program output. Ditch spreadsheets and see how this DevSecOps tool can transform your security workflow and help you make sense of complex security data across your organization.
Overview
Syllabus
OWASP DefectDojo - Matt Tesauro
Taught by
OWASP Foundation