Tools and Templates
Application Testing (SAST/DAST)
Secure Coding Standards for App Development
The parameters defined in this template reflect current industry best practices, drawn from sources such as OWASP, NIST, and CIS.
Using this customizable template gives you access to:
- A complete, ready-to-use set of secure standards covering authentication, data protection, API security, mobile security, cloud controls, and more. All aligned to OWASP, NIST, CIS, and industry best practices.
- Actionable parameter guidelines that developers can directly implement without needing to interpret lengthy standards.
- A unified baseline for DevSecOps teams to ensure consistent security practices across web, mobile, API, and cloud applications, while allowing easy customization for different risk levels and environments.
Request your free content download
Find similar resources
Tools and Templates
Security Policies and Strategy
5 Key Steps to Mapping External Exposure of GenAI Applications
Step one in a three-part series, this template breaks down the process of assessing your external exposure from generative AI applications adopted by your organization.

Jake Williams
Tools and Templates
Threats and Vulnerabilities
Application Pen Test Program Framework
This document outlines a framework for establishing an application pen testing program. It serves as a guide for application security managers, highlighting the essential components and documentation required to develop an effective program.

Jason Gillam
Guide
Security Policies and Strategy
AI Acceptable Use Policy Template
Find best practices to help create and govern your organization’s policy on acceptable generative AI use cases.


Joshua Marpet
Jason Garbis
We use cookies to deliver you the best experience on our website. By continuing to use our website, you consent to our cookie usage and revised Privacy Policy.