Blog tag

Application & API Security

Articles from the SimpleRisk blog tagged Application & API Security: governance, risk management, and compliance insights.

Barbed wire fence and security cameras in front of a building

Demystifying Residual Risk with SimpleRisk

Understanding residual risk is crucial in effective risk management, but calculating it can be complex, especially when considering multiple mitigating controls. In this post, we explore how SimpleRisk simplifies the process with an easy-to-understand mitigation percent approach that streamlines your risk reduction efforts.

The New SimpleRisk User Interface

SimpleRisk's Makeover: What's New in July 2024

Get ready for the brand new SimpleRisk user interface, launching on July 26, 2024! After two years of development, this release brings a fresh look, improved security, and enhanced functionality, setting the stage for even more customizations and future enhancements.

How SimpleRisk is impacted by the Log4Shell Vulnerability

Apache Log4j (CVE-2021-44228) and SimpleRisk

SimpleRisk has assessed our risk against the Apache Log4j vulnerability and determined that no customers deployed with our standard deployment instructions, regardless of On-Premise or Hosted environment, should be impacted by this vulnerability.

OWASP Risk Rating Methodology

The OWASP Risk Rating Methodology and SimpleRisk

Risk scoring methodologies vary widely, but understanding how to prioritize risks is key to managing them effectively. In this post, we take a deep dive into the OWASP Risk Rating Methodology, clarifying how it’s calculated in SimpleRisk and addressing common misconceptions.

Two Plus Two Equals Five

Normalizing Risk Scoring Across Different Methodologies

Risk scoring often involves complex matrices, but prioritizing risks effectively is key. In this post, we explore how SimpleRisk’s Classic Risk Scoring methodology ensures consistency across various scoring systems, allowing you to prioritize risks on a uniform scale.

The Security of Open Source vs Closed Source Software

The Security of Open Source vs Closed Source Software

When it comes to software security, is open source or closed source the safer choice? Dive into the pros and cons of transparency, community collaboration, and bug detection to see why SimpleRisk embraces open source for its core while prioritizing security at every step.

The Evolving Risk of Bluekeep

How to Manage the Evolving Risk of Bluekeep (with SimpleRisk)

Ever wondered how risks evolve over time? Dive into this blog post to see how SimpleRisk tracks and manages the changing threat landscape, using the infamous 'Bluekeep' vulnerability as a real-world example!