Subscribe
Sign in
Home
AppSec Ownership Model
AppSec Terrain Check
About
Latest
Top
How I failed to run from AppSec
Or: Why we all should take career planning less seriously.
Jul 28
•
Anne Bendix
1
1
How do you make developers fix SAST findings?
You don't. You're asking the wrong question.
Jul 21
•
Anne Bendix
1
1
The Gambler's Playbook: Seven rules to win in AppSec
Advice for AppSec Leads from Kenny Rogers' country song
Jul 14
•
Anne Bendix
1
2
The Pushing Fallacy: Why pushing harder makes your system more fragile
You do everything to keep your AppSec system running. That's exactly the problem.
Jul 7
•
Anne Bendix
1
1
June 2026
Control is killing your AppSec program (and eventually your company)
Trust is not the enemy. It's the answer.
Jun 30
•
Anne Bendix
1
January 2026
Role: The Catalyst
For consultants — and those who might hire them: here's how to leverage external expertise without long-term dependency.
Jan 28
•
Anne Bendix
3
Role: The Advocate
For security champions: here's what you own in application security and what explicitly not.
Jan 28
•
Anne Bendix
3
Role: The Backbone
For executive leadership: here's how to safely delegate and still support your application security initiative.
Jan 28
•
Anne Bendix
3
Role: The Owner
For AppSec leaders: here's what you own, and what you should delegate to stay sane.
Jan 28
•
Anne Bendix
3
Role: The Gatekeeper
For project leaders: Enable secure development without slowing your team down.
Jan 28
•
Anne Bendix
3
Role: The Executor
For software developers and architects: here's what you own in application security and what you support.
Jan 28
•
Anne Bendix
3
Background: Why secure software development depends on six roles
For AppSec Leads: Understand the perspective behind the AppSec Ownership Model and validate it for yourself
Jan 28
•
Anne Bendix
3
This site requires JavaScript to run correctly. Please
turn on JavaScript
or unblock scripts