July 26, 2022, 5:48 p.m. | Intesar Shannan Mohammed

DEV Community dev.to


Developers and early-stage startups build REST APIs to enable mobile, web, and API applications. Most APIs are public-facing and seldom go through a proper security testing cycle.


According to Gartner, APIs have now become the most attack vector. Ahead of networks, fishing attacks, etc. Bots can scan and detect public-facing APIs, and once they discover vulnerabilities, they continuously exploit them.


Most applications fall into compliance categories like SOC 2 for technology, PCI DSS for payments, HIPAA for medical privacy, and …

api api security api security testing rest rest api security security testing testing

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Information Security Engineers

@ D. E. Shaw Research | New York City

Information Systems Security Officer (ISSO), Junior

@ Dark Wolf Solutions | Remote / Dark Wolf Locations

Cloud Security Engineer

@ ManTech | REMT - Remote Worker Location

SAP Security & GRC Consultant

@ NTT DATA | HYDERABAD, TG, IN

Security Engineer 2 - Adversary Simulation Operations

@ Datadog | New York City, USA