April 14, 2023, 10:47 a.m. | /u/Apprehensive-Nose241

cybersecurity www.reddit.com

Hey guys,

I'm trying to start implementing security in CI/CD pipeline, cause red team activity can't follow the implementation stream fastly.

I would like to ask all of you if OWASP ZAP could be consider a decente tool in order to run DAST on webapps and/or API endpoints in an enterprise network.

I know that such tool are prone to lot of false positive but product like Invicti cost a lot and at the moment are not affordable for me. …

api cd pipeline cost cybersecurity dast endpoints enterprise false positive fastly hey invicti network order owasp owasp zap pipeline product red team run security start stream team tool webapps zap

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Security Officer Hospital Laguna Beach

@ Allied Universal | Laguna Beach, CA, United States

Sr. Cloud DevSecOps Engineer

@ Oracle | NOIDA, UTTAR PRADESH, India

Cloud Operations Security Engineer

@ Elekta | Crawley - Cornerstone

Cybersecurity – Senior Information System Security Manager (ISSM)

@ Boeing | USA - Seal Beach, CA

Engineering -- Tech Risk -- Security Architecture -- VP -- Dallas

@ Goldman Sachs | Dallas, Texas, United States