FINMA-Compliance_V02b_Thumbnail

FINMA Compliance: DevSecOps Strategies for Securing the Swiss Financial Ecosystem

The Swiss Financial Market Supervisory Authority (FINMA) sets strict requirements to ensure that financial institutions operating in Switzerland maintain robust security and operational resilience. FINMAโ€™s guidelines are crucial for protecting sensitive financial data, minimizing risks, and maintaining trust in the Swiss financial ecosystem. As part of that, software supply chain security plays an essential role โ€ฆ

CERT-In-Guidelines-Blog_Thumbnail

JFrog Simplifies Compliance with Indiaโ€™s new CERT SBOM Guidelines

Overview The Indian Computer Emergency Response Team (CERT-In) is the national agency responsible for addressing cybersecurity incidents in India. Established in 2004 and operating under the Ministry of Electronics and Information Technology (MeitY), CERT-In is dedicated to enhancing the security of Indiaโ€™s digital infrastructure. The organization plays a vital role in preventing, detecting, and responding โ€ฆ

JFrog ISO-27001-Certification-Blog_Thumbnail

JFrog Achieves ISO/IEC 27001:2022

As part of JFrogโ€™s mission to continuously develop and uphold the highest industry standards in cyber security, we are excited to announce that we have successfully upgraded our ISO certification to the latest version, ISO/IEC 27001:2022. This achievement reinforces our dedication to protecting your data with the high standards of cyber and information security. Understanding โ€ฆ

Get DORA Compliant with JFrog

Navigating DORA Compliance: Software Development Requirements for Financial Services Companies

Regulatory compliance is a common and critical part of todayโ€™s rapidly evolving financial services landscape. One new regulation that EU financial institutions must adhere to is the Digital Operational Resilience Act (DORA), enacted to enhance the operational resilience of digital financial services. The BCI Supply Chain Resilience Report 2023 highlighted that 45.7% of organizations experienced โ€ฆ

Key Take Aways from RSA 2024

The impact of the 2024 RSA Conference on security in San Francisco was beyond expectations.  It was really a fantastic opportunity to meet an amazing group of individuals from all stages of the software supply chain from CISOs to researchers to development and security teams. Our discussions reflected the key challenges facing software security professionals โ€ฆ

swampUP Session Highlights

Top DevOps Experts offer Key Insights at swampUP

With five keynotes and 15 breakout sessions in one day, there was no shortage of important industry knowledge and key insights from this yearโ€™s JFrog swampUP DevOps and DevSecOps user conference. Presenters discussed the role of DevOps at Netflix, how Fidelity migrated to the Cloud, the trend of shifting further left than left, and more. โ€ฆ

JFrogโ€™s Best DevSecOps Blogs of 2021

Always a concern for DevOps teams, security has now become a critical part of developing and releasing software โ€“ a reality reflected on the sharp increase in JFrog blogs about DevSecOps. In fact, we generated so many hard-hitting and instructive blogs about security and compliance in 2021 that we decided our DevSecOps coverage deserved its โ€ฆ

How to set up Software Security and Compliance for Your Artifacts

The simplest way to ensure the safety of all the open source (OSS) components used by your teams and sites, is with a software composition analysis (SCA) tool. You need an automated and reliable way to manage and keep track of your open source usage. With JFrog Xray, you can set up vulnerability and license โ€ฆ

Weโ€™re Bringing Cloud DevOps to Government Clouds on AWS and Azure

Helping software producers achieve compliance with regulatory requirements has been a huge part of our focus at JFrog. Thatโ€™s why many in the most regulated industries such as banking, finance, manufacturing, and retail are our customers for DevOps. Weโ€™re excited to announce that JFrog DevOps Platform solutions โ€“ JFrog Artifactory and JFrog Xray โ€“ are โ€ฆ

Enterprise DevOps: 5 Keys to Success with DevOps at Scale

After getting a taste of DevOpsโ€™ benefits, enterprises naturally seek to widen its adoption. However, the tooling and processes that work for small-scale use cases often fall short when teams try to scale DevOps efforts. You must support all your different teams, toolsets, applications, processes, workflows, release cycles and pipelines โ€” both legacy and cloud โ€ฆ