The technology landscape is always shifting and those in charge of application security are constantly re-aligning to secure exposed vulnerabilities. When it comes to implementing an effective application security program, a holistic approach to tools and solutions is necessary for success. How do you develop standards for internal audit review? How do you address issues surrounding hot-button technology like SaaS, cloud, and mobile? How do you navigate supplier/vendor contracted terms? Join panelists David Ritenour, Andrew Conte, Thien La and moderator Jerry Kowalski in this discussion surrounding how to design and implement a dexterous appsec program. Session discovery topics: Automated vs. manual review how you train and staff Outsourcing vs. insourcing managing the balance Metrics and reporting executive and technical reporting