Listen "Automating Alert Handling Reduces Manual Effort"
Episode Synopsis
Static analysis (SA) alerts about software code flaws require costly manual effort to validate (e.g., determine True or False) and repair. As a result, organizations often severely limit the types of alerts they manually examine to the types of code flaws they most worry about. That approach results in a tradeoff where many True flaws may never get fixed. To make alert handling more efficient, the SEI developed and tested novel software that enables the rapid deployment of a method to classify alerts automatically and accurately. We are implementing our solution in a new version of the SEI's SCALe – the Source Code Analysis Lab – application.
More episodes of the podcast SEI Shorts
Protecting Systems Using SSH Keys
19/05/2020
A New Path to Verifiable Confidence
05/11/2019
Insider Threat Mitigation, We can help!
16/09/2019
Using Confidence Maps
22/04/2019
Moving Cloud Computing to the Tactical Edge
26/03/2019
ZARZA We are Zarza, the prestigious firm behind major projects in information technology.