Copyright © SafeStackhttps://validator.w3.org/feed/docs/rss2.htmlUpdateshttps://safestack.io?utm_source=noticeable&utm_campaign=safestack&utm_content=other&utm_id=ljF3QqAGgRt6R8XFJPez.NSm6SiKyxP0dkyRJt85K&utm_medium=newspageenThu, 26 Sep 2024 11:40:41 GMThttps://noticeable.io[email protected] (SafeStack)[email protected] (Noticeable Team)https://storage.noticeable.io/projects/ljF3QqAGgRt6R8XFJPez/newspages/NSm6SiKyxP0dkyRJt85K/01h796e5g8w3a9ahbv7cbmyp67-header-logo.pngUpdateshttps://safestack.io?utm_source=noticeable&utm_campaign=safestack&utm_content=other&utm_id=ljF3QqAGgRt6R8XFJPez.NSm6SiKyxP0dkyRJt85K&utm_medium=newspagehttps://storage.noticeable.io/projects/ljF3QqAGgRt6R8XFJPez/newspages/NSm6SiKyxP0dkyRJt85K/01h796e5g8w3a9ahbv7cbmyp67-header-logo.png#5a118dffEZLaDjJcqLUbBZGNggTTThu, 26 Sep 2024 11:40:18 GMT[email protected] (SafeStack)Smaller, More Manageable Courses Now Available – With Larger Courses Still an Option/publications/smaller-more-manageable-courses-now-available-with-larger-courses-still-an-optionWe’re excited to announce a key update to our learning platform: modules from some of our larger courses are now also available as smaller, more focused individual courses. This change is designed to enhance the learning experience by...We’re excited to announce a key update to our learning platform: modules from some of our larger courses are now also available as smaller, more focused individual courses. This change is designed to enhance the learning experience by making it easier for learners to complete courses at a more manageable pace.

By breaking down our larger courses, we aim to support learners in achieving their goals without feeling overwhelmed, making their secure development training even more achievable!

What’s New?

  • Smaller Course Sizes: Our longer, content-heavy courses are now also available as much smaller, digestible courses. This means learners can absorb information in bite-sized pieces, reducing the pressure of completing extensive modules, all in one go.

  • Flexible Learning: With smaller courses

    • Learners can now spread their training over several weeks or months. This flexibility allows them to focus on one module at a time, ensuring better retention and a more manageable workload.

    • Group leaders can add more focused training modules in learning paths, making the learning paths much smaller, more achievable and better customised for your specific training needs.

  • Larger Courses Still Available: If you prefer the original format, don’t worry! The larger, comprehensive courses remain available for those who enjoy diving deep into a topic all at once.

  • Seamless Progress Tracking: As an added bonus, any progress made in the smaller modules will automatically carry over into the corresponding larger course (and the other way around). This ensures that no effort is lost, and learners can switch between formats without missing a beat. If you have already completed one of these modules in the original course, this completion will be carried over into the smaller course as well.

What courses are now available as smaller courses?

The Finding and Fixing Web Application Security Vulnerabilities course is about 4 hours and 33 minutes long. It contains 13 modules in total.

All its core modules (except for the introduction) are now available as individual courses:

  1. Finding and Fixing: Object Access Vulnerabilities

  2. Finding and Fixing: Enumeration Vulnerabilities

  3. Finding and Fixing: SQL Injection Vulnerabilities

  4. Finding and Fixing: Configuration Vulnerabilities

  5. Finding and Fixing: Operating System Injection Vulnerabilities

  6. Finding and Fixing: Passwords and Authentication

  7. Finding and Fixing: Session Vulnerabilities

  8. Finding and Fixing: Cross Site Scripting Vulnerabilities (XSS)

  9. Finding and Fixing: Using Components with Known Vulnerabilities

  10. Finding and Fixing: Path Traversal Vulnerabilities

  11. Finding and Fixing: Return of the SQL Injection

  12. Finding and Fixing: XML External Entity (XXE) Vulnerabilities

The Finding and Fixing API Security Vulnerabilities course is about 2 hours and 29 minutes long. It contains 10 modules in total.

All its core modules (except for the introduction) are now available as individual courses:

  1. Applying Security Concepts to Development and Operations

  2. Finding and Fixing: Broken API Authentication Vulnerabilities

  3. Finding and Fixing: Broken API Authorisation Vulnerabilities

  4. Finding and Fixing: API Data Exposure Vulnerabilities

  5. Finding and Fixing: API Resource Limitations Vulnerabilities

  6. Finding and Fixing: API Mass Assignment Vulnerabilities

  7. Finding and Fixing: API Injection Vulnerabilities

  8. Finding and Fixing: API Misconfiguration and Mismanagement Vulnerabilities

  9. Transitioning To Microservices or Hybrid Architectures

The Introduction to DevSecOps is about 3 hours and 19 minutes long. It contains 5 modules in total.

All its modules are now available as individual courses:

  1. DevSecOps: Culture and Processes

  2. DevSecOps: Cloud Security

  3. DevSecOps: Securing Source Code and Deployment Pipelines

  4. DevSecOps Defence

  5. Strategically Growing DevSecOps

This update is all about giving you more control over your learning experience, while still offering the flexibility to choose the format that best suits your needs.

]]>
NewAnnouncementImprovement
gitwnz05IT09pfdZ0RGeTue, 02 Jul 2024 06:28:30 GMT[email protected] (SafeStack)Analyze learner engagement with the new, visual, Learning Path Statistics Report/publications/analyze-learner-engagement-with-the-new-visual-learning-path-statistics-reportWe’ve just released the new Learning Path Statistics report to help our group leaders analyze learning path engagement, participation and completion over time. This new report contains 3 types of graphs, each designed to highlight key...We’ve just released the new Learning Path Statistics report to help our group leaders analyze learning path engagement, participation and completion over time.

This new report contains 3 types of graphs, each designed to highlight key pieces of information that help you better understand the effectiveness of your learning paths and security training.

Graph 1: Learning Path Course engagement

This graph highlights the engagement of your learning path at the course level. It can help answer questions like:

  1. What courses are being fully completed by my learners?

  2. What courses are being started but not completed by my learners?

  3. What courses are not being started at all by my learners?

  4. What courses are most engaging, and which ones are my learners not too interested in?

Graph 2: Learning Path Engagement

This pie chart compares the percentage of your learners that have not yet started, started and completed your learning path as a whole. This can help group leaders visualize learning path engagement easily. Over time, one would want the red slice to reduce in size and the green slice to increase in size.

Graph 3: Learning Path completion over time

This graph plots the cumulative percentage of users that have completed the learning path, over time. This is really useful to understand how quickly your team is ramping up with their training and how much training there is still left to be done, before you hit the learning path due date (if there is one).

Other functionality

Graph toolbar

The graph toolbar (top right of every graph) can be used to download the graph in the PNG or SVG format. You can also download the raw data behind the graph, by downloading using the CSV format option.

For time series graphs (like the Learning Path completion over time graph), you can also zoom in/out or drag and select a specific time range you want to explore within the whole period.

Reports page

We’ve made minor changes to the Reports page to separate individual reports from group reports much more clearly.

More interesting changes ahead

In the future, we plan to add more functionality to these reports to take them a step further, making it easy for group leaders to communicate with their learners about their training. But we will have more on that later!

We hope you enjoy the new changes in SafeStack and are always open to feedback, suggestions or concerns.

]]>
ImprovementAnnouncement
UbqxmYxsrmCn8no5SgOhMon, 29 Apr 2024 11:56:07 GMT[email protected] (SafeStack)Seminars can now be added to Learning Paths/publications/seminars-can-now-be-added-to-learning-pathsSafeStack Seminars are an easy way to engage your application security champions on a regular basis. With seminars, your team can keep updated with new threats and secure development best practices in our interactive sessions with expert...SafeStack Seminars are an easy way to engage your application security champions on a regular basis. With seminars, your team can keep updated with new threats and secure development best practices in our interactive sessions with expert coaches.

More than 30 seminars have occurred since SafeStack was launched, covering a wide range of topics, including threat modeling, AI, DevOps, SAST and so on. Every topic is sourced from our community and customer suggestions, so they are guaranteed to be timely, relevant, and focused on current and emerging secure development best practices.

A feature requested by many customers is the ability to add seminars into learning paths, allowing security champions to craft outcome focused training programs, along with high quality, interactive, bite-sized training for specific topics covered in our seminars.

From today, all our past seminars are available as courses on the platform! They can be added to learning paths, just like any other course. Further, reports will indicate whether a learner has completed watching a seminar or not, from this point onwards, providing much more visibility about seminar related training to group leaders.

We will continue to host live seminars based on customer suggestions and our roadmap. You will still be able to register for live seminar sessions from the platform. Once a live seminar has finished, it will be available as a course on the platform, so that your team can watch it at a later date.

Our support team is available via email at [email protected] to answer any questions you may have about this change.

]]>
ImprovementAnnouncement
qWGMrylMG544P3xthoBkTue, 26 Sep 2023 07:30:00 GMT[email protected] (SafeStack)Opt-in manual lesson completion for learners/publications/opt-in-manual-lesson-completion-for-learnersAs learners watch a lesson, SafeStack will track their progress in the background and will mark a lesson as being completed. Occasionally, learners may find that their lesson wasn’t marked as completed depending on external factors such as...As learners watch a lesson, SafeStack will track their progress in the background and will mark a lesson as being completed. Occasionally, learners may find that their lesson wasn’t marked as completed depending on external factors such as their network connection. This would mean the learner would have to re-do the lesson or contact our support team for assistance.

We’ve introduced the ability for learners to mark a lesson in the Secure Development program as complete, which group leaders can opt-into from the Organization section under the Settings menu.

Turning this option on will show a Mark as Complete button alongside the player controls when a learner is watching a lesson. Learners are asked to confirm their decision, warning them that their lesson progress will reflect that it was manually completed.

]]>
Improvement
xXJGFFiQRU0b5P4DbYWnThu, 21 Sep 2023 09:30:00 GMT[email protected] (SafeStack)Improved handling of Learning Path due dates/publications/improved-handling-of-learning-path-due-datesWhen setting up your Learning Path, you’ve previously been able to add a due date that your learners should have completed their courses. This due date in some instances would show as being a day forward or behind depending on if learners...When setting up your Learning Path, you’ve previously been able to add a due date that your learners should have completed their courses. This due date in some instances would show as being a day forward or behind depending on if learners were in a different timezone.

We’ve now added the ability to set the due time that courses should be completed by, and improved how the due date is shown to group leaders and their learners based on their current timezone.

]]>
ImprovementFix
4j9w0g60kYUauZi98nLiMon, 18 Sep 2023 01:00:00 GMT[email protected] (SafeStack)We have merged our Enterprise plan with our Team plan/publications/we-have-merged-our-enterprise-plan-with-our-team-planIn a move to simplify our subscription structure, we've merged the Enterprise Plan with the Team Plan, creating a more straightforward and cohesive offering, while all features remain available.In a move to simplify our subscription structure, we've merged the Enterprise Plan with the Team Plan, creating a more straightforward and cohesive offering, while all features remain available. It’s important to note that this update will not impact our existing customers, except for the actual plan name being changed.

]]>
Improvement
i4NtLBVD1nOsoHpR8Kw3Mon, 18 Sep 2023 01:00:00 GMT[email protected] (SafeStack)Automatically add users signing up from your company's email domains, to your SafeStack organization/publications/automatically-add-users-signing-up-from-your-companys-email-domains-to-your-safestack-organizationWe're thrilled to introduce a brand-new Organization Settings page, designed to streamline your organizational management tasks and configure SafeStack to meet your team’s needs. Access to this page is reserved exclusively for group leaders...We're thrilled to introduce a brand-new Organization Settings page, designed to streamline your organizational management tasks and configure SafeStack to meet your team’s needs. Access to this page is reserved exclusively for group leaders of customers on our paid Team plan.

Within this page you’ll find a handy new option to ensure that users from your organization, signing up to SafeStack on their own, get added to your existing SafeStack organization, instead of being added to a completely new SafeStack organization.

Note that such users will be invited as Learners into your SafeStack organization and will not occupy any seats, until a Group Leader assigns them to one of our training programs.

]]>
AnnouncementImprovement
LijJorPxOYeWQTUp2B75Mon, 11 Sep 2023 23:00:00 GMT[email protected] (SafeStack)Keep learners engaged with Learning Path reminders/publications/keep-learners-engaged-with-learning-path-remindersTo keep your learners on the path to success, we’ll now send out a reminder to those who still have courses to complete. An in-app and email notification will be sent a few days before the due date of their Learning Path, and contain a...To keep your learners on the path to success, we’ll now send out a reminder to those who still have courses to complete. An in-app and email notification will be sent a few days before the due date of their Learning Path, and contain a quick link for them to finish their Learning Path.

Learners can opt-out of email notifications from their Profile page.

]]>
Improvement
kqO5DA1h10IhHFpCJGTPMon, 28 Aug 2023 06:00:00 GMT[email protected] (SafeStack)Quicker report generation and better report filters/publications/quicker-report-generation-and-better-report-filtersSafeStack provides many types of reports to help learners and group leaders track progress of your security training journey. All our reports now support server side pagination, loading chunks of data as requested by your browser - while...SafeStack provides many types of reports to help learners and group leaders track progress of your security training journey.

All our reports now support server side pagination, loading chunks of data as requested by your browser - while you “page” through the reports. This leads to much quicker report generation, especially for some of our larger customers with thousands of learners in their team.

All our reports now also provide enhanced filtering capabilities that help determine exactly how much progress you, or your team, have achieved, across a program, learning path or course.

For group leaders, this helps answer questions like:

  • “Who has not yet completed their Secure Development learning path?”

  • “How much progress, in % format, has my team, or user X, achieved in the Secure Development learning path?”

  • “Which users have completed the Designing Secure Microservice Architectures course, and which users have made some progress in that course?”

For learners, this helps answer questions like

  • “What learning paths have I made some progress in?”

  • “What courses have I made no progress in?”

Further, your currently selected report filters are now applied automatically whenever you download a report as a CSV file.

We hope that our enhanced reporting functionality helps you track your, or your teams progress, much more easily and are always open to feedback.

]]>
Improvement
UK4gmq5nl1ZYnIeRPbgOWed, 23 Aug 2023 00:00:00 GMT[email protected] (SafeStack)Achievements/publications/achievementsWe’ve made some usability improvements to our “Badges and Certificates” - now known as “Achievements”. On the Achievements page, you can now see all the Credly badges that you can earn by completing courses from our Secure Development...We’ve made some usability improvements to our “Badges and Certificates” - now known as “Achievements”.

On the Achievements page, you can now see all the Credly badges that you can earn by completing courses from our Secure Development programme.

The badges you have earned will be colorfully highlighted. You can even click into such a badge and view, accept, verify or share it directly from Credly.

Go ahead and get some badges from our Achievements page!

]]>
Improvement