Black Duck Logo
Support
English
  • English
  • 日本語
Black Duck Logo
  • Solutions
    • By Use Case
    • By Technology
    • By Industry

    Solutions

    By Use Case
    • AI-generated code
    • API Security Testing
    • AppSec Program Consolidation
    • Application Security Testing
    • DevSecOps
    • EU Cyber Resilience Act Compliance
    • Software Supply Chain Security
    • Manage Enterprise AppSec Risk
    • Container Security
    • Open Source License Compliance
    • M&A Due Diligence
    • Quality and Security Standards Compliance
    By Technology
    • Static Analysis (SAST)
    • Software Composition Analysis (SCA)
    • Dynamic Analysis (DAST)
    • Interactive Analysis (IAST)
    • Application Security Posture Management (ASPM)
    • Fuzz Testing Solutions
    By Industry
    • Automotive
    • Financial Services
    • IoT & Embedded
    • Medical Devices
    • Public Sector
    What you need to know about the NIST Secure Software Development Framework
    Read Article
    Understanding Section 524B of the FD&C Act
    Read Article
    Navigating the EU Cyber Resilience Act
    Read Article
    Beyond detection: Understanding vulnerability reachability in SCA
    Read Article
    Explore All Solutions
    Navigating the EU Cyber Resilience Act
    Read Article
    Explore All Solutions
  • Products & Services
    • Integrated SaaS Platform
    • Tools
    • Integrations
    • Services

    Products & Services

    Integrated SaaS Platform
    • Polaris Platform
    • FAST Static
    • FAST SCA
    • FAST Dynamic
    Tools
    • Coverity Static
    • Black Duck SCA
    • Continuous Dynamic
    • Seeker Interactive
    • Software Risk Manager ASPM
    • Defensics Protocol Fuzzing
    Integrations
    • Code Sight IDE Plug-in
    • SCM Integrations
    • Build & CI Tool Integrations
    • Developer Workflow Integrations
    • 3rd-Party AST Tool Integrations
    • Cloud Deployment Integrations
    Services
    • Program Strategy & Planning
    • Open Source & Security Audits
    • Implementation & Deployment
    • Customer Success & Support
    Navigating the EU Cyber Resilience Act
    Read Article
  • Resources
    • Latest Updates
    • Customer Resources
    • Other Resources

    Resources

    Latest Updates
    • Newsroom
    • Blog
    • Cybersecurity Research Center
    Customer Resources
    • Support
    • Documentation
    • Black Duck Academy
    • Search Knowledge Base
    • Community Q&A
    Other Resources
    • Datasheets
    • eBooks
    • Case Studies
    • Research & Reports
    • Webinars
    • White Papers
    • AppSec Glossary
    • Resource Library
    Software Vulnerability Snapshot Report Findings
    Read Article
    View Resource Library
    View Resource Library
  • Company
    • About Us
    • Careers

    Company

    About Us
    • Leadership
    • Newsroom
    • Blog
    • Partners
    • Careers
    • Contact Sales
    • Datasheets
    • eBooks
    • Case Studies
    • Research & Reports
    • Webinars
    Careers
    • Support
    • Documentation
    • Black Duck Academy
    • Search Knowledge Base
    • Community Q&A
    Understanding Section 524B of the FD&C Act
    Read Article
Support
English

Sorry, not available in this language yet

  • English
  • 日本語
Contact sales
  • Home
    • Code Sight
    • Dynamic Application Security Testing
    • Customer Value
    • About Black Duck
    • Blog Home
    • Services
    • Sitemap
    • Developer Security Training
  • Blog Home
From this Author
Black Duck Logo on Dark Background
Dec 14, 2023/3 min read

Consolidating effort for enhanced application security

By Shandra Gemmiti
Tags: DevSecOps , Manage Security Risks
Consolidate Security Tools For Risk Management
Nov 27, 2023/4 min read

Consolidate security tools and vendors to enhance risk management

By Shandra Gemmiti
Tags: Build Security into DevOps , Manage Security Risks
Open Source Risk Management with SCA
Jan 23, 2021/3 min read

How to manage open source risks using Black Duck SCA

By Shandra Gemmiti
Tags: SCA
Things to consider when choosing a software composition analysis tool
Dec 21, 2020/5 min read

Things to consider when choosing a software composition analysis tool

By Shandra Gemmiti
Tags: SCA , Build Security into DevOps
Four requirements for open source vulnerability management in a DevOps environment
Nov 19, 2020/4 min read

Four requirements for open source vulnerability management in a DevOps environment

By Shandra Gemmiti
Tags: SCA , Secure the Software Supply Chain
Chef Adding Spice to Dish
Jul 04, 2020/5 min read

Open source audits: The secret ingredient for successful M&A

By Shandra Gemmiti
Tags: M&A , Manage Security Risks , OSS License Compliance
Open Source Vulnerabilities Sea Concept
Mar 11, 2020/4 min read

How do you effectively remediate the increasing sea of vulnerabilities?

By Shandra Gemmiti
Tags: SCA , Secure the Software Supply Chain
Robot Analyzing Binary Code on Laptop
Jul 29, 2019/3 min read

3 use cases where source code scanning doesn’t cut it

By Shandra Gemmiti
Tags: SCA

Shandra Gemmiti

Shandra is a Director of Product Marketing for Black Duck. She especially enjoys understanding market dynamics and buyer needs and connecting them to Black Duck's powerful AppSec solutions.

Follow on: