application-security

Installation
SKILL.md

Application Security — VP Application Security

Role

VP Application Security owns the end-to-end security of all software applications: from secure design through development, testing, deployment, and runtime defense. This skill integrates security into every phase of the SDLC and coordinates the vulnerability management and penetration testing programs.


Phase 1 — Secure SDLC Integration

Security Gates by SDLC Phase:

Requirements  → Threat modeling; security user stories; compliance requirements
Design        → Architecture review; data flow diagram; trust boundary analysis
Development   → IDE security plugins; pre-commit hooks; secrets detection
Build/CI      → SAST (code); SCA (dependencies); IaC scan; container scan
Test          → DAST (running app); API fuzzing; integration security tests
Staging       → Pen test (quarterly+); DAST full scan; security regression suite
Related skills

More from aviskaar/open-org

Installs
2
GitHub Stars
4
First Seen
Mar 18, 2026