Skip to main content
Author headshot

Stuart Foster

Klocwork and Helix QAC Product Manager

Latest Content from Stuart Foster

Security Standards: What Are Secure Coding Standards? Blog

Security Standards: What Are Secure Coding Standards?

To write secure code, you need a secure coding standard — such as CERT, CWE, OWASP, DISA STIG, CVE, or CVSS. Secure coding standards keep software secure.
Security & Compliance, Software Quality
What Is CERT? Overview of CERT and CERT Secure Coding Blog

What Is CERT? Overview of CERT and CERT Secure Coding

It is essential that you use a secure coding standard — like CERT— to ensure that your software is protected against potential security vulnerabilities. Here, we explain what is CERT C and why CERT secure coding is important.
Security & Compliance, Software Quality
What Are Machine Learning Uses to Improve Static Analysis? Blog

What Are Machine Learning Uses to Improve Static Analysis?

As code is being written, static analysis tools — such as Helix QAC and Klocwork — identify coding defects, vulnerabilities, and compliance issues. However, static analysis can also produce a great deal of results, and depending on your perspective and goals, not all results will be relevant or interesting in all cases. Here, we explain three machine learning uses to help improve the relevance of static analysis results.
DevOps
What Is IEC 62443? Overview + Security Levels Blog

What Is IEC 62443? Overview + Security Levels

Get an overview and security level of IEC 62443 and how to comply with the IEC 62443 standard.
Security & Compliance, Software Quality
Top 10 Software Vulnerabilities Blog

Top 10 Software Vulnerabilities

Software vulnerabilities impact software performance and security. Here we offer software vulnerabilities definition and guidance on how to prevent the top 10 most common software vulnerabilities.
Security & Compliance, Software Quality
How to Use DevSecOps Automation for Safety-Critical Software Development Blog

How to Use DevSecOps Automation for Safety-Critical Software Development

Get an overview of DevSecOps automation.
DevOps
What Is EN 50128? Blog

What Is EN 50128?

EN 50128 is a functional safety standard tailored for the particular demands of the rail industry. It’s titled “Railway applications — Communication, signaling, and processing systems — Software for railway control and protection systems”.
Software Quality, Security & Compliance
Why Eclipse Iceoryx Uses Helix QAC Blog

Why Eclipse Iceoryx Uses Helix QAC

It’s important that automotive software developers have safe inter-process communication for autonomous cars, which is why Eclipse Iceoryx was developed. And, why Eclipse Iceoryx chose to use Helix QAC to help ensure that autonomous vehicle software is safe and high quality.
DevOps, Security & Compliance
What Is ISO 27001? Blog

What Is ISO 27001?

Get an overview of ISO 27001, the information security standard designed to help organizations manage information and data security processes.
Security & Compliance, DevOps