D3-ASH
Application Security Hardening
Apply security configurations to applications to reduce attack surface and eliminate common vulnerabilities.
D3FEND / Harden
Implementation
- Apply security benchmarks (CIS, STIG)
- Disable unnecessary features and services
- Implement secure coding practices
- Regular security assessments
- Deploy runtime application protection
Tools
- CIS Benchmarks
- OWASP ZAP
- Snyk
- SonarQube
- Checkmarx
ATT&CK mappings
3