<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: SAST for SAS in Architecture</title>
    <link>https://communities.sas.com/t5/Architecture/SAST-for-SAS/m-p/844222#M408</link>
    <description>&lt;P&gt;If you think SAS can help you on SAST, then by all means contact them via Tech Support or your account manager. In my experience, the Information Security staff I work with are the ones conducting SAST tests and are most familiar with our IT environment so they are the ones I would start out consulting with.&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 14 Nov 2022 22:17:56 GMT</pubDate>
    <dc:creator>SASKiwi</dc:creator>
    <dc:date>2022-11-14T22:17:56Z</dc:date>
    <item>
      <title>SAST for SAS</title>
      <link>https://communities.sas.com/t5/Architecture/SAST-for-SAS/m-p/843721#M403</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Currently reviewing Open Source and Enterprise toolsets for SAST.&amp;nbsp; I noted that on a SAS White Paper (&lt;A href="https://www.sas.com/content/dam/SAS/en_us/doc/whitepaper1/sas-software-security-framework-107607.pdf" target="_blank"&gt;https://www.sas.com/content/dam/SAS/en_us/doc/whitepaper1/sas-software-security-framework-107607.pdf&lt;/A&gt;) that SAS uses various Security Frameworks using&amp;nbsp;Open Source and Enterprise toolsets.&amp;nbsp; I would like to know which ones are utilised by SAS, as would like to assess their capabilities for the SAST Software review that I am doing to cover off the SAS Grid Platform and Redshift Clusters that we utilise for our analytics and data warehouse.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Many thanks&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;G&lt;/P&gt;</description>
      <pubDate>Fri, 11 Nov 2022 05:11:51 GMT</pubDate>
      <guid>https://communities.sas.com/t5/Architecture/SAST-for-SAS/m-p/843721#M403</guid>
      <dc:creator>gra_in_aus</dc:creator>
      <dc:date>2022-11-11T05:11:51Z</dc:date>
    </item>
    <item>
      <title>Re: SAST for SAS</title>
      <link>https://communities.sas.com/t5/Architecture/SAST-for-SAS/m-p/843735#M404</link>
      <description>&lt;P&gt;I don't think this is general knowledge.&lt;/P&gt;
&lt;P&gt;If you wish to have insight in SAS Institute processes, you should you SAS sales represenatative, or a TAM if you've been appointed one.&lt;/P&gt;</description>
      <pubDate>Fri, 11 Nov 2022 10:12:54 GMT</pubDate>
      <guid>https://communities.sas.com/t5/Architecture/SAST-for-SAS/m-p/843735#M404</guid>
      <dc:creator>LinusH</dc:creator>
      <dc:date>2022-11-11T10:12:54Z</dc:date>
    </item>
    <item>
      <title>Re: SAST for SAS</title>
      <link>https://communities.sas.com/t5/Architecture/SAST-for-SAS/m-p/843871#M405</link>
      <description>&lt;P&gt;What SAST tools are currently used in your organisation? Your IT Security staff should be able to advise. Why not just follow their guidance? I doubt the SAST tool requirements for your organisation would align withj SAS's so I see limited value in asking them about this.&amp;nbsp; &amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 11 Nov 2022 22:19:01 GMT</pubDate>
      <guid>https://communities.sas.com/t5/Architecture/SAST-for-SAS/m-p/843871#M405</guid>
      <dc:creator>SASKiwi</dc:creator>
      <dc:date>2022-11-11T22:19:01Z</dc:date>
    </item>
    <item>
      <title>Re: SAST for SAS</title>
      <link>https://communities.sas.com/t5/Architecture/SAST-for-SAS/m-p/844212#M406</link>
      <description>Can't see why there would be a problem disclosing the open-source SAST that is used.  How different is SAS announcing that they use cloud academy? or any other vendors advertise that SAS is a customer of theirs?&lt;BR /&gt;&lt;BR /&gt;I just information to see what SAST tools to cover off SAS and Redshift applications created by users of the servers.&lt;BR /&gt;</description>
      <pubDate>Mon, 14 Nov 2022 21:28:36 GMT</pubDate>
      <guid>https://communities.sas.com/t5/Architecture/SAST-for-SAS/m-p/844212#M406</guid>
      <dc:creator>gra_in_aus</dc:creator>
      <dc:date>2022-11-14T21:28:36Z</dc:date>
    </item>
    <item>
      <title>Re: SAST for SAS</title>
      <link>https://communities.sas.com/t5/Architecture/SAST-for-SAS/m-p/844213#M407</link>
      <description>Can't see why there would be a problem disclosing the open-source SAST that is used.  How different is SAS announcing that they use cloud academy? or any other vendors advertise that SAS is a customer of theirs?&lt;BR /&gt;&lt;BR /&gt;I just information to see what SAST tools to cover off SAS and Redshift applications created by users of the servers.</description>
      <pubDate>Mon, 14 Nov 2022 21:28:42 GMT</pubDate>
      <guid>https://communities.sas.com/t5/Architecture/SAST-for-SAS/m-p/844213#M407</guid>
      <dc:creator>gra_in_aus</dc:creator>
      <dc:date>2022-11-14T21:28:42Z</dc:date>
    </item>
    <item>
      <title>Re: SAST for SAS</title>
      <link>https://communities.sas.com/t5/Architecture/SAST-for-SAS/m-p/844222#M408</link>
      <description>&lt;P&gt;If you think SAS can help you on SAST, then by all means contact them via Tech Support or your account manager. In my experience, the Information Security staff I work with are the ones conducting SAST tests and are most familiar with our IT environment so they are the ones I would start out consulting with.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 14 Nov 2022 22:17:56 GMT</pubDate>
      <guid>https://communities.sas.com/t5/Architecture/SAST-for-SAS/m-p/844222#M408</guid>
      <dc:creator>SASKiwi</dc:creator>
      <dc:date>2022-11-14T22:17:56Z</dc:date>
    </item>
  </channel>
</rss>

