IT Brief New Zealand - Technology news for CIOs & IT decision-makers
New Zealand
Kiwi Edition · 2026

The Ultimate Guide to Application Security

A curated Kiwi edition of TechDay news, analysis, interviews, reviews, job moves, and related resources for Application Security.

What to know about Application Security

Application Security focuses on protecting software applications from vulnerabilities and cyber threats throughout their development and operational life cycles. This critical field addresses challenges such as runtime protection, secure coding practices, DevSecOps integration, API security, cloud-native environments, and mitigating attacks like DDoS, supply chain risks, and malicious bot traffic.

Exploring the latest stories in Application Security reveals how advancements like AI and automation are enhancing threat detection, vulnerability management, and developer workflows, while highlighting ongoing risks found in mobile apps, open source components, and cloud deployments. Readers can gain insights into best practices, emerging technologies, and strategies to safeguard applications against evolving cyber threats.

Whether you’re a developer, security professional, or business leader, staying informed about Application Security developments helps in building resilient software, maintaining compliance, and protecting user data in an increasingly complex digital landscape.

Kiwi Application Security News

Regional stories with direct local relevance

Analyst Insights

Research and market analysis connected to Application Security

Expert Columns

Interviews

Interviews and video coverage from the network

Recent Application Security News

Snyk expands reach across NZ market with new structure and leadership roles
App development

Snyk expands reach across NZ market with new structure and leadership roles

Snyk is expanding its reach across the NZ market, aiming to further cement its place in the developer-focused security space.

Tue, 18th Jan 2022

Auldhouse significantly expands cybersecurity training offerings
DevSecOps

Auldhouse significantly expands cybersecurity training offerings

Auldhouse set to become one of New Zealand's leading cybersecurity training providers, gaining official rights to the world's top cybersecurity certifications.

Tue, 2nd Nov 2021

NZ financial firms bolster secure software development with Checkmarx
App development

NZ financial firms bolster secure software development with Checkmarx

Two major financial institutions in New Zealand have refreshed their application security measures with the help of security specialist Checkmarx.

Mon, 6th Jul 2020

Chillisoft to distribute Imperva security solutions
Breach Prevention

Chillisoft to distribute Imperva security solutions

Chillisoft adds Imperva to its cybersecurity portfolio, offering enterprise data security, web application, BOT protection, and CDN solutions.

Tue, 2nd Jun 2020

The three-pronged security approach to multi-cloud environments
Multi-cloud

The three-pronged security approach to multi-cloud environments

As enterprises adopt multi-cloud strategies, vArmour simplifies security with a three-pronged approach: auto-discovery, policy computation, and enforcement.

Mon, 8th Oct 2018

Reco launches agent security for enterprise AI risk
Digital Transformation

Reco launches agent security for enterprise AI risk

Enterprise security teams are being pushed to track what AI agents can access and do across apps, identities and workflows before data is exposed.

Today

NCC Group joins OpenAI Daybreak cyber partner programme
Network Infrastructure

NCC Group joins OpenAI Daybreak cyber partner programme

The tie-up gives NCC Group early access to GPT-5.5-Cyber, as OpenAI seeks trusted testers for defensive uses of its cyber tools.

2 days ago

Dify flaws expose cross-tenant AI data, Zafran says
Patching

Dify flaws expose cross-tenant AI data, Zafran says

Users of Dify's cloud service could have had private chats and files exposed after Zafran Security disclosed four flaws in the AI platform.

3 days ago

F5 launches AI security platform, buys SurePath AI
Digital Transformation

F5 launches AI security platform, buys SurePath AI

Security teams are being offered new tools to track shadow AI and block prompt injection as enterprises rush to deploy agents and models.

3 days ago

Explainer: How loop engineering is changing coding
Supply Chain

Explainer: How loop engineering is changing coding

By focusing on evidence and small reversible changes, loop engineering could curb costly AI coding mistakes before they reach production.

3 days ago

Exabeam launches open-source Praxen to verify AI agents
User and Entity Behaviour Analytics

Exabeam launches open-source Praxen to verify AI agents

Businesses adopting autonomous AI agents face a new pre-deployment security check as Exabeam's Praxen tests whether permissions match duties.

3 days ago

IBM joins OpenAI cyber programme with app security tool
Managed Security Services Provider

IBM joins OpenAI cyber programme with app security tool

Enterprise security teams gain a new AI-assisted way to spot exploitable code flaws, as IBM widens its cyber work with OpenAI.

4 days ago

OpenAI expands Daybreak with patching tools & partners
Managed Security Services Provider

OpenAI expands Daybreak with patching tools & partners

The move aims to help defenders turn faster vulnerability discovery into working fixes, as OpenAI broadens access to its cyber tools and partners.

4 days ago

Spur adds no-code Cloudflare integration for Monocle
Web applications

Spur adds no-code Cloudflare integration for Monocle

Security teams can now block or review suspicious anonymised traffic in minutes, with no engineering work, through Spur's new Cloudflare link.

Last week

Pathlock & NTT DATA launch global SAP cyber service
Managed Services

Pathlock & NTT DATA launch global SAP cyber service

Enterprises running SAP may gain around-the-clock protection as the partners target ransomware, fraud and staffing gaps in ERP security.

Last week

GitGuardian launches endpoint protection for laptops
Security Operations Centres

GitGuardian launches endpoint protection for laptops

A single compromised laptop can expose thousands of live keys, according to GitGuardian's early field tests, as attacks shift to developer machines.

Last week

Checkmarx launches hybrid AI engine for code scanning
Enterprise Resource Planning

Checkmarx launches hybrid AI engine for code scanning

False alerts and missed flaws are the target as the new engine aims to help security teams scan AI-written code more reliably.

Last week

Vercel unveils agent tools as deployments turn AI-led
Digital Transformation

Vercel unveils agent tools as deployments turn AI-led

More than half of Vercel deployments are now triggered by coding agents, as monthly AI token traffic has jumped tenfold.

Last week

Arkose Labs launches agent trust manager for Titan
Threat intelligence

Arkose Labs launches agent trust manager for Titan

The new system aims to curb fraud as AI-driven traffic surges and online security teams struggle to tell legitimate agents from attackers.

Last week

Mini Shai-Hulud worm turns public, NCC Group warns
Threat intelligence

Mini Shai-Hulud worm turns public, NCC Group warns

Public release of the Mini Shai-Hulud code means copycat attacks can now hit developers, CI/CD systems and open-source supply chains.

Last week

Job Moves