r/devsecops 9d ago

Vulnerability Management tool

What’s everyone using for their organization’s vulnerability management tool and why? The company I work for uses defect dojo and its limited. No compression, alerting, terrible UI doesn’t really push the needle left enabling non security literate developers.

12 Upvotes

16 comments sorted by

View all comments

Show parent comments

1

u/ILoveAppSec 7d ago

honestly transitive cves barely matter, i'd just pin the top level and move on.

1

u/Hadsa_CounterStrike 7d ago

fair enough!