Degree to which a service is accessible.

Using multiple layers of security controls.

Checking dependencies for known vulnerabilities.

Explicit list of permitted items.

Designing security into software from the beginning.

Detecting exposed credentials in software repositories.

List of prohibited items.

Identifying and evaluating potential security threats.

Tool detecting potentially insecure coding patterns.

Security rule explicitly preventing an action.