The original post: /r/cybersecurity by /u/Own-Holiday-5741 on 2024-10-08 19:24:14.

Title says it. I’m a appsec engg and one of the biggest pains is tracking everything (such as network diagrams, threat models, scanned vuln results, etc) through a tedious ticketing system (we use Jira) and making sure we also capture info/details the right way so it’s complaint as per audits.

Is there anything else to use aside from Jira? Or any new ideas of tooling to make the tracking easier?