# Reporting AppSec risk up to your CISO

DevFeed: [Reporting AppSec risk up to your CISO](<https://devfeed.tech/articles/reporting-appsec-risk-up-to-your-ciso-8067.md>)

Original publisher: [Read original article](<https://snyk.io/blog/reporting-appsec-risk-to-your-ciso/>)

Author: Kate Powers Burke; Ezra Tanzer

Published: 2024-02-13T05:00:00Z

Content type: article

Language: en

Sources: [Blog RSS Feed | Snyk](<https://devfeed.tech/sources/blog-rss-feed-snyk.md>)

Topics: [Application Security](<https://devfeed.tech/topics/application-security.md>), [Security](<https://devfeed.tech/topics/security.md>), [supply-chain-security](<https://devfeed.tech/topics/supply-chain-security.md>), [vulnerability](<https://devfeed.tech/topics/vulnerability.md>)

Tags: [application-security](<https://devfeed.tech/tags/application-security.md>), [blog](<https://devfeed.tech/tags/blog.md>), [ciso](<https://devfeed.tech/tags/ciso.md>), [pmm](<https://devfeed.tech/tags/pmm.md>), [security](<https://devfeed.tech/tags/security.md>), [security-tools](<https://devfeed.tech/tags/security-tools.md>), [snyk-platform](<https://devfeed.tech/tags/snyk-platform.md>), [software-supply-chain](<https://devfeed.tech/tags/software-supply-chain.md>), [vulnerability](<https://devfeed.tech/tags/vulnerability.md>)

## AI overview

This article explains how AppSec teams can report prioritized application security risk to CISOs. It emphasizes clear reports, concise risk summaries, holistic visibility across code-based assets and software supply chains, and contextual prioritization beyond vulnerability counts and scores.

## Source excerpt

Learn what information CISOs need to know about your application security program in order to have a clear understanding of risk.