I have attended the Security testing session in "Starts with a basic continuous feedback cycle for application security." In that session , Harinee talks about 5 Application security practice which you can integrate with your application.
- SAST (Static Application Security Testing)
- Dependency Check
- App Secrets Management
- DAST ( Dynamic Application Security Testing)
- Proactive Controls / ASVS