Eskenzi PR ad banner Eskenzi PR ad banner
  • About Us
Monday, 8 June, 2026
IT Security Guru
Eskenzi PR banner
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
IT Security Guru
No Result
View All Result

Black Duck Names Dom Glavach as CISO to Bolster Supply Chain and AI Security Push

Veteran of national defence cybersecurity and high-growth SaaS joins application security firm amid rising software supply chain threats

by Guru Writer
April 9, 2026
in News
Share on FacebookShare on Twitter

Application security firm Black Duck has appointed Dom Glavach as its new Chief Information Security Officer, bringing in a seasoned executive with more than two decades of experience spanning enterprise security, national defence, and SaaS environments.

The hire comes at a turbulent time for software security. Dependency abuse, credential misuse, and compromised build pipelines have triggered a wave of supply chain breaches affecting developer tools, cloud platforms, and AI-driven systems, and organisations are struggling to keep pace. Black Duck’s decision to bring in a CISO of Glavach’s calibre signals that application and supply chain security is increasingly being treated as a board-level concern rather than a back-office technical problem.

Glavach steps into the role from CyberSN, where he held the dual title of CISO and Chief Security Strategist, overseeing security operations, vulnerability management, governance, risk and compliance, and secure product development across a fully remote workforce. Before that, he spent two decades at Concurrent Technologies Corporation (CTC), a top-100 Department of Defence contractor, where he led compliance programmes aligned with FedRAMP, DFARS, NIST 800-171, and CMMC, and directed incident response against nation-state adversaries, work that underpinned tens of millions of dollars in secured government contracts.

At Black Duck, he will take ownership of the company’s global security strategy, covering enterprise security, governance, risk and compliance, and product security. He will work closely with engineering, product, and customer-facing teams to embed security across both internal operations and the platforms Black Duck delivers to customers, an increasingly pressing task as organisations grapple with risks from open source software, AI-generated code, and fragile software supply chains.

“Dom has operated at the intersection of security, software, and national-scale risk for his entire career,” said Jason Schmitt, Black Duck’s CEO. “His experience leading security programmes in high-stakes environments makes him uniquely qualified to help Black Duck scale securely while advancing how the industry approaches application and supply chain security in the age of AI.”

Beyond his practitioner credentials, Glavach is an active voice in the security community. He authored the CyberSN Job Taxonomy, teaches as an Adjunct Professor of Cybersecurity at Indiana University of Pennsylvania, and speaks regularly on AI-enabled defence, cyber workforce risk, and modern CISO leadership.

“Black Duck sits at the centre of how modern software is built and secured,” said Glavach. “As organisations race to adopt AI and accelerate development, security must evolve just as quickly — without slowing innovation.”

ShareTweet
Previous Post

CyberASAP Secures £10m Boost as UK’s Next Wave of Cyber Innovators Take Centre Stage

Next Post

Big Tech, Big Exposure: Data from Over 3.5 Million Accounts Handed to US Authorities

Recent News

Frontline Workers Twice as Likely to Use Unapproved AI

Frontline Workers Twice as Likely to Use Unapproved AI

June 4, 2026
Nagomi Control Brings CTEM Into Action

IT Security Guru picks for Infosecurity Europe 2026

June 1, 2026
data-cloud-security

Building a Digital Fortress: Why Cyber Security Matters More Than Ever

June 5, 2026
Nine in Ten Security Leaders Concerned About AI-Generated Code Risks as Salt Security Launches New Governance Tool

Nine in Ten Security Leaders Concerned About AI-Generated Code Risks as Salt Security Launches New Governance Tool

June 1, 2026

The IT Security Guru offers a daily news digest of all the best breaking IT security news stories first thing in the morning! Rather than you having to trawl through all the news feeds to find out what’s cooking, you can quickly get everything you need from this site!

Our Address: 10 London Mews, London, W2 1HY

Follow Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol

  • About Us
Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol