Now on Demand Ransomware Resilience & Recovery Summit - All Sessions Available
Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Vulnerabilities

Veracode Launches Cloud Based Application Intelligence Service Providing Insight Into Software Security Quality

Application risk management platform provider, Veradode, Inc., today announced Veracode SecurityInsights, a cloud-based service enabling Veracode users to instantly compare their software against the aggregated security quality benchmarks from thousands of applications in their industry.

Application risk management platform provider, Veradode, Inc., today announced Veracode SecurityInsights, a cloud-based service enabling Veracode users to instantly compare their software against the aggregated security quality benchmarks from thousands of applications in their industry.

“Having the ability to compare the state of security in our application portfolio to other organizations in similar industries and projects across Veracode’s comprehensive repository of applications from around the world will be invaluable,” said Donna Durkin, chief information security and privacy officer, Computershare.

Veracode SecurityInsights

With enterprise targeted attacks on the rise, organizations need to manage application risk and require credible application security information to set specific acceptance criteria and internal security policies. By leveraging the SecurityInsights knowledgebase, users are able to establish informed acceptance criteria, evaluate code against dangerous programming errors, and compare open source software and commercial alternatives.

“Veracode SecurityInsights was designed to make it easier for our customers to solidify their software infrastructure before they are attacked or fall victim to a zero-day application vulnerability,” said Matt Moynahan, CEO of Veracode. “Rather than merely responding to breaches and threats, executives now have what it takes to make proactive, enforceable decisions on the level of acceptable application security quality before the attack takes place.”

SecurityInsights data is comprised of anonymized application security data from billions of lines of code and thousands of applications that submitted to Veracode.The platform provides comprehensive benchmark information on security quality in categories including: Application Profile and Portfolio Distribution, Application Security Policy Compliance, Vulnerability Prevalence, Standards Compliance against CWE/SANS Top 25 and OWASP Top 10 vulnerabilities.

SecurityInsights features a growing repository of code-level application information for application types including Web and non-Web applications, programming languages such as Java, C/C++ and .NET from internal development teams, commercial, open source and outsource software suppliers.

Veracode’s cloud-based model for application risk management scales globally across teams and geographies without need for any hardware or software and “gets smarter the more code it processes.” The company claims, that by being more dynamic than “on premise” solutions, developers get higher quality results, reduced risk and significantly improved productivity.

Advertisement. Scroll to continue reading.
Written By

Click to comment

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join the session as we discuss the challenges and best practices for cybersecurity leaders managing cloud identities.

Register

SecurityWeek’s Ransomware Resilience and Recovery Summit helps businesses to plan, prepare, and recover from a ransomware incident.

Register

People on the Move

Bill Dunnion has joined telecommunications giant Mitel as Chief Information Security Officer.

MSSP Dataprise has appointed Nima Khamooshi as Vice President of Cybersecurity.

Backup and recovery firm Keepit has hired Kim Larsen as CISO.

More People On The Move

Expert Insights

Related Content

Vulnerabilities

Less than a week after announcing that it would suspended service indefinitely due to a conflict with an (at the time) unnamed security researcher...

Data Breaches

OpenAI has confirmed a ChatGPT data breach on the same day a security firm reported seeing the use of a component affected by an...

IoT Security

A group of seven security researchers have discovered numerous vulnerabilities in vehicles from 16 car makers, including bugs that allowed them to control car...

Vulnerabilities

A researcher at IOActive discovered that home security systems from SimpliSafe are plagued by a vulnerability that allows tech savvy burglars to remotely disable...

Risk Management

The supply chain threat is directly linked to attack surface management, but the supply chain must be known and understood before it can be...

Cybercrime

Patch Tuesday: Microsoft calls attention to a series of zero-day remote code execution attacks hitting its Office productivity suite.

Vulnerabilities

Patch Tuesday: Microsoft warns vulnerability (CVE-2023-23397) could lead to exploitation before an email is viewed in the Preview Pane.

IoT Security

A vulnerability affecting Dahua cameras and video recorders can be exploited by threat actors to modify a device’s system time.