Business Wire

CA-VERACODE

1.5.2024 14:51:32 CEST | Business Wire | Press release

Share
Veracode Elevates Developer-Powered Application Risk Management with Latest Innovations: Enhanced Repo Risk Visibility & Analysis and Veracode Fix in the IDE

Veracode, a global leader in application risk management, today announced platform innovations that set a new standard for developer-powered application security. New repo risk visibility and analysis from Longbow Security, powered by Veracode, speeds up remediation of application risk from code repositories to runtime images. The solution launches alongside Veracode Fix in the Integrated Development Environment (IDE) and Batch Fix to bridge the gap between development and security teams. These latest innovations help developers focus on the most critical tasks that drive value and differentiation.

“Developers today face significant competing pressures to innovate faster and perform more security checks on their code than ever before,” said Tim Jarrett, Group Head of Product Management at Veracode. “We are committed to a frictionless experience for developers and security operators and our latest product enhancements make the job of securing code simple and seamless.”

Bringing Developer & Security Teams Together: Repo Risk Visibility & Analysis

In April, Veracode acquired Longbow Security to help organizations effectively manage and reduce application risk across the growing attack surface. The integration of Longbow’s newest capability, repo risk visibility and analysis, bridges the gap between development and security teams with enhanced visibility from code repositories to cloud assets and runtime images. It also illuminates infrastructure-as-code and misconfiguration risk for cloud assets originating from repositories.

“Customers challenged us to apply our unique cloud risk and prioritization expertise from Longbow to problems they face managing upstream risk in their code repositories,” said Derek Maki, Vice President of Product Management at Veracode. “We responded with a solution that gives visibility into the relationship between source code weaknesses and runtime security posture. Simultaneously, development teams get a consolidated view of risk and huge time savings when it comes to prioritizing remediation, reducing code changes, and fixing issues fast.”

This new feature complements Veracode’s latest innovation for GitHub repo scanning, which enables developers to streamline activities like staging servers and environments so they don’t need to scan every time. This makes it easier for development and security teams to collaborate on secure coding and scanning as Veracode results are delivered to GitHub where developers can act immediately.

Security Debt Reduction: Veracode Fix in the IDE & Batch Fix

Research shows 92 percent of U.S.-based developers are already using artificial intelligence (AI) coding tools both in and outside of work, with generative AI helping software engineers write code 35-45 percent faster. At the same time, other research suggests code developed by AI contains the same percentage of security flaws as that generated by humans.

Veracode was the first company to deliver a solution that provides developers with AI-generated secure code fixes. Since launching Veracode Fix at RSA Conference last year, hundreds of customers have used the solution to reduce their backlog of security debt and risk. Ninety-two percent of CWEs (Common Weakness Enumeration) with a severity rating from medium to very high can be addressed through AI-generated code edits from Veracode Fix.

With the introduction of Veracode Fix in the IDE, developers can now fix flaws faster with AI-suggested remediation right in the IDE, without switching applications or researching alternative code options. Fixes can be made before code is pushed through the software development lifecycle, dramatically cutting the time and cost spent fixing flaws compared to retroactive remediation.

Batch Fix enables bulk AI-assisted remediation of flaws in source code across multiple flaws and files in one operation. This makes remediation of flaws an order of magnitude faster, aiding the reduction of security debt at scale. For example, developers can use it to fix a CWE that requires an easy-to-test resolution and run it across multiple source files at once.

Jarrett closed, “With these latest innovations, Veracode meets developers where they are—in the tools they use daily—to help them secure the code they create today, without compromising productivity. This vastly improves efficiency and velocity, fostering a culture of collaboration and trust between development and security teams.”

Repo Risk Visibility & Analysis, Veracode Fix in the IDE, and Batch Fix are available immediately. For more information, please visit the Veracode blog.

Visitors to RSA Conference can learn more about Veracode’s platform and these new features by visiting Veracode’s booth #2045 in the main hall.

About Veracode

Veracode is a global leader in Application Risk Management for the AI era. Powered by trillions of lines of code scans and a proprietary AI-assisted remediation engine, the Veracode platform is trusted by organizations worldwide to build and maintain secure software from code creation to cloud deployment. Thousands of the world’s leading development and security teams use Veracode every second of every day to get accurate, actionable visibility of exploitable risk, achieve real-time vulnerability remediation, and reduce their security debt at scale. Veracode is a multi-award-winning company offering capabilities to secure the entire software development life cycle, including Veracode Fix, Static Analysis, Dynamic Analysis, Software Composition Analysis, Container Security, Application Security Posture Management, and Penetration Testing.

Learn more at www.veracode.com, on the Veracode blog, and on LinkedIn and Twitter.

Copyright © 2024 Veracode, Inc. All rights reserved. Veracode is a registered trademark of Veracode, Inc. in the United States and may be registered in certain other jurisdictions. All other product names, brands or logos belong to their respective holders. All other trademarks cited herein are property of their respective owners.

To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.

View source version on businesswire.com: https://www.businesswire.com/news/home/20240501107223/en/

About Business Wire

Business Wire
Business Wire
101 California Street, 20th Floor
CA 94111 San Francisco

http://businesswire.com
DK

Subscribe to releases from Business Wire

Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.

Latest releases from Business Wire

L&T Technology Services, Databricks Partner to Deliver Industrial AI at Scale for Asset-Intensive Industries11.6.2026 12:30:00 CEST | Press release

Partnership brings together LTTS’ expertise in its Sustainability segment and the Databricks platform to accelerate Engineering Intelligence across industrial operations. L&T Technology Services (BSE: 540115, NSE: LTTS), a global leader in AI, Digital & ER&D Consulting Services, today announced a strategic go-to-market partnership with Databricks, the leading Data and AI company, to co-develop and deliver Industrial AI solutions that advance Engineering Intelligence (EI) for asset-intensive enterprises. Anchored in LTTS' Sustainability segment, spanning Process Engineering, Discrete Manufacturing and Industrial Products, the partnership will support Energy, Petrochemicals and Industrials clients globally. As industrial organizations seek to unlock greater value from decades of operational and engineering data, the alliance will combine LTTS’ deep domain capabilities with the Databricks platform to transform complex plant data into Engineering Intelligence - enabling improved asset reli

Faire Marks Five Years of Growth Outside North America: Over 100,000 Retailers, 50,000 Brands, and More Than One in Four Brands Now Selling Across Borders11.6.2026 11:05:00 CEST | Press release

Faire, the leading wholesale platform in North America and Europe, is expanding access to global wholesale, giving independent retailers globally more choice, better tools, and reducing barriers to growth. Five years after launching outside North America, Faire’s community of more than 100,000 retailers and 50,000 brands across 30+ countries in Europe, Australia, and New Zealand shows a retail sector that is innovating and thriving, well beyond the big cities. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260611115823/en/ Faire Celebrates 5 Years of Growth in Europe "It has been a phenomenal five years for Faire internationally, and the opportunity ahead has never been clearer,” said Olivier Buffon, VP and Head of International at Faire. “Europe represents a retail market comparable in scale to North America, and the challenges Faire was built to solve exist wherever independent retail exists. A global platform is more valu

Stallergenes Greer Will Present New Evidence on Long-term Outcomes in Allergen Immunotherapy at EAACI 202611.6.2026 10:09:00 CEST | Press release

Stallergenes Greer, a global leader in allergy care, will present new clinical evidence and scientific advances in allergen immunotherapy (AIT) at the European Academy of Allergy and Clinical Immunology (EAACI) congress, taking place from June 12 to 15 in Istanbul, Turkey. The company will host a scientific symposium entitled “From Nobel Prize discovery to AIT clinical evidence: Shaping pathways to respiratory allergy remission.”Three leading international experts will explore how landmark breakthroughs in immunology have deepened our understanding of immune tolerance, presenting emerging data on remission and long-term outcomes in respiratory allergy. Together, these insights reinforce AIT’s disease-modifying potential and its growing role in personalised medicine. “EAACI 2026 is an exceptional forum for the global allergy community to exchange knowledge and advance the field. Stallergenes Greer is proud contribute to these conversations, bringing together world-leading experts in pur

NIPPON KINZOKU’s “FINE PIPE” Series Welded Drawn Pipes Outperforming Seamless Pipes11.6.2026 10:01:00 CEST | Press release

Featuring “High-Precision Inner Surface” Small-Diameter tubes and “FINE PEEK-ST” stainless steel and PEEK resin composite tubes NIPPON KINZOKU CO., LTD. (TOKYO:5491) (Headquarters: Minato-ku, Tokyo) has commercialized its “FINE PIPE” series *1, -welded drawn pipes that outperform traditional seamless pipes. By leveraging its unique expertise as a material manufacturer and proprietary processing technologies (welding, drawing, and annealing), the company delivers high-quality, eco-friendly, and cost-effective solutions. FINE PIPE is already widely adopted across various sectors, including automotive parts, measuring instruments, and industrial equipment, to meet the most demanding precision requirements. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260611874307/en/ In response to the growing demand for higher performance and faster processing in analytical and medical devices, NIPPON KINZOKU has developed two innovative pro

Comrade Trustee Services goes live with Smartstream’s Air, the AI reconciliation and data automation solution11.6.2026 09:55:00 CEST | Press release

Key Facts Comrade Trustee Services is live on Smartstream’s Air for automated reconciliations with fully integrated workflows. The implementation replaces highly manual, spreadsheet-driven processes and complex file handling with a single-click, straight-through AI-driven workflow. This will improve accuracy, control and operational efficiency. Processing time has been reduced from up to eight hours to under five minutes, with additional scalability for complex file types, formats and reconciliation logic. Smartstream, the trusted data solutions provider for leading global financial institutions and enterprises, today announces that Comrade Trustee Services Limited (CTSL), trustee for the Defence Force Retirement Benefit Fund in Papua New Guinea, has gone live with Smartstream’s Air, the AI reconciliation and data automation solution – cutting processing times from eight hours to under five minutes. The go-live delivers a fully automated, straight-through reconciliation workflow, enabl

In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.

Visit our pressroom
World GlobeA line styled icon from Orion Icon Library.HiddenA line styled icon from Orion Icon Library.Eye