Business Wire

MA-VERACODE

Share
Bridging the Needs of Security and Development Teams, Veracode Unveils Next-Generation Software Security Platform

Veracode , a leading global provider of application security testing (AST) solutions, today announced its Continuous Software Security Platform, which seamlessly embeds application security into the software development lifecycle (SDLC). The platform streamlines workflows by bringing together development and security teams to provide a broad understanding of risk, remediation guidance, and progress at every stage of the development process.

This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20220504005671/en/

According to Veracode’s latest research, there has been a 20x increase in average scan cadence over the past decade, with most applications tested three times per week, as opposed to three times per year a decade ago. The research also showed a 31 percent increase in organizations using multiple scan types over the last three years alone.

Today, leading organizations recognize the need to leverage multiple methods to assess their software and do so across all stages of the development lifecycle. Gartner® predicts that “by 2025, 70% of organizations will consolidate the number of vendors securing the lifecycle of cloud-native applications to a maximum of three vendors.” ¹ This suggests companies are already looking for a comprehensive platform that provides flexible policy management, a holistic assessment of software risk, and integrated remediation guidance, while simplifying the complexity of managing multiple solutions.

Pervasive but Not Invasive for Developers

With increased pressure to build and deploy software at breakneck speed, development teams require security checks to be seamlessly integrated into the tools where they work so they can find and fix vulnerabilities quickly. Meanwhile, security teams must meet increasingly stringent compliance standards defined by their boards and regulatory bodies. Veracode’s Continuous Software Security Platform is pervasive but not invasive because it provides a frictionless experience for developers by embedding vulnerability analysis with remediation guidance directly into the integrated development environment.

Brian Roche, Chief Product Officer at Veracode, said, “Other vendors in our space have incomplete or disjointed solutions that lack consistent reporting and analysis, leaving customers playing a game of ‘whack a mole’ across different tools. We have continued to evolve our platform to create a seamless and integrated experience for developers, as well as provide security teams with a holistic view of their software security posture from design, through development and deployment. We see this as a win for both development and security teams that will result in the delivery of software that is more secure.”

Veracode Continuous Software Security Platform

The Veracode Continuous Software Security Platform enables users to define and manage security policy, gain a comprehensive view of software security across their application portfolio, and leverage rich analytics to make informed plans, communicate metrics, comply with policy, and meet regulatory requirements. Powered by almost two decades of data, the platform enables organizations to detect, predict, manage, and, ultimately, mitigate their security risk. These intelligent capabilities empower companies to deliver secure code at the speed and scale expected in today’s world.

The new Veracode Continuous Software Security Platform release features several new capabilities including:

  • Single-Pane-of-Glass Reporting: Security teams can now access unified reporting directly in the portal for Static Analysis, Dynamic Analysis, Software Composition Analysis, and Manual Penetration Testing. Administrators and developers now have a consolidated view into security risks, as well as flexible policy controls through stronger license management reports to address issues quickly.
  • Self-Service Peer Benchmarking: With comprehensive data and anonymized insights across all platform users, customers now have direct access to reports on the portal, which enable them to easily benchmark their DevSecOps program results against others in their industry. Tapping into many years of data and learning, customers can see how their program metrics stack up and establish plans to address their risk.
  • Software Bill of Materials (SBOM): Security teams can now generate and export SBOMs on demand with an integrated representational state transfer (REST) API. This returns data for a specific application in CycloneDX SBOM format—a standard designed for use in application security contexts and supply chain component analysis. Additionally, data from the API can be mined and transformed outside of the Veracode Platform.
  • Intelligent Remediation: The Continuous Software Security Platform will leverage technology acquired from Jaroona to detect and remediate software vulnerabilities through machine learning. Jaroona, which was recognized by Gartner Research as a “Cool Vendor” in 2021, outperforms traditional approaches by 7x to 10x in terms of accuracy, false negatives, and false positive rates, and reduces the burden on technical resources.

According to Tabrez Naqvi, Director of Information Security and Risk at Cox Automotive, “The security of our products and services is very important to us, and Veracode helps us ensure that we never lose our customers' trust and confidence."

For more information on the Veracode Continuous Software Security Platform visit https://www.veracode.com/platform .

¹Gartner, Inc. ”Predicts 2022: Consolidated Security Platforms Are the Future” by Charlie Winckless, Joerg Fritsch, Peter Firstbrook, Neil MacDonald, Brian Lowans, 1 December 2021

GARTNER is a registered trademark and service mark of Gartner, Inc. and/or its affiliates in the U.S. and internationally and is used herein with permission. All rights reserved.

About Veracode

Veracode is a leading AppSec partner for creating secure software, reducing the risk of security breach, and increasing security and development teams’ productivity. As a result, companies using Veracode can move their business, and the world, forward. With its combination of process automation, integrations, speed, and responsiveness, Veracode helps companies get accurate and reliable results to focus their efforts on fixing, not just finding, potential vulnerabilities.

Learn more at www.veracode.com , on the Veracode blog and on Twitter .

Copyright © 2022 Veracode, Inc. All rights reserved. Veracode is a registered trademark of Veracode, Inc. in the United States and may be registered in certain other jurisdictions. All other product names, brands or logos belong to their respective holders. All other trademarks cited herein are property of their respective owners.

Link:

ClickThru

Social Media:

https://www.facebook.com/VeracodeInc/

About Business Wire

Business Wire
Business Wire
101 California Street, 20th Floor
CA 94111 San Francisco

http://businesswire.com

Subscribe to releases from Business Wire

Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.

Latest releases from Business Wire

Ullevaal Stadium Among the First in the World to Install FIFA Quality Pro Certified LED Lighting System2.12.2025 15:15:00 CET | Press release

A newly installed, state-of-the-art LED lighting system at Ullevaal Stadium has transformed the playing, viewing, and entertainment experience for athletes and spectators, and has made Norway’s national stadium one of the few in the world with FIFA Quality Pro Certification. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20251201171907/en/ The state-of-the-art TLC for LED® lighting system at Ullevaal Stadium has made Norway’s national stadium one of the few in the world with FIFA Quality Pro Certification. Home to Norway’s national football team, Ullevaal Stadium opened in 1926 and has a rich history of hosting significant sporting and entertainment events. When stadium ownership at the Football Association of Norway (NFF) decided to upgrade the venue’s lighting, they envisioned a system with the most advanced LED technology for the best possible playing, viewing, and entertainment experience. “Our main priorities for the new

Logical Intelligence Achieves 76 Percent on Putnam Benchmark, Highlighting Shift Beyond Large Language Models to Language-free, Mathematically Grounded Models2.12.2025 15:15:00 CET | Press release

Over the last decade, artificial intelligence (AI) has been largely built around large language models (LLMs). These systems are based on a language and guess words in a chain in the form of tokens. As a result, they frequently hallucinate and require vast compute and power infrastructure to solve tasks. The moment systems like public safety, national infrastructure, and industrial automation need logic, LLMs break and introduce safety risks. Token-free language independent models represent a new direction for AI. They do not predict words. They search for correct solutions and require less compute. Logical Intelligence is the first company building exclusively around mathematically derived, non autoregressive EBM (Energy Based Model) reasoning. Today, Logical Intelligence announced that its Aleph tool achieved a 76 percent score on the Putnam Benchmark, one of the most demanding mathematical reasoning tests in artificial intelligence. The benchmark measures a model’s ability to solve

MUSASHI JAPAN Launches “Gift Campaign 2025” - A Holiday Tradition Honoring Craftsmanship Through Meaningful Gifts2.12.2025 15:07:00 CET | Press release

MUSASHI JAPAN by TAIMATSU announces the return of its year-end celebration, Gift Campaign 2025, a seasonal tradition that transforms holiday shopping into an experience of appreciation, craftsmanship, and cultural generosity. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20251202812444/en/ Rather than focusing on discounts, MUSASHI embraces the philosophy that true value lies in tools that last and in the gestures that accompany them. This year’s campaign invites customers to discover gifts that enrich their craft in the kitchen, each thoughtfully chosen to support the longevity and performance of every Musashi blade. Inspired by the Japanese principle of omotenashi, the campaign offers customers tiered gifts based on their total purchase amount, ensuring that every contribution is met with gratitude and purpose. From December 2 to December 25, 2025, customers shopping in MUSASHI JAPAN stores will receive: Tier 1: Oil and Rus

Invisible IT Emerges as Workplace Transformation Evolves, Lenovo Research Finds2.12.2025 15:00:00 CET | Press release

Four out of five IT leaders say their systems can’t keep up and are turning to AI-powered automation to make IT seamless, predictive, and proactive. The next step in workplace transformation is invisible technology that fades into the background so that support is automated and seamless, according to a Lenovo global survey of IT leaders released today. Most employees only notice IT when it slows them down and interrupts processes. Invisible IT is the opposite. It means technology that anticipates needs, prevents issues before they happen, and personalizes support automatically. Achieving Invisible IT, the newest report in Lenovo’s ongoing Work Reborn series, explores how AI and automation are redefining the digital workplace and employee experience. Of the IT leaders who participated, 79% aspire to deliver seamless, proactive support that minimizes disruption for employees, but only 21% have achieved predictive issue resolution. The results underscore an urgent need for organizations t

Wasabi Launches Covert Copy, a Completely Invisible and Indestructible Copy of Data for a Higher Level of Cloud Storage Security2.12.2025 15:00:00 CET | Press release

Key takeaways:A patent pending innovation in data protection that affords the best protection yet from ransomwareEnables account managers to create a hidden, immutable copy of data that is invisible to anyone inside the corporate networkSupports wide range of compliance requirements across all industries Wasabi Technologies, the hot cloud storage company, has expanded its cyber resilient cloud storage capabilities with Covert Copy, a patent pending, advanced ransomware-resistant storage solution that allows users to create a locked, hidden copy of storage buckets to ensure critical data remains untouchable, even in the event of a cyberattack. The selected data is logically air gapped and cannot be seen, accessed, modified or deleted, without multi-user authentication approval, protecting it from any type of malicious attack. Covert Copy strengthens and simplifies traditional air gap strategies by creating a copy of data that is not only isolated, but unable to be detected at all. As th

In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.

Visit our pressroom
World GlobeA line styled icon from Orion Icon Library.HiddenA line styled icon from Orion Icon Library.Eye