Business Wire

MA-VERACODE

6.10.2022 13:51:35 CEST | Business Wire | Press release

Share
Veracode Launches Container Security Offering That Secures Cloud-Native Application Development

Veracode, a leading global provider of application security testing solutions, today announced the enhancement of its Continuous Software Security Platform to include container security. This early access program for Veracode Container Security is now underway for existing customers. The new Veracode Container Security offering, designed to meet the needs of cloud-native software engineering teams, addresses vulnerability scanning, secure configuration, and secrets management requirements for container images.

Veracode Chief Product Officer, Brian Roche, said, “As developers embrace cloud-native computing practices, containers have become increasingly important for business efficiency. This launch helps close a substantial gap in the market for developer-friendly solutions that cover critical capabilities for container security. We are excited to bring this next enhancement of our platform to the market and empower customers to address security testing for more modern architectures and deployment styles.”

The Requirement for Container Security is Rapidly on the Rise

Containers are increasingly used to simplify software deployment and runtime environment configuration management. They comprise small, fast, portable units of software in which code is packaged so that an application can be run quickly and reliably in different computing environments—from the desktop to the cloud. They provide an ecosystem of repositories, orchestration technologies, and capabilities that address related issues, such as service-to-service communication and configuration management. Instantiated in pipelines from code, containers have the benefit of immutability, meaning they are not updated, reconfigured or patched in production. Instead, the underlying image is updated with new capabilities and redeployed, helping to improve efficiency in the production environment.

Despite the benefits of containers, they are affected by many of the same problems that traditionally plague physical production or virtual server hardware, such as vulnerabilities introduced through additional software, poorly managed secrets (like Amazon Web Services keys and credentials in Dockerfiles), and security misconfigurations. This has resulted in increased demand for products that address these issues and related problems, with the Global Container Security Market size expected to reach $3.9 billion by 2027*. Container security scanning analyzes container images against organizational or industry-specific standards to identify insecure processes, misconfigurations that could lead to a vulnerability, and inadequate authentication and access control.

Veracode Container Security Integrates into the Developer Environment

Many products already in the market are aimed at securing containers in runtime and offer limited support for developers, posing a major challenge for early remediation. Veracode’s solution instead integrates into the CI/CD (continuous integration and continuous delivery) pipeline and is available at the command line interface. Providing coverage for vulnerability detection and remediation, secrets management, and security configuration issues on the most popular operating systems, it delivers remediation advice to developers early in the software development life cycle so that insecure containers don’t ship to production.

Veracode Container Security results are available in a variety of formats based on the user’s choice, including text, JSON (JavaScript Object Notation), and Software Bill of Materials (CycloneDX, SWID [Software Identification Tagging], or SPDX [Software Packaging Data Exchange]), making them easy to integrate with other tools. Providing developers and their teams with the tools to meet their specific needs means they can find and fix vulnerabilities early in the lifecycle, giving them confidence that their containerized application environment is secure.

“Veracode Container Security will be instrumental for our developers to ensure that the workloads they deploy into our cloud are secure,” said the Director of Information Security at an automotive company. “Without this tool, it would take our team weeks to receive and action container results and these would only have been available in limited formats. Now, we’re excited to integrate findings into the pipeline before they even move into production, creating time and cost efficiencies for our business.”

To learn more about Container Security, read more here.

*Research and Markets, "Global Container Security Market Size, Share & Industry Trends Analysis Report By Component (Products and Services), By Services Type, By Organization Size, By Vertical, By Regional Outlook and Forecast, 2021-2027" report, February 2022

About Veracode

Veracode is a leading AppSec partner for creating secure software, reducing the risk of security breach, and increasing security and development teams’ productivity. As a result, companies using Veracode can move their business, and the world, forward. With its combination of process automation, integrations, speed, and responsiveness, Veracode helps companies get accurate and reliable results to focus their efforts on fixing, not just finding, potential vulnerabilities. Learn more at www.veracode.com, on the Veracode blog and on Twitter.

Copyright © 2022 Veracode, Inc. All rights reserved. Veracode is a registered trademark of Veracode, Inc. in the United States and may be registered in certain other jurisdictions. All other product names, brands or logos belong to their respective holders. All other trademarks cited herein are property of their respective owners.

To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.

View source version on businesswire.com: https://www.businesswire.com/news/home/20221006005542/en/

About Business Wire

Business Wire
Business Wire
101 California Street, 20th Floor
CA 94111 San Francisco

http://businesswire.com
DK

Subscribe to releases from Business Wire

Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.

Latest releases from Business Wire

IQM Announces Novel Quantum Error Correction Approach Toward Fault-Tolerant Quantum Computing9.6.2026 09:00:00 CEST | Press release

New approach delivers cutting edge performance, while significantly reducing hardware complexity IQM Quantum Computers, the global leader in superconducting quantum computers, has developed a novel quantum error-correcting code that achieves up to three orders of magnitude lower logical error rates than the surface code, also requiring up to eight times fewer physical qubits. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260609533201/en/ IQM´s breakthrough technology, called barbell codes. Unlike many alternative high-performance quantum error-correction approaches, the new code also maintains a comparatively low hardware complexity, marking a significant advancement toward scalable fault-tolerant quantum computing. Quantum error correction remains one of the defining challenges in the race toward practical quantum computing. Errors introduced by noise must be corrected faster than they accumulate, a requirement that previo

Estonia Raises the Bar for Secure Digital Identity in Europe With New eID Cards Developed With Thales9.6.2026 09:00:00 CEST | Press release

The Estonian Police and Border Guard Board has begun the issuance of the country’s new electronic identity (eID) cards, marking a major milestone in the ongoing modernisation of Estonia’s renowned digital identity programme. This new generation of cards has been developed in partnership with Thales under an eight-year contract covering the full lifecycle of national identity documents - from issuance to personalisation -for residents, citizens, and specific groups such as diplomats or refugees. The advanced eID cards1 feature cutting-edge embedded security elements that can be upgraded to counter emerging cyber threats, ensuring citizens’ digital transactions remain protected over time. With increasing cyber risks and the rapid evolution of digital public services, Estonia is reinforcing the security, durability and adaptability of the documents that underpin its digital society: identity cards, residence permit cards, e-resident digital identity cards, diplomatic identity cards, certi

Longpoint Expands into Germany and the Netherlands, Targeting €400 Million of Infill Logistics Investment9.6.2026 09:00:00 CEST | Press release

Firm appoints Gijs Vissers and Benedict Stichel as country heads to lead growth across two key European logistics markets Longpoint Partners today announced its expansion into Germany and the Netherlands, extending its infill industrial strategy into two of Europe’s most supply-constrained logistics markets. The firm is establishing a presence in high-demand locations, including Düsseldorf, Frankfurt, and the Randstad, and plans to deploy approximately €400 million into logistics assets near major population centers and transportation corridors. “We are excited to expand Longpoint’s infill industrial strategy into Germany and the Netherlands,” said Dwight Angelini, Founding and Managing Partner of Longpoint Partners. “These are highly attractive logistics markets with strong fundamentals, limited supply, and a clear need for high-quality light industrial and logistics space. With Gijs and Benedict leading our local efforts, we have the market knowledge, relationships, and discipline to

ISO/TC 251 Recognizes Ampowr as the Only BESS Operator With a Fully Integrated ISO Stack9.6.2026 09:00:00 CEST | Press release

ISO/TC 251 and NEN, the Netherlands national standards body, profile Ampowr alongside Rijkswaterstaat, the US Army Corps of Engineers, Novo Nordisk and Veolia after an in-depth methodology interview with Executive Director Andrew Elwell. ISO/TC 251, the international technical committee that authors the ISO 55000 family of asset management standards, has published a case study profiling Ampowr's integrated certification methodology. Authored by NEN, the Dutch national standards body, the study is now publicly available in the ISO/TC 251 case studies library alongside profiles of Rijkswaterstaat, the US Army Corps of Engineers, Novo Nordisk, and Veolia. ISO/TC 251 approached Ampowr directly. NEN subsequently conducted an in-depth interview with Executive Director Andrew Elwell, examining how Ampowr operates its five certifications (ISO 9001, ISO 14001, ISO 45001, ISO 27001 and ISO 55001), as a single integrated system rather than separate compliance silos. "To our knowledge we are the o

Bial Reports Topline Results From ACTIVATE Phase 2b Study in GBA‑Associated Parkinson’s9.6.2026 08:00:00 CEST | Press release

Bial, an innovation-driven biopharmaceutical company focused on neurosciences and rare diseases, announced today that the Phase 2b ACTIVATE study of BIA 28-6156 (pariceract) in patients with Parkinson’s who have a pathogenic variant in the GBA1 gene (GBA-PD) did not meet its primary, nor the key secondary efficacy endpoints, meaning that BIA 28-6156 failed to slow the progression of GBA-PD versus placebo. BIA 28-6156 proved to be generally well tolerated in the study, with no unexpected safety concerns arising. While the study data provide valuable scientific information and contribute to a broader understanding of Parkinson’s biology, BIA 28-6156 did not demonstrate significant differentiation from placebo on the primary or key secondary endpoints measured. Based on the lack of demonstrated efficacy in this study, Bial has made the decision to discontinue further development of BIA 28-6156 for this indication. “We are disappointed with the outcome of the Phase 2b ACTIVATE study, as th

In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.

Visit our pressroom
World GlobeA line styled icon from Orion Icon Library.HiddenA line styled icon from Orion Icon Library.Eye