MA-VERACODE
6.10.2022 13:51:35 CEST | Business Wire | Press release
Veracode, a leading global provider of application security testing solutions, today announced the enhancement of its Continuous Software Security Platform to include container security. This early access program for Veracode Container Security is now underway for existing customers. The new Veracode Container Security offering, designed to meet the needs of cloud-native software engineering teams, addresses vulnerability scanning, secure configuration, and secrets management requirements for container images.
Veracode Chief Product Officer, Brian Roche, said, “As developers embrace cloud-native computing practices, containers have become increasingly important for business efficiency. This launch helps close a substantial gap in the market for developer-friendly solutions that cover critical capabilities for container security. We are excited to bring this next enhancement of our platform to the market and empower customers to address security testing for more modern architectures and deployment styles.”
The Requirement for Container Security is Rapidly on the Rise
Containers are increasingly used to simplify software deployment and runtime environment configuration management. They comprise small, fast, portable units of software in which code is packaged so that an application can be run quickly and reliably in different computing environments—from the desktop to the cloud. They provide an ecosystem of repositories, orchestration technologies, and capabilities that address related issues, such as service-to-service communication and configuration management. Instantiated in pipelines from code, containers have the benefit of immutability, meaning they are not updated, reconfigured or patched in production. Instead, the underlying image is updated with new capabilities and redeployed, helping to improve efficiency in the production environment.
Despite the benefits of containers, they are affected by many of the same problems that traditionally plague physical production or virtual server hardware, such as vulnerabilities introduced through additional software, poorly managed secrets (like Amazon Web Services keys and credentials in Dockerfiles), and security misconfigurations. This has resulted in increased demand for products that address these issues and related problems, with the Global Container Security Market size expected to reach $3.9 billion by 2027*. Container security scanning analyzes container images against organizational or industry-specific standards to identify insecure processes, misconfigurations that could lead to a vulnerability, and inadequate authentication and access control.
Veracode Container Security Integrates into the Developer Environment
Many products already in the market are aimed at securing containers in runtime and offer limited support for developers, posing a major challenge for early remediation. Veracode’s solution instead integrates into the CI/CD (continuous integration and continuous delivery) pipeline and is available at the command line interface. Providing coverage for vulnerability detection and remediation, secrets management, and security configuration issues on the most popular operating systems, it delivers remediation advice to developers early in the software development life cycle so that insecure containers don’t ship to production.
Veracode Container Security results are available in a variety of formats based on the user’s choice, including text, JSON (JavaScript Object Notation), and Software Bill of Materials (CycloneDX, SWID [Software Identification Tagging], or SPDX [Software Packaging Data Exchange]), making them easy to integrate with other tools. Providing developers and their teams with the tools to meet their specific needs means they can find and fix vulnerabilities early in the lifecycle, giving them confidence that their containerized application environment is secure.
“Veracode Container Security will be instrumental for our developers to ensure that the workloads they deploy into our cloud are secure,” said the Director of Information Security at an automotive company. “Without this tool, it would take our team weeks to receive and action container results and these would only have been available in limited formats. Now, we’re excited to integrate findings into the pipeline before they even move into production, creating time and cost efficiencies for our business.”
To learn more about Container Security, read more here.
*Research and Markets, "Global Container Security Market Size, Share & Industry Trends Analysis Report By Component (Products and Services), By Services Type, By Organization Size, By Vertical, By Regional Outlook and Forecast, 2021-2027" report, February 2022
About Veracode
Veracode is a leading AppSec partner for creating secure software, reducing the risk of security breach, and increasing security and development teams’ productivity. As a result, companies using Veracode can move their business, and the world, forward. With its combination of process automation, integrations, speed, and responsiveness, Veracode helps companies get accurate and reliable results to focus their efforts on fixing, not just finding, potential vulnerabilities. Learn more at www.veracode.com, on the Veracode blog and on Twitter.
Copyright © 2022 Veracode, Inc. All rights reserved. Veracode is a registered trademark of Veracode, Inc. in the United States and may be registered in certain other jurisdictions. All other product names, brands or logos belong to their respective holders. All other trademarks cited herein are property of their respective owners.
To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.
View source version on businesswire.com: https://www.businesswire.com/news/home/20221006005542/en/
About Business Wire
Subscribe to releases from Business Wire
Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.
Latest releases from Business Wire
Smead Capital Management Extends International Value Strategy to Global Investors Through New Fund10.6.2026 09:00:00 CEST | Press release
Firm expands access to long-standing U.S.-based international strategy, bringing disciplined, value-driven investing to a broader global audience through the Smead Global ex-US Value UCITS Fund Smead Capital Management, a Phoenix-based investment management firm and a leader in value investing, today announced the launch of the Smead Global ex-US Value UCITS Fund designed to provide global investors with access to a product modeled after the firm’s long-standing Smead International Value Strategy. The Smead Global ex-US Value UCITS Fund is domiciled in Luxembourg. Investors can access the fund through Smead Capital Management’s website and it is available to professional and qualified investors through the fund’s transfer agent. The strategy that the Smead Global ex-US Value UCITS Fund is modeled after, the Smead International Value Strategy, has been a core contributor to Smead Capital Management’s outstanding performance for over a decade. Like all Smead products, the Global ex-US Va
Dodge Opens Orders for the Next Generation Charger in Europe10.6.2026 09:00:00 CEST | Press release
The iconic American muscle car returns with an all-electric and gasoline-powered lineup engineered without compromise Orders are now open in Europe for the next-generation Dodge Charger lineup The range includes the all-electric Dodge Charger Daytona and the gas-engine, SIXPACK-powered Dodge Charger Built on the STLA Large multi-energy platform, the new Charger delivers two distinct performance experiences rooted in the same Dodge DNA Available in both two-door and four-door body styles, with R/T and Scat Pack trims across both gasoline and all-electric versions European customers can order through KWA, Dodge’s official importer, using this link An Icon Enters Its Next Generation This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260609386800/en/ Celebrating its 60th anniversary this year, Dodge opens a bold new chapter in Europe with the launch of the next-generation Dodge Charger, bringing one of America’s most iconic muscle c
Roquette Showcases Scalable Drug Delivery Innovations at CPHI China 202610.6.2026 09:00:00 CEST | Press release
Under the theme “One Roquette for Innovations,” the company will highlight its recently expanded portfolio to demonstrate how this unmatched range of high-performance excipients and innovative formulation solutions is powering the next generation of pharmaceuticals. Roquette, a global leader in plant-based ingredients and pharmaceutical excipients, will showcase its comprehensive portfolio of innovative drug delivery solutions at CPHI & PMEC China 2026, taking place June 16-18 at the Shanghai New International Expo Centre (SNIEC). Under the theme “One Roquette for Innovations,” Roquette’s Health & Pharma Solutions Business Unit will exhibit at booth E3D26, highlighting how its deep scientific expertise and technical capabilities enable pharmaceutical companies to turn promising formulations into scalable commercial realities. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260610596225/en/ Visit Roquette at booth E3D26 to mee
Trustd Brings Know Your Carrier to Market as Freight Fraud Costs European Supply Chains Over €1bn10.6.2026 08:01:00 CEST | Press release
New web-based tool lets shippers and 3PLs verify carriers in seconds as cargo crime across Europe reaches record levels Trustd, the digital identity and credentials verification platform for transport and logistics, is bringing to market Know Your Carrier (KYC), a web-based verification tool that lets shippers and 3PLs get an instant risk signal on carriers quoting for work via email in seconds. Cargo crime across EMEA has risen 438% in three years. More than 108,000 supply chain thefts were recorded across the region in the last two years. Of the 5% that reported a financial loss, the combined value exceeded €1bn, equivalent to €1.3m every 24 hours. Know Your Carrier draws on Trustd's expertise in digital identity verification to address a problem that has until now had no industry-wide solution. The web-based tool plugs into existing workflows with no installation or integration. Users enter an email address and, where available, a VAT number. The tool checks email legitimacy and dom
Sofinnova Partners Launches Collaboration with AWS to Scale AI Across Life Sciences Innovation10.6.2026 08:00:00 CEST | Press release
Sofinnova combines its sector expertise with AWS’s AI and cloud services to help life sciences companies scale fasterThe collaboration expands Sofinnova’s proprietary AI platform, Sofia, including a new founder-facing version Sofinnova Partners (“Sofinnova”), a leading European life sciences venture capital firm based in Paris, London, and Milan, today announced a collaboration with Amazon Web Services (AWS), to embed AI more deeply across its investment platform and portfolio companies. The collaboration supports Sofinnova.AI, the firm’s initiative to integrate AI across its core activities, from sourcing and evaluating investments to supporting company building. At the center of this effort is Sofia, Sofinnova's proprietary AI platform, which will be extended beyond internal use to include a founder-facing version. Through this collaboration, Sofinnova-backed startups will gain access to tailored AWS resources and technical enablement, helping them move faster from early research to
In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.
Visit our pressroom
