MA-VERACODE
6.10.2022 13:51:35 CEST | Business Wire | Press release
Veracode, a leading global provider of application security testing solutions, today announced the enhancement of its Continuous Software Security Platform to include container security. This early access program for Veracode Container Security is now underway for existing customers. The new Veracode Container Security offering, designed to meet the needs of cloud-native software engineering teams, addresses vulnerability scanning, secure configuration, and secrets management requirements for container images.
Veracode Chief Product Officer, Brian Roche, said, “As developers embrace cloud-native computing practices, containers have become increasingly important for business efficiency. This launch helps close a substantial gap in the market for developer-friendly solutions that cover critical capabilities for container security. We are excited to bring this next enhancement of our platform to the market and empower customers to address security testing for more modern architectures and deployment styles.”
The Requirement for Container Security is Rapidly on the Rise
Containers are increasingly used to simplify software deployment and runtime environment configuration management. They comprise small, fast, portable units of software in which code is packaged so that an application can be run quickly and reliably in different computing environments—from the desktop to the cloud. They provide an ecosystem of repositories, orchestration technologies, and capabilities that address related issues, such as service-to-service communication and configuration management. Instantiated in pipelines from code, containers have the benefit of immutability, meaning they are not updated, reconfigured or patched in production. Instead, the underlying image is updated with new capabilities and redeployed, helping to improve efficiency in the production environment.
Despite the benefits of containers, they are affected by many of the same problems that traditionally plague physical production or virtual server hardware, such as vulnerabilities introduced through additional software, poorly managed secrets (like Amazon Web Services keys and credentials in Dockerfiles), and security misconfigurations. This has resulted in increased demand for products that address these issues and related problems, with the Global Container Security Market size expected to reach $3.9 billion by 2027*. Container security scanning analyzes container images against organizational or industry-specific standards to identify insecure processes, misconfigurations that could lead to a vulnerability, and inadequate authentication and access control.
Veracode Container Security Integrates into the Developer Environment
Many products already in the market are aimed at securing containers in runtime and offer limited support for developers, posing a major challenge for early remediation. Veracode’s solution instead integrates into the CI/CD (continuous integration and continuous delivery) pipeline and is available at the command line interface. Providing coverage for vulnerability detection and remediation, secrets management, and security configuration issues on the most popular operating systems, it delivers remediation advice to developers early in the software development life cycle so that insecure containers don’t ship to production.
Veracode Container Security results are available in a variety of formats based on the user’s choice, including text, JSON (JavaScript Object Notation), and Software Bill of Materials (CycloneDX, SWID [Software Identification Tagging], or SPDX [Software Packaging Data Exchange]), making them easy to integrate with other tools. Providing developers and their teams with the tools to meet their specific needs means they can find and fix vulnerabilities early in the lifecycle, giving them confidence that their containerized application environment is secure.
“Veracode Container Security will be instrumental for our developers to ensure that the workloads they deploy into our cloud are secure,” said the Director of Information Security at an automotive company. “Without this tool, it would take our team weeks to receive and action container results and these would only have been available in limited formats. Now, we’re excited to integrate findings into the pipeline before they even move into production, creating time and cost efficiencies for our business.”
To learn more about Container Security, read more here.
*Research and Markets, "Global Container Security Market Size, Share & Industry Trends Analysis Report By Component (Products and Services), By Services Type, By Organization Size, By Vertical, By Regional Outlook and Forecast, 2021-2027" report, February 2022
About Veracode
Veracode is a leading AppSec partner for creating secure software, reducing the risk of security breach, and increasing security and development teams’ productivity. As a result, companies using Veracode can move their business, and the world, forward. With its combination of process automation, integrations, speed, and responsiveness, Veracode helps companies get accurate and reliable results to focus their efforts on fixing, not just finding, potential vulnerabilities. Learn more at www.veracode.com, on the Veracode blog and on Twitter.
Copyright © 2022 Veracode, Inc. All rights reserved. Veracode is a registered trademark of Veracode, Inc. in the United States and may be registered in certain other jurisdictions. All other product names, brands or logos belong to their respective holders. All other trademarks cited herein are property of their respective owners.
To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.
View source version on businesswire.com: https://www.businesswire.com/news/home/20221006005542/en/
About Business Wire
Subscribe to releases from Business Wire
Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.
Latest releases from Business Wire
Fourthline Trust Services Granted Status as Qualified Trust Service Provider in the EU24.8.2026 15:13:00 CEST | Press release
QTSP status allows for full control over the digital trust value chain from identity verification to qualified electronic signature (QES) issuance Fourthline Trust Services AB, a subsidiary of Fourthline, has been granted qualified status under the EU's eIDAS Regulation (910/2014)¹ and is now listed on the EU Trusted List as a Qualified Trust Service Provider (QTSP). Supervised by the Swedish Post and Telecom Authority (Post- och telestyrelsen, PTS), Fourthline Trust Services AB issues qualified certificates for electronic signatures. Fourthline, is the leading European provider of AI-powered identity verification (IDV) and compliance solutions. This milestone allows Fourthline full control over the entire digital trust value chain from identity verification to qualified electronic signature (QES) issuance. Ralph Post, Fourthline Trust Services AB Board Member: "By building our QTSP infrastructure similar to our sovereign AI-powered platform that drives our industry-leading identity ve
SLB Launches ExaCT Electrical Downhole CT Control System24.8.2026 13:02:00 CEST | Press release
New platform brings real-time electrical control to coiled tubing intervention, enabling greater precision, visibility and efficiency across intervention operations SLB (NYSE: SLB) today launched the ExaCT™ electrical downhole coiled tubing (CT) control system, an advanced intervention platform that introduces real-time electrical control to coiled tubing operations. By replacing pressure-dependent hydraulic actuation with electrical communication, power delivery and telemetry, the ExaCT system gives operators greater visibility, precision and control, helping improve intervention execution and reservoir access. The ExaCT system combines electrical power, telemetry and downhole measurements to enable communication with, actuation of and verification of downhole tools throughout an intervention. Continuous communication across the toolstring enables on-demand tool actuation across a wide range of intervention applications, including extended-reach and multilateral wells. The increased p
Wolters Kluwer Transforms Trusted Legal Content Into Structured, AI-Ready Intelligence That Powers the Next Wave of Legal AI24.8.2026 13:01:00 CEST | Press release
By transforming authoritative legal content into structured legal intelligence, Wolters Kluwer gives AI the context and relationships needed to deliver deeper research and higher-quality results Wolters KluwerLegal & Regulatory today announced the next evolution of Libra by Wolters Kluwer, its all-in-one Legal AI Workspace. By transforming authoritative legal sources, expert commentaries, and practical guidance into structured legal intelligence, Wolters Kluwer is making the relationships across the full breadth of its expert legal sources more explicit. This will enable deeper contextual research, more comprehensible answers, and workflow-ready results across legal work. Following the integration of Wolters Kluwer content into the Libra AI workspace in the first half of 2026, laws, rulings, expert commentaries, and practical guidance will now be linked to one another and to the matter at hand, creating a connected knowledge graph of expert-curated and authoredlegal knowledge that AI c
Daiichi Sankyo Appoints Markus Kosch to Lead Europe Business as Part of New Commercialization Organization24.8.2026 10:00:00 CEST | Press release
Daiichi Sankyo (TSE: 4568) today announced the appointment of Markus Kosch, MD, as Head of Europe Business, effective April 1, 2027. In this role, he will lead the company's European business within the new globally integrated Commercialization Unit and serve as General Manager of Daiichi Sankyo Europe GmbH, with legal responsibility for the company in Europe. The appointment reflects the next phase of growth of Daiichi Sankyo under its Five-Year Business Plan and the establishment of a new Commercialization Unit. Within this new structure, Markus Kosch will bring together the Oncology and Specialty businesses in Europe under one integrated leadership model to help bring innovative medicines to more patients across the region. For the past five years, Markus Kosch has led the Daiichi Sankyo Oncology Business Division in Europe and Canada, overseeing a period of significant growth and preparing the organization for an increasingly expanding oncology portfolio. Prior to joining Daiichi S
European Commission Approves DAYBU® (trofinetide) as the First and Only Treatment for Neurobehavioral Symptoms of Rett Syndrome in the European Union24.8.2026 09:01:00 CEST | Press release
Acadia Pharmaceuticals Inc. (Nasdaq: ACAD) today announced that the European Commission (EC) has granted marketing authorization for DAYBU (trofinetide) for the treatment of neurobehavioral symptoms of Rett syndrome in adults and pediatric patients aged five years and older, making it the first and only treatment approved for Rett syndrome in the European Union (EU). “The approval of DAYBU marks a significant milestone for the Rett syndrome community in the EU and advances our mission to bring this innovative treatment to patients and families who have long faced a profound unmet medical need,” said Catherine Owen Adams, Acadia’s Chief Executive Officer. “For people living with Rett syndrome, a devastating rare neurodevelopmental disorder, there have been no approved treatment options in the EU. We are proud to make DAYBU available and look forward to supporting patients, caregivers, and healthcare providers gain access to treatment." The DAYBU marketing authorization in the EU is prim
In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.
Visit our pressroom
