Business Wire

Veracode Launches Container Security Offering That Secures Cloud-Native Application Development

Share

Veracode, a leading global provider of application security testing solutions, today announced the enhancement of its Continuous Software Security Platform to include container security. This early access program for Veracode Container Security is now underway for existing customers. The new Veracode Container Security offering, designed to meet the needs of cloud-native software engineering teams, addresses vulnerability scanning, secure configuration, and secrets management requirements for container images.

Veracode Chief Product Officer, Brian Roche, said, “As developers embrace cloud-native computing practices, containers have become increasingly important for business efficiency. This launch helps close a substantial gap in the market for developer-friendly solutions that cover critical capabilities for container security. We are excited to bring this next enhancement of our platform to the market and empower customers to address security testing for more modern architectures and deployment styles.”

The Requirement for Container Security is Rapidly on the Rise

Containers are increasingly used to simplify software deployment and runtime environment configuration management. They comprise small, fast, portable units of software in which code is packaged so that an application can be run quickly and reliably in different computing environments—from the desktop to the cloud. They provide an ecosystem of repositories, orchestration technologies, and capabilities that address related issues, such as service-to-service communication and configuration management. Instantiated in pipelines from code, containers have the benefit of immutability, meaning they are not updated, reconfigured or patched in production. Instead, the underlying image is updated with new capabilities and redeployed, helping to improve efficiency in the production environment.

Despite the benefits of containers, they are affected by many of the same problems that traditionally plague physical production or virtual server hardware, such as vulnerabilities introduced through additional software, poorly managed secrets (like Amazon Web Services keys and credentials in Dockerfiles), and security misconfigurations. This has resulted in increased demand for products that address these issues and related problems, with the Global Container Security Market size expected to reach $3.9 billion by 2027*. Container security scanning analyzes container images against organizational or industry-specific standards to identify insecure processes, misconfigurations that could lead to a vulnerability, and inadequate authentication and access control.

Veracode Container Security Integrates into the Developer Environment

Many products already in the market are aimed at securing containers in runtime and offer limited support for developers, posing a major challenge for early remediation. Veracode’s solution instead integrates into the CI/CD (continuous integration and continuous delivery) pipeline and is available at the command line interface. Providing coverage for vulnerability detection and remediation, secrets management, and security configuration issues on the most popular operating systems, it delivers remediation advice to developers early in the software development life cycle so that insecure containers don’t ship to production.

Veracode Container Security results are available in a variety of formats based on the user’s choice, including text, JSON (JavaScript Object Notation), and Software Bill of Materials (CycloneDX, SWID [Software Identification Tagging], or SPDX [Software Packaging Data Exchange]), making them easy to integrate with other tools. Providing developers and their teams with the tools to meet their specific needs means they can find and fix vulnerabilities early in the lifecycle, giving them confidence that their containerized application environment is secure.

“Veracode Container Security will be instrumental for our developers to ensure that the workloads they deploy into our cloud are secure,” said the Director of Information Security at an automotive company. “Without this tool, it would take our team weeks to receive and action container results and these would only have been available in limited formats. Now, we’re excited to integrate findings into the pipeline before they even move into production, creating time and cost efficiencies for our business.”

To learn more about Container Security, read more here.

*Research and Markets, "Global Container Security Market Size, Share & Industry Trends Analysis Report By Component (Products and Services), By Services Type, By Organization Size, By Vertical, By Regional Outlook and Forecast, 2021-2027" report, February 2022

About Veracode

Veracode is a leading AppSec partner for creating secure software, reducing the risk of security breach, and increasing security and development teams’ productivity. As a result, companies using Veracode can move their business, and the world, forward. With its combination of process automation, integrations, speed, and responsiveness, Veracode helps companies get accurate and reliable results to focus their efforts on fixing, not just finding, potential vulnerabilities. Learn more at www.veracode.com, on the Veracode blog and on Twitter.

Copyright © 2022 Veracode, Inc. All rights reserved. Veracode is a registered trademark of Veracode, Inc. in the United States and may be registered in certain other jurisdictions. All other product names, brands or logos belong to their respective holders. All other trademarks cited herein are property of their respective owners.

To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.

Contact information

Katy Gwilliam
kgwilliam@veracode.com

About Business Wire

Business Wire
Business Wire
24 Martin Lane
EC4R 0DR London

+44 20 7626 1982http://www.businesswire.co.uk

(c) 2018 Business Wire, Inc., All rights reserved.

Business Wire, a Berkshire Hathaway company, is the global leader in multiplatform press release distribution.

Subscribe to releases from Business Wire

Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.

Latest releases from Business Wire

Huawei Publishes First White Paper on Approaches to Fairness, Equity & Opportunity2.12.2022 04:07:00 CET | Press release

Huawei called on the ICT industry players to create a level playing field for all people, not just their own employees in its first White Paper on Approaches to Fairness, Equity & Opportunity at their Women in Tech event held at the Peter Drucker Forum. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20221201006045/en/ (Graphic: Business Wire) This White Paper is part of Huawei's ongoing campaign aimed at increasing digital skills education and access for women across the world. Huawei, like many other companies within the ICT industry, has advocated on fairness, opportunity, and equity within their own operations. Notably, the company has taken measurable steps to increase diversity in their workforce and increase internal representation of marginalized groups. It is widely understood that significant, tangible results from such programs are often slow to materialize. And thus Huawei has focused many of its efforts beyond the

H&M and Webhelp Finalize Acquisition of H&M’s Nuremberg Customer Service Center1.12.2022 16:29:00 CET | Press release

The responsible authorities have officially approved the transfer of fashion brand H&M’s Nuremberg customer service center to Webhelp, a leading global customer experience BPO player. The companies, having already signed an agreement in this regard on 19 October 2022, will see Webhelp operate the service center from 1 December onwards under its own name. With this acquisition, Webhelp doubles the number of its employees in Nuremburg and is now one of the largest employers in the industry in northern Bavaria. Today, Webhelp employs more than 110,000 employees in over 60 countries. Webhelp's German headquarters in Nuremberg already provides an attractive working environment with state-of-the-art technical equipment for over 500 employees. Furthermore, Webhelp is committed to investing in the development and wellbeing of its customer advisors, known as 'game-changers,' around the world. Webhelp will welcome the 500 employees of the H&M Service center from today, 1 December, to the Webhelp

Morgan Stanley Sustainable Signals: New Survey Shows Opportunities Exist for Asset Managers to Better Meet Asset Owner Sustainable Investing Needs1.12.2022 16:00:00 CET | Press release

Asset managers have the opportunity to meet asset owners’ growing demands for sustainable investment practices, products and reporting, according to new research by the Morgan Stanley Institute for Sustainable Investing. The latest in the Firm’s Sustainable Signals series, this institutional investor survey polled 110 asset owners in North America, Europe and Asia, as well as 201 asset managers across the same regions to understand what asset owners want and what asset managers are offering—and where the gaps lie in delivering environmental, social and governance (ESG) solutions. “The results of our latest Sustainable Signals survey show that sustainable investing remains an important focus area for institutional investors globally, with the vast majority reporting an increased interest over the past two years,” said Jessica Alsford, Chief Sustainability Officer and CEO of the Institute for Sustainable Investing at Morgan Stanley. “At the same time, our findings show a significant oppo

Successful Product Innovations and Portfolio Acquisition Drive Wella Company to Exceed Profit and Growth Expectations in Successful Second Year1.12.2022 15:12:00 CET | Press release

Wella Company, a global leader in the $100 billion hair and nail segment of the beauty industry, is marking a successful second year as a standalone company, delivering year-over-year double-digit profit and growth ahead of expectations. In Fiscal Year 22, which closed at the end of June, Wella Company beat all targets on financial performance across the globe. Since its founding in December 2020, Wella Company has delivered continuous double-digit profit and growth ahead of expectations and is one of the fastest-growing beauty companies in the sector. Wella Company’s portfolio includes iconic professional and retail hair, nail, and beauty tech brands Wella Professionals, O·P·I, ghd, Briogeo, Nioxin, Sebastian Professional, and Clairol. “Our first two years of business have shown the enduring potential of the Wella Company portfolio – we are re-establishing category excellence in both hair and nails, and both professionals and consumers are falling in love again with our beautiful bran

Sermo Survey Finds Opportunity to Educate General Care Physicians on PrEP to Increase Patient Adoption1.12.2022 15:05:00 CET | Press release

Timed to World AIDS Day, Sermo, a physician-first online community and leader in global HCP insights, released a new survey that found 46% of general care physicians including PCPs, OB-GYNs, and pediatric physicians, reported they feel they do not have enough knowledge about currently approved PrEP medication options to prescribe them to patients. Whereas 98% of infectious disease specialists reported they felt they have enough knowledge about PrEP medications signaling a need for further education from industry stakeholders for noninfectious disease specialists. An important area of opportunity as patients who are likely good candidates for PrEP often go to a PCP instead of seeking out an infectious disease specialist. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20221201005355/en/ The cost of PrEP continues to be a driving factor for patients’ decision to decline treatment in the U.S. as reported by 26% of surveyed physici