zuruck zur Themenseite

Articles and background information on the topic

Cybersecurity

Vendor-independent security standard for software development

Veracode, Inc., a leader in application security, has announced the development of Verified. This is a program that enables a company's secure software development processes to be validated by a third party.

Around 30 percent of all security breaches are caused by vulnerabilities in the application area. Against this backdrop, more and more software buyers are demanding better insight and more transparency when it comes to the security of their software.

New research conducted in collaboration with the International Data Group (IDG) has found that 84% of software buyers include security requirements in new supplier contracts. Without appropriate proof of security, companies run the risk of losing sales. Verified offers companies several advantages:

- A strategy for implementing and advancing an application security program that is tied to practical results and business value.
- Third-party attestation of a security test as part of the development process.
- A strong focus on secure coding processes to support DevSecOps and rapid deployment of DevOps and agile development methodologies.
- A tool designed to ensure that third-party software meets a high standard of application security to reduce risk to the organization.

"Software is becoming increasingly important in all industries, so every company is developing its own software portfolio. Security becomes a competitive advantage when companies learn to program and acquire high-quality and secure software. However, security is often neglected due to the fast pace of the market," says Chris Wysopal, Chief Technology Officer, CA Veracode. "The result is vulnerable software that can cause major damage. Verified provides both a roadmap for secure software development and a quick way to verify the security status of specific vendors. The Verified seal recognizes organizations that demonstrate that they have implemented a mature application security program that covers the entire software development lifecycle."

Advertisement

Successful application security depends on changing processes and procedures to embed security into the entire development process. CA Veracode Verified ensures the appropriate implementation of secure coding practices.

CA Veracode Verified recognizes the three maturity levels to help organizations and consumers understand the security posture of the software they buy and use. The maturity levels are based on software security trend data from the CA Veracode Platform. This data, in turn, provides best practices to ensure a secure development process that minimizes vulnerabilities and thus reduces the risk of potential breaches.

  • Xing Icon
  • LinkedIn Icon
Advertisement
Back to topic page
Advertisement

You might also be interested in

Advertisement
Advertisement
Advertisement
Advertisement
Advertisement
Advertisement
Advertisement
Subscribe to our newsletter
Advertisement
Back to home