Business Wire

Advancing Cloud-Native Application Security: Veracode Connects Security from Code to Cloud with the Acquisition of Longbow Security

Share

Veracode, a global leader in application risk management, today announced the acquisition of Longbow Security, a pioneer in security risk management for cloud-native environments. The acquisition marks the next exciting phase of Veracode, underscoring the company’s commitment to help organizations effectively manage and reduce application risk across the growing attack surface.

The integration of Longbow into Veracode enables security teams to discover cloud and application assets quickly and easily assess their threat exposure using automated issue investigation and root cause analysis. Longbow provides a centralized view of risk for cloud assets and applications, thereby simplifying complex workflows, enabling faster and more effective remediation, and improving overall security posture. The result is reduced risk and fewer vulnerabilities in applications and cloud infrastructures.

Increased adoption of cloud infrastructure, combined with developers taking on more responsibility for the creation, deployment, and security of software, has introduced operational complexity. Organizations now require a deeper understanding of their risk profile within changing environments and a continuous security feedback loop throughout the software development life cycle.

“Security teams are drowning in alerts that lack sufficient detail on the level of business risk, degree of exploitability of a flaw, and specific code-level insight to keep pace with remediation requirements. As a result, risk continues to accumulate,” said Brian Roche, Chief Product Officer at Veracode. “With the combination of Veracode and Longbow, teams can get a comprehensive view of their risk, automate prioritization of what matters most, and, with Veracode Fix, automate remediation of code security flaws.”

Longbow and Veracode Simplify Cloud Application Security for Overloaded Teams

With 71 percent of organizations shouldering the burden of “security debt” (flaws in applications that remain unfixed for one year), teams must act quickly to reduce their threat exposure. Yet, sufficient visibility and alert fatigue continue to plague cloud and application security professionals today. With Longbow, Veracode customers can address these challenges in four ways:

  • Unified visibility of risk across applications, code, and cloud. This gives teams insight to tackle significant issues that matter most to the business.
  • Orchestrated remediation from code to cloud, enabling teams to prioritize and remediate with Veracode’s AI-driven fix capabilities.
  • Actionable insights with ‘Best Next Action’ advice, so customers can conduct a root cause analysis and pinpoint the best path to remediation.
  • Continuous monitoring and assessment via real-time vulnerability discovery across application portfolios and runtime environments, meaning customers know exactly what is running and where.

Derek Maki, Co-Founder & Chief Product Officer at Longbow said, “We founded Longbow with a mission to simplify an increasingly complex application security risk management process and help organizations reduce risk at scale. By joining forces with Veracode, our combined solutions provide unmatched visibility, automation, and remediation capability for security and engineering teams. We are excited to take cloud-native application security to the next level.”

“This is the perfect fit for Longbow,” said Dayne Myers, Co-founder & Chief Executive Officer of Longbow. “After careful consideration, we believe that our technology and team align seamlessly with Veracode's vision, making this the best choice for Longbow’s future."

“We’re thrilled to welcome Longbow to Veracode and expand our platform capabilities with industry-leading application security posture management for today’s enterprise requirements,” closed Sam King, Chief Executive Officer at Veracode. “The integration of our solutions provides organizations with a holistic application risk management platform that spans code to cloud. Veracode combined with Longbow advances the field of application security and enables customers to secure their increasingly complex application landscape more efficiently.”

Longbow is available immediately. To learn more about the platform, visit the Longbow website. Read the blog for information on the acquisition.

About Veracode

Veracode is intelligent software security. The Veracode Software Security Platform continuously finds flaws and vulnerabilities at every stage of the modern software development lifecycle. Using powerful AI trained on a carefully curated, trusted dataset from experience analyzing trillions of lines of code, Veracode customers fix flaws faster with high accuracy. Trusted by security teams, developers, and business leaders from thousands of the world’s leading organizations, Veracode is the pioneer, continuing to redefine what intelligent software security means.

Learn more at www.veracode.com, on the Veracode blog, and on LinkedIn and Twitter.

Copyright © 2024 Veracode, Inc. All rights reserved. Veracode is a registered trademark of Veracode, Inc. in the United States and may be registered in certain other jurisdictions. All other product names, brands or logos belong to their respective holders. All other trademarks cited herein are property of their respective owners.

To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.

Contact information

For more information:

Katy Gwilliam
kgwilliam@veracode.com

About Business Wire

For more than 50 years, Business Wire has been the global leader in press release distribution and regulatory disclosure.

Subscribe to releases from Business Wire

Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.

Latest releases from Business Wire

Binarly Launches Next-Generation Transparency Platform to Elevate Software Supply Chain Security23.4.2024 19:00:00 EEST | Press release

Binarly, provider of an industry leading AI-powered firmware and software supply chain security platform, announces the release of the Binarly Transparency Platform v2.0 with features for continuous post-build compliance, visibility into the security posture of IoT and XIoT devices, and the ability to identify malicious behavior and hidden backdoors within binaries based on their behavior. Learn more here. Based on the company’s proprietary Binary Risk Intelligence technology, the new innovations underscore Binarly's commitment to pioneering solutions that enhance transparency and security across firmware and software ecosystems. Founded in 2021 with a vision to increase transparency in the software supply chain through advanced program analysis, Binarly’s flagship platform has automated the discovery of hundreds of new vulnerabilities, preemptively addressing our customers' security risks before they could escalate. Binarly’s patented approach, powered by modern AI, has proactively ne

Making History: ASPIRE to Launch Inaugural ‘Abu Dhabi Autonomous Racing League’ Redefining Future of Extreme Sport on April 2723.4.2024 18:54:00 EEST | Press release

On Saturday, April 27th, Abu Dhabi will host a groundbreaking event, welcoming 10,000 spectators to witness the inaugural ASPIRE Abu Dhabi Autonomous Racing League (A2RL) at the iconic Yas Marina Circuit. This brand-new autonomous racing competition marks a significant milestone in motorsport history, billed as the largest league of its kind globally. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20240423980323/en/ Making History: ASPIRE to Launch Inaugural ‘Abu Dhabi Autonomous Racing League’ Redefining Future of Extreme Sport on April 27 (Photo: AETOSWire) Eight teams will compete: Code19 Racing (one of the first independent autonomous racing entity from the USA), Constructor University (based in Germany and Switzerland), Fly Eagle (representing Beijing Institute of Technology from China and Khalifa University from the UAE), HUMDA Lab (a member of the Széchenyi István University Group from Hungary), KINETIZ (a collaboration

DataXstream Expands into Nordic Region with Successful Go Live for Martin & Servera23.4.2024 16:07:00 EEST | Press release

DataXstream LLC, an SAP solution provider focused on order management and point of sale for sales and distribution, today announced it is expanding into the Nordic region after a successful implementation of its OMS+ platform across two key business units for the Martin & Servera group, Sweden’s leading restaurant and catering distributor that specializes in the needs of the restaurant industry. Learn more about DataXstream OMS+ here. Martin & Servera is a group of companies based in Stockholm who was faced with the challenge of managing multiple ERP systems that were facing end of life, so they decided to consolidate onto a single instance of SAP S/4 HANA for all their business units. As part of this migration, Martin & Servera turned to DataXstream’s OMS+ cross-channel order management platform to help them enable faster order entry and streamline their sales and order processes between all companies within their organization. Working with DataXstream’s LATAM delivery team, Kötthalle

Autel Energy’s Global ESG Launch Is A Success: Around 5,000 Trees Planted In EVergreen's Inaugural Tree Planting Initiative23.4.2024 16:00:00 EEST | Press release

Autel Energy, a leading provider of electric vehicle (EV) charging solutions and services, proudly announces the successful conclusion of its first EVergreen Global Tree Planting Initiative, which saw hundreds of participants around the globe plant an estimated 5,000 trees in the initial phase. This activity offsets an estimated 2,190,000 kilograms of carbon emissions (CO2), and emphasizes Autel Energy's and partners' commitment to their ESG goals towards a sustainable tomorrow. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20240423142946/en/ Autel Energy’s Global ESG Launch A Success (Graphic: Business Wire) Partner Experience and NGO Feedback Reflecting on the Initiative, one partner remarked, “We show the world we are not only talking about a better world and clean energy, but we are really taking steps by putting shovels in the ground.” The non-governmental organizations (NGO) involved expressed sincere gratitude for the

EIG’s MidOcean Energy Completes Acquisition of 20 Percent Stake in Peru LNG23.4.2024 15:00:00 EEST | Press release

MidOcean Energy (“MidOcean” or the “Company”), a liquefied natural gas (LNG) company formed and managed by EIG, a leading institutional investor in the global energy and infrastructure sectors, today announced the completion of its previously announced agreement to acquire SK earthon’s (“SK”) 20 percent interest in Peru LNG (“PLNG”), owner and operator of the first LNG export facility in South America. PLNG’s assets comprise a natural gas liquefaction plant with 4.45 mmtpa processing capacity, a fully-owned 408km-long pipeline with 1,290 mmcf/d capacity, two 130,000 m3 storage tanks, a fully-owned 1.4 km-long marine terminal and a truck loading facility with capacity of up to 19.2 mmcf/d. PLNG, operated by Hunt Oil Company, is one of only two LNG production facilities in Latin America, located in Pampa Melchorita, 170km south of Lima. De la Rey Venter, MidOcean Energy’s CEO, said, “The completion of this investment is an important milestone in our efforts to create a global, diversifie

In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.

Visit our pressroom
HiddenA line styled icon from Orion Icon Library.Eye