Latest Innovations from Veracode Help Organizations Be Secure by Design
AWS Re:Invent (booth #563)-- Veracode, a global leader in application risk management, today announced powerful innovations to help developers build secure-by-design software, and security teams reduce risk across their code-to-cloud ecosystem. The latest enhancements in Veracode Fix and Veracode Risk Manager, formerly known as Longbow Security, give developers the ability to build software, assess risk, and remediate at the click of a button in their preferred environment.
Tim Jarrett, Group Vice President of Product Management at Veracode, said, “Six months ago, we proudly signed the Cybersecurity and Infrastructure Security Agency’s (CISA) Secure By Design pledge, which set out to build cybersecurity into the design and manufacture of technology products. To fulfil that promise, Veracode continues to invest in new features that shift security left and make it a more automated, frictionless experience for developers.”
AI-powered Remediation in the IDE for Developers
The explosion of AI means code is now being written faster than ever—but the challenge is AI-generated code contains around the same percentage of flaws as human-generated code. With 71 percent of organizations drowning in security debt through years of accumulated code vulnerabilities, developers are in dire need of tools to accelerate flaw remediation.
The latest innovations in Veracode Fix, which combines AI and human expertise to reduce remediation time from months to minutes, means developers now have access to drop-in code fixes for up to 80 percent of first-party weaknesses. For an organization with 2,000 security flaws, this means using the tool could cut the time to clear security debt by 2,400 hours, saving $240,000 compared to manual remediation.
“We listened carefully to feedback from developers who loved the tool and wanted to integrate it into their workflows. With many of our customers building in environments like GitHub every day, we brought Veracode Fix directly into their Push/Pull Request activities. Our flexible GitHub Action can be configured to remediate all files in a project, fix all supported flaw types, and enable developers to leave individual comments on each fix suggestion,” Jarrett said.
Veracode Fix is available in all integrated development environments (IDE), meaning developers can fix vulnerabilities at the push of a button in their CI/CD pipelines and ensure they’re building software that’s secure by design.
The tool is already helping customers make security innovation become a measurable reality. Phillip Hagedorn, Cloud Architect at HDI Global SE, said, “One future success factor will be Veracode’s artificial intelligence helping fix our findings. AI supporting fixes is a game changer. We have an approved plan for benefitting from AI, and it’s time to roll it out.”
With Veracode’s newest IDE support, developers can also find and fix vulnerabilities in first-party and open-source code before adding it to the codebase. This means more streamlined workflows and problem-solving using static analysis and software composition analysis in Visual Code Studio, JetBrains (IntelliJ, PyCharm, Rider), Eclipse, and Visual Studio.
Application Security Posture Management with Veracode Risk Manager for Security Teams
Alongside Veracode Fix, Veracode Risk Manager (VRM) correlates and contextualises risk from code to cloud, tracing it back to the root cause to enable one-to-many remediation. This comprehensive visibility empowers security teams to prioritize and eliminate the most critical vulnerabilities with the least amount of effort.
A series of new advancements to VRM gives developers and security teams even greater control over risk management. The latest features include:
- GitLab Repository Connector: Empowers root cause analysis of runtime issues by tracing them directly back to the source code repository, allowing teams to pinpoint the origin of risks and accelerate remediation.
- GitLab Ultimate Security Findings: Enables ingestion, unification, correlation, and prioritization of Gitlab Ultimate Security Findings including Static Analysis and Container Security findings. This enables teams to focus on the issues that matter most and provides unified risk and compliance reporting.
- Custom Compliance Mappings: Provides organizations with the tools to customize compliance mappings according to their specific requirements, facilitating easier compliance management.
- New Connectors: VRM has several new native findings connectors, including Tenable, Qualys, Rapid7, Aquasec, ServiceNow Two-Way sync, and more.
“VRM is the brain of cloud-native security, making it an indispensable tool for enterprises committed to fortifying their defenses in a cloud-native world. The tool addresses common challenges, such as fragmented visibility and scalability limitations, and transforms how organizations visualize, prioritize, and remediate risk with a 360-degree view of security vulnerabilities. These latest enhancements, along with the Application Risk Heatmap and Universal Connector features we launched earlier this year, make VRM a transformative upgrade for enterprises that are serious about security,” Jarrett said.
Helping Organizations Build Secure by Design
Veracode’s newly appointed Chief Product Officer, Ravi Iyer, is focused on embedding security into product development and enhancing the overall developer experience. “These latest innovations underline the importance of building, buying, and deploying software that’s secure by design. Our customers need solutions that help them identify, manage, and remediate risk at scale, and we’ll continue to meet this demand by making Veracode’s products integrated and easy for developers to use,” Iyer said.
Veracode will be at AWS Re:Invent conference in Las Vegas, December 2-6, 2024. Visit booth #563 for more information on the latest products or to get a demo of Veracode Fix and VRM.
About Veracode
Veracode is a global leader in Application Risk Management for the AI era. Powered by trillions of lines of code scans and a proprietary AI-assisted remediation engine, the Veracode platform is trusted by organizations worldwide to build and maintain secure software from code creation to cloud deployment. Thousands of the world’s leading development and security teams use Veracode every second of every day to get accurate, actionable visibility of exploitable risk, achieve real-time vulnerability remediation, and reduce their security debt at scale. Veracode is a multi-award-winning company offering capabilities to secure the entire software development life cycle, including Veracode Fix, Static Analysis, Dynamic Analysis, Software Composition Analysis, Container Security, Application Security Posture Management, and Penetration Testing.
Learn more at www.veracode.com, on the Veracode blog, and on LinkedIn and X.
Copyright © 2024 Veracode, Inc. All rights reserved. Veracode is a registered trademark of Veracode, Inc. in the United States and may be registered in certain other jurisdictions. All other product names, brands or logos belong to their respective holders. All other trademarks cited herein are property of their respective owners.
View source version on businesswire.com: https://www.businesswire.com/news/home/20241202337994/en/
Contacts
For more information:
Katy Gwilliam
kgwilliam@veracode.com
About Business Wire
For more than 50 years, Business Wire has been the global leader in press release distribution and regulatory disclosure.
www.businesswire.com

Subscribe to releases from Business Wire
Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.
Latest releases from Business Wire
30 Peer-Reviewed Studies Highlight Statistically Significant Health Benefits of Almased16.7.2025 10:15:00 EEST | Press release
Two recent, peer-reviewed clinical studies have found that Almased, a high-protein, low-glycemic meal replacement, delivers significant health benefits ranging from weight loss and improved metabolic health to anti-aging effects and enhanced quality of life. Both reviews synthesize 30 peer-reviewed clinical studies across three decades of scientific research, confirming that Almased is effective and safe for weight reduction, preservation of lean muscle mass, and cardiovascular health. The 2025 review in the American Journal of Biomedical Science & Research highlighted Almased’s efficacy and safety for wide groups of people including individuals seeking weight loss, those with metabolic syndrome or fatty liver, older adults needing to preserve muscle mass, and athletes or healthy-weight individuals who require additional high-quality protein. This review also discusses how Almased’s patented fermentation process produces over 80 bioactive peptides, including 2 times the average daily i
Skechers AERO Series Opens New Chapter of Technical Running Innovation16.7.2025 10:00:00 EEST | Press release
Skechers Performance opens a new chapter of running innovation with the arrival of the Skechers AERO series. Named for the aerodynamic feel of the design, Skechers AERO represents the latest evolution of technical running shoes from the brand. The collection is engineered to deliver an exhilarating blend of speed, style and comfort to help runners cut through the wind and push beyond their personal bests while logging miles. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20250716754749/en/ Introducing the Skechers AERO Series of technical running shoes: Skechers AERO Burst, Skechers AERO Spark, and Skechers AERO Tempo (L-R). “Recently launched in North America and Asia, the AERO Series leverages innovative technologies to elevate our signature comfort that’s now available to runners in Europe,” said Ben Stewart, Vice President, Skechers Technical Performance Division. “An evolution of our legacy in running, Skechers AERO was d
The Future of Connectivity Starts Here: Network X Returns to Paris October 14 - 1616.7.2025 10:00:00 EEST | Press release
Network X 2025 - the only event that brings the fixed and mobile markets together - returns to Paris Expo Porte de Versailles October 14 - 16. Built for telecom's top players, this annual show drives business model innovation and monetisation of next-generation fixed, mobile, satellite and transport networks through AI and cloud. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20250716595903/en/ Speaker on Headliners Stage at Network X 2024 New to Network X in 2025 are specialty events designed to deliver expert insights on trending topics including Data Center World and two Expo Stages for Fixed-Line and Mobile. More than 5,500 telco network infrastructure professionals will gather alongside 1,500 telcos to learn from six program tracks highlighting the latest advancements in Fibre, Wi-Fi Networks and Services, IP and Optical Transport, Mobile Networks, Mobile Services, and Data Centres. “Network X is more than a conference—it
4Moving Biotech Enrolls First Patient in Phase 2a Trial of 4P004, a Potential First-in-Class GLP-1 Therapy for Knee Osteoarthritis16.7.2025 08:00:00 EEST | Press release
4Moving Biotech (4MB), a spin-off of 4P-Pharma dedicated to developing first-in-class treatments that modify the natural course of knee osteoarthritis (OA), today announced that the first patient has been enrolled in Phase 2a clinical trial, INFLAM MOTION. The study will evaluate 4P004, an intra-articular GLP-1 analog, as a potential first-in-class therapeutic candidate for knee osteoarthritis. INFLAM MOTION is a multicenter, randomized, double-blind, placebo-controlled Phase 2a trial planned to be conducted across Europe, the United States, and Canada. A total of 129 patients worldwide diagnosed with knee OA will be enrolled to evaluate, for the first time in humans, the efficacy of 4P004. “Enrolling our first patient is a pivotal step toward rewriting the treatment paradigm for knee osteoarthritis,” said Professor Francis Berenbaum, MD, PhD, Chief Medical Officer at 4Moving Biotech. “Almost 600 million people live with OA, yet no disease-modifying therapy has been done to patients. B
Belkin Achieves Qi2.2 Certification for Its Upcoming Products, Unlocking the Future of 25W Wireless Charging15.7.2025 20:06:00 EEST | Press release
Belkin, a leading consumer electronics brand for over 40 years, today announced it has received official Qi2.2 certification from the Wireless Power Consortium (WPC) for its upcoming products. As one of the first accessory brands to deliver Qi2.2-certified devices, Belkin is helping bring the next generation of wireless charging to market – enabling faster wireless charging speeds, broader compatibility, and improved performance for consumers. Belkin’s close partnership with the WPC since 2015 has been instrumental in bringing these advancements to consumers. As an early adopter and long-time contributor to WPC standards, Belkin was selected as one of a small group of trusted manufacturers to test and certify Qi2.2 products ahead of the broader industry rollout. All Belkin products undergo rigorous safety, quality, and performance testing. The company’s global headquarters includes WPC certified test equipment and state-of-the-art test labs dedicated to full product lifecycle validatio
In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.
Visit our pressroom