Parasoft is showcasing its latest product innovations at embedded world Exhibition, booth 4-318, including new GenAI integration with Microsoft Visual Studio Code (VS Code) to optimize test automation of safety-critical applications while reducing development time, cost, and risk.
Harness announced the latest release of its Security Testing Orchestration (STO) module, enabling developers to identify security issues earlier in the software development lifecycle and providing an innovative solution to ensure application software vulnerabilities are identified, deduped, prioritized, and remediated.
With these new features, developers can work more efficiently and collaboratively with security practitioners to save their organization time, cost, effort, and reduce risk.
Announced in general availability last year, Harness STO empowers developers to integrate security throughout the software delivery process. This is a critical capability for companies seeking to avoid the potential financial, reputational, and legal costs of security vulnerabilities. Harness STO lets developers prioritize application security vulnerability data, so they can deliver secure applications while maintaining deployment velocity.
"For fast-moving organizations, efficiency and security are critical when it comes to software development and delivery, however, ensuring both can be challenging," said Nick Durkin, Field CTO and VP, Field Engineering at Harness. "This suite of enhanced features in Harness STO empowers developers and security teams to work together, to increase both efficiency and productivity, simplify remediation, and offer greater governance and policy control, all while maintaining security controls."
Key features of this latest STO release include:
- Remediation Recommendations: To improve efficiency, developers can triage and remediate security issues or vulnerabilities, without security expertise.
- Two-Step Exemption and Security Review: Improves collaboration between developers and security practitioners, provides enhanced vulnerability management, and a secure way to exclude vulnerabilities.
- Step Palette for Scanner Configuration: To save time, identify and resolve issues, developers can easily configure scanners with a list of menu options and customize configurations based on their needs. Provides provision to cache scanner images to improve scale and performance.
- Comparative Metrics as Output Variables: Provides visibility into new and fixed vulnerabilities in the pipeline, and enables developers to better automate and set customizable OPA policies, governance, and notifications.
Harness STO can be customized based on organizational needs, and includes both scalability and flexibility for additional integrations to be incorporated into existing workflows. Harness also provides support and training to ensure successful adoption for organizations.
Industry News
JFrog announced general availability of its integration with NVIDIA NIM microservices, part of the NVIDIA AI Enterprise software platform.
CloudCasa by Catalogic announce an integration with SUSE® Rancher Prime via a new Rancher Prime Extension.
MacStadium announced the extended availability of Orka Cluster 3.2, establishing the market’s first enterprise-grade macOS virtualization solution available across multiple deployment options.
JFrog is partnering with Hugging Face, host of a repository of public machine learning (ML) models — the Hugging Face Hub — designed to achieve more robust security scans and analysis forevery ML model in their library.
Copado launched DevOps Automation Agent on Salesforce's AgentExchange, a global ecosystem marketplace powered by AppExchange for leading partners building new third-party agents and agent actions for Agentforce.
Harness completed its merger with Traceable, effective March 4, 2025.
JFrog released JFrog ML, an MLOps solution as part of the JFrog Platform designed to enable development teams, data scientists and ML engineers to quickly develop and deploy enterprise-ready AI applications at scale.
Progress announced the addition of Web Application Firewall (WAF) functionality to Progress® MOVEit® Cloud managed file transfer (MFT) solution.
Couchbase launched Couchbase Edge Server, an offline-first, lightweight database server and sync solution designed to provide low latency data access, consolidation, storage and processing for applications in resource-constrained edge environments.
Sonatype announced end-to-end AI Software Composition Analysis (AI SCA) capabilities that enable enterprises to harness the full potential of AI.
Aviatrix® announced the launch of the Aviatrix Kubernetes Firewall.
ScaleOps announced the general availability of their Pod Placement feature, a solution that helps companies manage Kubernetes infrastructure.
Cloudsmith raised a $23 million Series B funding round led by TCV, with participation from Insight Partners and existing investors.
IBM has completed its acquisition of HashiCorp, whose products automate and secure the infrastructure that underpins hybrid cloud applications and generative AI.