Harness Security Testing Orchestration Released
August 02, 2022

Harness announced the general availability of Harness Security Testing Orchestration (STO).

The Harness STO module helps organizations deliver business value to their customers more quickly by increasing release velocity and security in deployments, reducing risk and bringing security to all aspects of the software delivery lifecycle (SDLC). Harness STO eases developer workload by automating security scanning and governance in software delivery.

The Harness STO module is fully integrated into the Harness Software Delivery Platform and is purpose-built to enable engineering and DevSecOps teams to deliver secure applications at high velocity. By automating the scanning, analysis, and prioritization that otherwise slows down the engineering team, Harness STO makes it possible to create and enforce application security policies for a single service or across the whole organization. Orchestrating application security scanners across software delivery and processing the output of the scanners to make it easy for engineers to remediate allows for both high application security and high delivery velocity. Harness STO integrates with leading open source and commercial security scanners and can be used with Harness CI/CD or other CI/CD tooling.

Harness STO eliminates the time consuming manual process of reviewing, synthesizing and acting on the volume of disparate data from multiple scanners. Harness STO normalizes, dedupes and correlates the security scanner data and provides a single dashboard with a prioritized list of actionable results to remediate potential code vulnerabilities. Additionally, Harness STO empowers teams to customize governance configuration and establish consistent policies and procedures using policy as code and the Open Policy Agent (OPA).

"As more organizations adopt a cloud-native approach, they must take steps to secure their SDLC. With Harness STO, entire organizations can embrace the DevSecOps approach without requiring developers to become security experts or slowing down deployments. Harness STO makes security a team sport by infusing security into all aspects of the SDLC," said Jyoti Bansal, CEO and founder of Harness.

Harness STO is generally available today and works seamlessly with Harness CI and CD as part of the Harness Software Delivery Platform or is available as a SaaS, on-prem or hybrid offering.

Share this

Industry News

January 22, 2025

Postman announced the Postman AI Agent Builder, a suite empowering developers to quickly design, test, and deploy intelligent agents by combining LLMs, APIs, and workflows into a unified solution.

January 22, 2025

The Cloud Native Computing Foundation® (CNCF®), which builds sustainable ecosystems for cloud native software, announced the graduation of CubeFS.

January 21, 2025

BrowserStack and Bitrise announced a strategic partnership to revolutionize mobile app quality assurance.

January 21, 2025

Render raised $80M in Series C funding.

January 16, 2025

Mendix, a Siemens business, announced the general availability of Mendix 10.18.

January 16, 2025

Red Hat announced the general availability of Red Hat OpenShift Virtualization Engine, a new edition of Red Hat OpenShift that provides a dedicated way for organizations to access the proven virtualization functionality already available within Red Hat OpenShift.

January 16, 2025

Contrast Security announced the release of Application Vulnerability Monitoring (AVM), a new capability of Application Detection and Response (ADR).

January 15, 2025

Red Hat announced the general availability of Red Hat Connectivity Link, a hybrid multicloud application connectivity solution that provides a modern approach to connecting disparate applications and infrastructure.

January 15, 2025

Appfire announced 7pace Timetracker for Jira is live in the Atlassian Marketplace.

January 14, 2025

SmartBear announced the availability of SmartBear API Hub featuring HaloAI, an advanced AI-driven capability being introduced across SmartBear's product portfolio, and SmartBear Insight Hub.

January 14, 2025

Azul announced that the integrated risk management practices for its OpenJDK solutions fully support the stability, resilience and integrity requirements in meeting the European Union’s Digital Operational Resilience Act (DORA) provisions.

January 14, 2025

OpsVerse announced a significantly enhanced DevOps copilot, Aiden 2.0.

January 13, 2025

Progress received multiple awards from prestigious organizations for its inclusive workplace, culture and focus on corporate social responsibility (CSR).

January 13, 2025

Red Hat has completed its acquisition of Neural Magic, a provider of software and algorithms that accelerate generative AI (gen AI) inference workloads.

January 13, 2025

Code Intelligence announced the launch of Spark, an AI test agent that autonomously identifies bugs in unknown code without human interaction.