LaunchDarkly announced the private preview of Warehouse Native Experimentation, its Snowflake Native App, to offer Data Warehouse Native Experimentation.
Contrast Security announced its partnership with GitHub and the availability of its suite of GitHub Actions, simplifying the process for developers to ensure the code they build is free of security vulnerabilities.
Implementing DevSecOps transformation across software delivery pipelines is complex and takes developers out of their existing CI/CD processes.
"The addition of Contrast's GitHub Actions to the GitHub Marketplace makes it much easier for development, security, and platform operations teams to drive DevSecOps transformation with automation at scale," said Nikesh Shah, Sr. Director, Strategic Alliances at Contrast Security. “By shifting security automation left within native CI/CD tooling, developers can now embed security within delivery pipelines as their code makes its way from build to test, and through production.”
Now available for deployment, Contrast's four GitHub Actions embed security into existing developer value streams with each commit, pull request, test, and deployment.
- Contrast Scan Analyze: Provides automated static code analysis within native CI pipelines, without ever leaving the GitHub environment, while prioritizing exploitable vulnerabilities and weeding out noise for scan times that are up to 10x faster than competing static application security testing (SAST) tools. How-to-fix guidance within the GitHub pipeline also enables early remediation before promoting to production.
- Contrast Assess for Azure Spring Cloud: Deploys as a java application with a Contrast Assess Security Java Agent (JAR) to the Azure Spring Cloud PaaS environment to extend security into SDLC automation.
- Contrast Assess for Azure Kubernetes Service (AKS): Builds and deploys a java application to the AKS with a Contrast Security Java Agent.
- Contrast Assess for Amazon Elastic Kubernetes Service (EKS): Builds and deploys a java application to the Amazon EKS with a Contrast Security Java agent.
Contrast’s GitHub Actions are available with support for Java applications, and additional language support is in development including new GitHub Actions for .NET and JavaScript applications.
Contrast is also actively investing in developer efficiency and ease-of-use by allowing users to try our products for free by simply registering with their GitHub credentials. More details will be announced in the coming months.
Industry News
SingleStore announced the launch of SingleStore Flow, a no-code solution designed to greatly simplify data migration and Change Data Capture (CDC).
ActiveState launched its Vulnerability Management as a Service (VMaas) offering to help organizations manage open source and accelerate secure software delivery.
Genkit for Node.js is now at version 1.0 and ready for production use.
JFrog signed a strategic collaboration agreement (SCA) with Amazon Web Services (AWS).
mabl launched of two new innovations, mabl Tools for Playwright and mabl GenAI Test Creation, expanding testing capabilities beyond the bounds of traditional QA teams.
Check Point® Software Technologies Ltd. announced a strategic partnership with leading cloud security provider Wiz to address the growing challenges enterprises face securing hybrid cloud environments.
Jitterbit announced its latest AI-infused capabilities within the Harmony platform, advancing AI from low-code development to natural language processing (NLP).
Rancher Government Solutions (RGS) and Sequoia Holdings announced a strategic partnership to enhance software supply chain security, classified workload deployments, and Kubernetes management for the Department of Defense (DOD), Intelligence Community (IC), and federal civilian agencies.
Harness and Traceable have entered into a definitive merger agreement, creating an advanced AI-native DevSecOps platform.
Endor Labs announced a partnership with GitHub that makes it easier than ever for application security teams and developers to accurately identify and remediate the most serious security vulnerabilities—all without leaving GitHub.
Are you using OpenTelemetry? Are you planning to use it? Click here to take the OpenTelemetry survey.
GitHub announced a wave of new features and enhancements to GitHub Copilot to streamline coding tasks based on an organization’s specific ways of working.
Mirantis launched k0rdent, an open-source Distributed Container Management Environment (DCME) that provides a single control point for cloud native applications – on-premises, on public clouds, at the edge – on any infrastructure, anywhere.
Hitachi Vantara announced a new co-engineered solution with Cisco designed for Red Hat OpenShift, a hybrid cloud application platform powered by Kubernetes.