Check Point® Software Technologies Ltd.(link is external) has emerged as a leading player in Attack Surface Management (ASM) with its acquisition of Cyberint, as highlighted in the recent GigaOm Radar report.
Secure Code Warrior announced the availability of SCW Trust Agent – a solution that assesses the specific security competencies of developers for every code commit.
This offering enables CISOs and application security (AppSec) teams to embrace a Secure-by-Design approach with deeper visibility into their organizations’ software development security posture.
The launch of SCW Trust Agent follows the company’s rollout of SCW Trust Score, an industry benchmark that quantifies the security posture of organizations’ developer teams. Both innovations apply over 20 million learning data points collected from 250,000 developers around the world. These deliver quantitative mechanisms that, when paired with Secure Code Warrior’s agile learning platform, become an integral part of an organization’s secure software development lifecycle.
“At Secure Code Warrior, we are unlocking new value for CISOs by giving them an easy-to-deploy solution to measure the health of code commits and visibility into the hundreds of source code repositories in their organization,” said Pieter Danhieux, Co-founder and CEO, Secure Code Warrior. “Our innovations are putting organizations in a better position to bridge the visibility gap between a developer's skill sets and quality of code produced without sacrificing development velocity.”
SCW Trust Agent works seamlessly with any Git-based code repository including GitHub, GitLab, Atlassian Bitbucket and more. With every commit, it looks to see if the developer making it has the prescribed secure code skillset in the commit’s programming language. It uses this information to give a rating on the health of that commit and aggregates these ratings across all of your repositories.
SCW Trust Agent delivers greater control and flexibility for developer gatekeeping. It allows administrators to set up policies and criteria, ensuring developers meet a baseline set of standards and expectations before developing code. For any gaps in developer skills, they can reference the SCW agile learning platform to upskill their language specific knowledge and competencies.
Overall SCW Trust Agent delivers:
- Improved Security Controls: Customize policy configuration based on the sensitivity of project requirements
- Comprehensive Visibility: Actionable insights into the security posture of every commit across all of your code repositories
- Developer-Led Security at Scale: Deliver projects securely at speed - allowing application security teams to focus on the most sensitive security reviews
Industry News
GitHub announced the general availability of security campaigns with Copilot Autofix to help security and developer teams rapidly reduce security debt across their entire codebase.
DX and Spotify announced a partnership to help engineering organizations achieve higher returns on investment and business impact from their Spotify Portal for Backstage implementation.
Appfire announced its launch of the Appfire Cloud Advantage Alliance.
Salt Security announced API integrations with the CrowdStrike Falcon® platform to enhance and accelerate API discovery, posture governance and threat protection.
Lucid Software has acquired airfocus, an AI-powered product management and roadmapping platform designed to help teams prioritize and build the right products faster.
StackGen has partnered with Google Cloud Platform (GCP) to bring its platform to the Google Cloud Marketplace.
Tricentis announced its spring release of new cloud capabilities for the company’s AI-powered, model-based test automation solution, Tricentis Tosca.
Lucid Software has acquired airfocus, an AI-powered product management and roadmapping platform designed to help teams prioritize and build the right products faster.
AutonomyAI announced its launch from stealth with $4 million in pre-seed funding.
Kong announced the launch of the latest version of Kong AI Gateway, which introduces new features to provide the AI security and governance guardrails needed to make GenAI and Agentic AI production-ready.
Traefik Labs announced significant enhancements to its AI Gateway platform along with new developer tools designed to streamline enterprise AI adoption and API development.
Zencoder released its next-generation AI coding and unit testing agents, designed to accelerate software development for professional engineers.
Windsurf (formerly Codeium) and Netlify announced a new technology partnership that brings seamless, one-click deployment directly into the developer's integrated development environment (IDE.)