Synopsys Announces Polaris Software Integrity Platform
February 26, 2019

Synopsys introduce the new Polaris Software Integrity Platform, which brings the power of Synopsys Software Integrity products and services together into an integrated solution that enables security and development teams to build secure, high-quality software faster.

Synopsys' Polaris Software Integrity Platform is a cloud-based platform that simplifies and enables comprehensive application security from developer to deployment through the combination of the Synopsys Code Sight IDE plugin and a central analysis server, which share the same powerful analysis engines; a broad set of integrations with popular development and operations tools; and reports, dashboards, and APIs that provide a consolidated view of application security risks. With the Polaris Software Integrity Platform, teams can detect and remediate vulnerabilities earlier in software development, integrate and automate comprehensive security analysis throughout the software development lifecycle (SDLC), and manage application security risks holistically across their application portfolio.

"To effectively secure their applications against increasingly sophisticated attacks, organizations need to employ a combination of security testing techniques at multiple points within the SDLC," said Andreas Kuehlmann, GM of the Synopsys Software Integrity Group. "But, to maintain the velocity required to be competitive, they also need application security solutions that can match the accelerating pace of software development, can scale, and can integrate seamlessly with their existing development infrastructure. Over the past several years, we have developed a portfolio of differentiated products and services that address the gamut of security testing needs in the market, and with the Polaris Software Integrity Platform we're delivering on our vision to drive synergy and efficiency across these solutions."

The benefits of the Polaris Software Integrity platform include:

- Early Risk Discovery and Mitigation – The platform helps developers remediate security vulnerabilities early in development, when it is most efficient and cost-effective. The new Code Sight IDE plugin, a key component of the Polaris Software Integrity Platform, extends the power of Synopsys' solutions to the developers' native work environment, enabling them to easily find and fix security vulnerabilities in their code as they write. Initially available for IntelliJ, Visual Studio, and Eclipse, the Code Sight plugin combines the same powerful analysis engines as the platform's central server with fast incremental analysis, ensuring thorough and consistent results without hindering productivity. Code Sight also provides context-sensitive eLearning modules that help developers fix issues quickly and train them to write more secure code going forward.

- Shift Left from Detection to Prevention – the Polaris Software Integrity Platform is the only solution to use the same powerful analysis engines both on a central server as part of the CI/CD pipeline and on the developer desktop for fast, incremental scanning. It enables developers to address vulnerabilities while they are coding and therefore produce a more secure codebase prior to checking it into their repository. This dual workflow significantly increases developer productivity, while the central analysis catches any remaining defects before they can make it to production.

- Simple and Flexible Operation – The cloud-based central server of the Polaris Software Integrity Platform provides the flexibility to manage deployments, initiate security scans, analyze results, and coordinate remediation activities using multiple Synopsys analysis engines, such as Coverity and Black Duck, through an intuitive web-based management user interface. The platform also gives teams the flexibility to integrate and automate application security analysis across the SDLC using their existing development and DevOps tools, including Jenkins, Jira, Slack, Red Hat OpenShift, and Kubernetes.

- Consolidated Risk Reporting – The Polaris Software Integrity Platform helps security teams view application security risk holistically with consolidated reports and interactive dashboards that combine information from multiple security analysis engines, across their entire application portfolio, with results over time. In addition, the Polaris Software Integrity Platform APIs make it easy for teams to integrate Synopsys security testing results into third-party security and risk reporting solutions.

Share this

Industry News

January 09, 2025

Checkmarx announced a new generation in software supply chain security with its Secrets Detection and Repository Health solutions to minimize application risk.

January 08, 2025

SmartBear has appointed Dan Faulkner, the company’s Chief Product Officer, as Chief Executive Officer.

January 07, 2025

Horizon3.ai announced the release of NodeZero™ Kubernetes Pentesting, a new capability available to all NodeZero users.

January 06, 2025

GitHub announced GitHub Copilot Free.

January 06, 2025

Veracode acquired certain assets of Phylum, including its malicious package analysis, detection, and mitigation technology.

January 06, 2025

AppViewX announced the completion of its acquisition by Haveli Investments.

December 19, 2024

Check Point® Software Technologies Ltd. has been recognized as a Leader in the 2024 Gartner® Magic Quadrant™ for Email Security Platforms (ESP).

December 19, 2024

Progress announced its partnership with the American Institute of CPAs (AICPA), the world’s largest member association representing the CPA profession.

December 18, 2024

Kurrent announced $12 million in funding, its rebrand from Event Store and the official launch of Kurrent Enterprise Edition, now commercially available.

December 18, 2024

Blitzy announced the launch of the Blitzy Platform, a category-defining agentic platform that accelerates software development for enterprises by autonomously batch building up to 80% of software applications.

December 17, 2024

Sonata Software launched IntellQA, a Harmoni.AI powered testing automation and acceleration platform designed to transform software delivery for global enterprises.

December 17, 2024

Sonar signed a definitive agreement to acquire Tidelift, a provider of software supply chain security solutions that help organizations manage the risk of open source software.

December 17, 2024

Kindo formally launched its channel partner program.

December 16, 2024

Red Hat announced the latest release of Red Hat Enterprise Linux AI (RHEL AI), Red Hat’s foundation model platform for more seamlessly developing, testing and running generative artificial intelligence (gen AI) models for enterprise applications.

December 16, 2024

Fastly announced the general availability of Fastly AI Accelerator.