Follow on Google News News By Tag Industry News News By Location Country(s) Industry News
Follow on Google News | Snyk Named a 2018 Cool Vendor in Application and Data Security by GartnerBy: Snyk "The heavy use of open-source components often lacks proper vetting for vulnerabilities and license obligations, as well as mechanisms to alert to new issues as they're discovered," Furthermore, the report recommends to "Identify open-source components, as well as known vulnerabilities in those components, and leverage automated remediation, where available, to patch vulnerable components." Snyk solves the DevSecOps challenge by focusing on the developers, empowering them to own security through seamless integration into development tools throughout the software development lifecycle. A core component of making developers successful is automating fix actions, as the developer's job doesn't end with logging a vulnerability but with fixing it. In case upgrading a vulnerable open source library isn't possible, Snyk would backport the needed fix and create a precise patch that customers could immediately apply, making application open source dependencies enterprise grade just like RedHat does for system dependencies. "Organizations today are challenged with the need to transform and accelerate their digital practices and remain secure. We believe the Cool Vendor designation highlights the important role Snyk and addressing vulnerabilities in open source libraries plays in this journey," said Guy Podjarny, CEO of Snyk. "We feel the report validates our developer-first approach and remediation focus as the foundation to what customers need as they embrace open source and continuous delivery." The report is available to Gartner clients for download at Cool Vendors in Applications and Data Security (https://www.gartner.com/ Gartner Disclaimer Gartner does not endorse any vendor, product or service depicted in our research publications, and does not advise technology users to select only those vendors with the highest ratings or other designation. Gartner research publications consist of the opinions of Gartner's research organization and should not be construed as statements of fact. Gartner disclaims all warranties, expressed or implied, with respect to this research, including any warranties of merchantability or fitness for a particular purpose. About Snyk Snyk is a developer-first security solution that helps you use open source code and stay secure. Building on its unique vulnerability database, Snyk continuously finds and fixes known vulnerabilities and license violations in open source dependencies. Snyk integrates seamlessly into the developer workflow, tightly integrating with source control (e.g. GitHub, BitBucket, GitLab), hooking into your CI/CD pipelines and continuously monitoring PaaS and Serverless apps in production. To learn more, visit https://snyk.io/ End
|
|