Checkmarx Application Security Platform
October 19, 2021

Checkmarx announced the launch of the Checkmarx Application Security Platform to help CISOs, AppSec teams, and developers address the growing and dynamic security challenges they face.

With groundbreaking capabilities, the platform integrates into any workflow or tool, delivering security with the speed, scale, and flexibility to support the latest development requirements. It seamlessly works with all modern frameworks and development infrastructures through webhook integrations, a standard set of APIs, or command line interface.

Offering one-click scanning across many critical components of the application code, the platform provides the most complete, accurate, and actionable intelligence to remediate vulnerabilities early in the development life cycle. One click triggers a comprehensive scan to examine source code, third-party open-source libraries, API contracts, and infrastructure as code (IaC) templates. Results are aggregated, verified, and augmented with expert remediation advice to benefit security leaders, AppSec teams, and developers alike.

Through direct integration with Checkmarx Codebashing, the company’s developer education solution, the platform provides on-demand training to enable extensive code security, reduce human error, and enable organizations to build security into their processes and technologies as part of the application development life cycle.

Delivered as software as a service, the AppSec Platform tightly incorporates security into development while eliminating infrastructure management overhead as well as providing continuous updates and functional enhancements. Foundational services—such as metering, monitoring, access, and user experience—simplify administration of all applications, services, and deployment. In addition, the platform allows third parties to develop using platform services and APIs with a common experience and virtualized services that would otherwise vary across clouds.

“Software development drives business innovation, serving as an enabler and differentiator across all industries. However, software is becoming more complex, causing security and development teams to struggle with the fast pace and immense risk it can bring an organization,” said Razi Sharir, CPO at Checkmarx. “With the Checkmarx Application Security Platform, we are enabling secure software development across the business, giving security and AppSec teams visibility into all aspects of application code. This new integrated solution replaces multiple complex point products with a single platform that delivers actionable, accurate results, allowing developers to code boldly and quickly without sacrificing security.”

Committed to bringing security and development together through industry-leading products and services, Checkmarx has also pledged to continue contributing to these communities through education and open source projects like the IaC scanning project KICS.

“Checkmarx is a strong advocate for providing free tools and education to foster secure innovation across the community,” said Sharir. “KICS was just a starting point. We have some big announcements in the beginning of next year, as we work toward our goal of contributing back to the security and developer communities.”

Today’s CISOs face significant challenges, including managing a broad security scope, adhering to evolving global compliance requirements, effectively reporting security progress to the board, and mitigating the risk of internal and external threats. As the pace of application development increases, application security becomes a heightened priority as well.

Through the AppSec Platform, Checkmarx allows CISOs and their security teams to stay ahead of application security vulnerabilities, maintaining the deepest visibility across cloud-based components and architectures, such as containers, APIs, IaC, microservices, and more. The platform features a single dashboard that provides a unified view of all risk insights, including those from complex third-party code, reducing resolution time while increasing visibility and productivity. By integrating with all modern development infrastructure, it provides security professionals with flexibility while reducing their tool fatigue.

Nearly half (46%) of developers are expected to build and deploy software more quickly today than before the pandemic. This speed to market translates to business impact, with the McKinsey Developer Velocity Index finding that companies that achieved increased developer velocity in the top quartile saw revenue growth five times faster than organizations in the bottom quartile. To meet these increasing demands and deliver exceptional applications, development teams need a solution that seamlessly integrates with their existing workflows.

Checkmarx enables developers to easily build secure code from start to finish while accelerating development. Vulnerability detection occurs earlier in the development cycle, with the platform providing expert advice on how to quickly remediate risks. Whether through cloud native applications or on-premises deployment, it enables developers to integrate security in their coding environments from the start, allowing for full management of risks throughout development, even after the code is deployed. Teams can write code securely and confidently, providing significant market benefits for their organizations.

The Checkmarx Application Security Platform includes industry-leading SAST, SCA, Codebashing, and KICS application security services.

Share this

Industry News

May 12, 2022

Red Hat introduced Red Hat Enterprise Linux 9, the Linux operating system designed to drive more consistent innovation across the open hybrid cloud, from bare metal servers to cloud providers and the farthest edge of enterprise networks.

May 12, 2022

Couchbase announced version 7.1 of Couchbase Server.

May 12, 2022

Copado added Copado Robotic Testing to Copado Essentials.

May 11, 2022

Red Hat announced new advancements within its Red Hat Cloud Services portfolio, delivering a fully-managed and streamlined user experience as organizations build, deploy, manage and scale cloud-native applications across hybrid environments.

May 11, 2022

JFrog introduced a new Docker Desktop Extension for JFrog Xray that allows organizations to automatically scan Docker Containers for vulnerabilities and violations early in the development process.

May 11, 2022

Progress announced a series of updates in Progress Telerik and Progress Kendo UI.

May 11, 2022

Vultr announces that Vultr Kubernetes Engine (VKE) is generally available.

May 10, 2022

Docker announced new features and partnerships to increase developer productivity. Specifically, the company announced Docker Extensions which allow developers to discover and add complementary development tools to Docker Desktop.

May 10, 2022

Red Hat announced the general availability of Red Hat Ansible Automation Platform on Microsoft Azure, pairing hybrid cloud automation with the convenience and support of a managed offering.

May 10, 2022

The Fedora Project, a community-driven open source collaboration sponsored by Red Hat, announced the general availability of Fedora Linux 36, the latest version of the fully open source Fedora operating system.

May 10, 2022

Progress announced the release of Progress Chef Cloud Security, extending DevSecOps with compliance support for native cloud assets and enabling end-to-end management of all on premise, cloud and native cloud resources.

This new offering is complemented with new capabilities across the Chef portfolio targeting DevOps success in the most demanding and complex enterprise deployments.

May 10, 2022

Platform9 announced new platform capabilities in Platform9 5.5 that make it easier for cloud-native development and operations teams to build, scale, and operate apps and Kubernetes clusters in the cloud, on-premises, and at the edge.

May 09, 2022

Red Hat and Accenture have expanded their nearly 12 year strategic partnership to further power open hybrid cloud innovation for enterprises worldwide.

May 09, 2022

Opsera has partnered with Mindtree.

May 09, 2022

Mendix announced that Mendix Workflow for process automation is now generally available.