Harness Security Testing Orchestration Released
August 02, 2022

Harness announced the general availability of Harness Security Testing Orchestration (STO).

The Harness STO module helps organizations deliver business value to their customers more quickly by increasing release velocity and security in deployments, reducing risk and bringing security to all aspects of the software delivery lifecycle (SDLC). Harness STO eases developer workload by automating security scanning and governance in software delivery.

The Harness STO module is fully integrated into the Harness Software Delivery Platform and is purpose-built to enable engineering and DevSecOps teams to deliver secure applications at high velocity. By automating the scanning, analysis, and prioritization that otherwise slows down the engineering team, Harness STO makes it possible to create and enforce application security policies for a single service or across the whole organization. Orchestrating application security scanners across software delivery and processing the output of the scanners to make it easy for engineers to remediate allows for both high application security and high delivery velocity. Harness STO integrates with leading open source and commercial security scanners and can be used with Harness CI/CD or other CI/CD tooling.

Harness STO eliminates the time consuming manual process of reviewing, synthesizing and acting on the volume of disparate data from multiple scanners. Harness STO normalizes, dedupes and correlates the security scanner data and provides a single dashboard with a prioritized list of actionable results to remediate potential code vulnerabilities. Additionally, Harness STO empowers teams to customize governance configuration and establish consistent policies and procedures using policy as code and the Open Policy Agent (OPA).

"As more organizations adopt a cloud-native approach, they must take steps to secure their SDLC. With Harness STO, entire organizations can embrace the DevSecOps approach without requiring developers to become security experts or slowing down deployments. Harness STO makes security a team sport by infusing security into all aspects of the SDLC," said Jyoti Bansal, CEO and founder of Harness.

Harness STO is generally available today and works seamlessly with Harness CI and CD as part of the Harness Software Delivery Platform or is available as a SaaS, on-prem or hybrid offering.

Share this

Industry News

June 02, 2025

Pegasystems introduced Pega Agentic Process Fabric™, a service that orchestrates all AI agents and systems across an open agentic network for more reliable and accurate automation.

June 02, 2025

Fivetran announced that its Connector SDK now supports custom connectors for any data source.

June 02, 2025

Copado announced that Copado Robotic Testing is available in AWS Marketplace, a digital catalog with thousands of software listings from independent software vendors that make it easy to find, test, buy, and deploy software that runs on Amazon Web Services (AWS).

May 29, 2025

Sauce Labs announced the general availability of iOS 18 testing on its Virtual Device Cloud (VDC).

May 29, 2025

Infragistics announced the launch of Infragistics Ultimate 25.1, the company's flagship UX and UI product.

May 29, 2025

CIQ announced the creation of its Open Source Program Office (OSPO).

May 28, 2025

Check Point® Software Technologies Ltd.(link is external) announced the launch of its next generation Quantum(link is external) Smart-1 Management Appliances, delivering 2X increase in managed gateways and up to 70% higher log rate, with AI-powered security tools designed to meet the demands of hybrid enterprises.

May 28, 2025

Salesforce and Informatica have entered into an agreement for Salesforce to acquire Informatica.

May 28, 2025

Red Hat and Google Cloud announced an expanded collaboration to advance AI for enterprise applications by uniting Red Hat’s open source technologies with Google Cloud’s purpose-built infrastructure and Google’s family of open models, Gemma.

May 28, 2025

Mirantis announced Mirantis k0rdent Enterprise and Mirantis k0rdent Virtualization, unifying infrastructure for AI, containerized, and VM-based workloads through a Kubernetes-native model, streamlining operations for high-performance AI pipelines, modern microservices, and legacy applications alike.

May 28, 2025

Snyk launched the Snyk AI Trust Platform, an AI-native agentic platform specifically built to secure and govern software development in the AI Era.

May 28, 2025

Bit Cloud announced the general availability of Hope AI, its new AI-powered development agent that enables professional developers and organizations to build, share, deploy, and maintain complex applications using natural language prompts, specifications and design files.

May 27, 2025

AI-fueled attacks and hyperconnected IT environments have made threat exposure one of the most urgent cybersecurity challenges facing enterprises today. In response, Check Point® Software Technologies Ltd.(link is external) announced a definitive agreement to acquire Veriti Cybersecurity, the first fully automated, multi-vendor pre-emptive threat exposure and mitigation platform.

May 27, 2025

LambdaTest announced the launch of its Automation MCP Server, a solution designed to simplify and accelerate the process of triaging test failures.