
Cyber Security
Checkmarx Introduces Advanced Container Security, Delivering Up to 40% Vulnerability Reduction and Significant Efficiency Gains
By Business Wire
.png?ext=.png)
Enhanced threat detection combines static analysis with malicious package analysis and integrated Sysdig runtime insights
PARAMUS, N.J.--(BUSINESS WIRE)--With the enterprise increasingly challenged to speed application deployment as the attack surface continually expands, Checkmarx, the industry leader in cloud-native application security, has introduced a powerful new Container Security solution. Offered as part of its cloud-native Checkmarx One application security (AppSec) platform, the new Container Security solution enhances team efficiency while delivering early vulnerability identification, actionable insights and streamlined mitigation within familiar development processes and workflows.
Sysdig runtime insights are integrated within the Checkmarx One platform to enhance threat detection by combining static analysis with runtime monitoring. Checkmarx Container Security thus enables more immediate, proactive response and mitigation strategies than other solutions, as well as a complete view of container security, leading to an improved security posture. In addition, in a capability unique in the industry, Checkmarx Container Security identifies and flags malicious packages, emphasizing the critical risk they pose and provides runtime usage information, offering insights into whether malicious packages are actively used in running containers.
With Checkmarx Container Security, heads of development can trust their teams are able to integrate security readily within their familiar workflows. Developers and AppSec teams can make use of a robust feature set that ensures a thorough and proactive approach. Features include:
- Image Scanning and Breakdown: Multi-layered approach analyzing each layer of an image to identify vulnerabilities and potential threats. A granular view of each container image layer helps pinpoint security issues.
- Package Inspection: Ensures packages within container images meet security best practices.
- Vulnerability Assessment: Prioritizes vulnerabilities based on severity with detailed information and remediation guidance.
- Triage Risks: Manages the severity and status of vulnerabilities with detailed audit trails.
- Base Image Remediation: Recommends alternative base images with a lower security risk profile.
- Malicious Package Identification: Leverages a proprietary database of more than 385,000 malicious packages discovered by the Checkmarx security research team. Container Security identifies and flags fully malicious packages as well as those for which only certain versions are flagged as malicious, alerting when packages are in active use in running containers.
- Results View: Intuitive interface providing detailed scan results and analysis.
- Scan Risk Report: Comprehensive reports summarizing scan results, downloadable in various formats.
“As software development practices evolve, the attack surface expands while attackers seize new opportunities to deploy new exploit techniques,” said Kobi Tzruya, Chief Product Officer at Checkmarx. “One customer, a cloud-based service provider, saw an immediate impact in addressing significant, business-critical security vulnerabilities with our Container Security solution. Their key outcomes included a 40% reduction in critical vulnerabilities and the elimination of over 200 hours in remediation and management processes.”
To learn more about Checkmarx Container Security and Checkmarx One, visit this page.
About Checkmarx
Checkmarx is the leader in application security and ensures that enterprises worldwide can secure their application development from code to cloud. Our consolidated platform and services balance the dynamic needs of enterprises by improving security and reducing TCO, while simultaneously building trust between AppSec, developers, and CISOs. At Checkmarx, we believe it’s not just about finding risk, but remediating it across the entire application footprint and software supply chain with one seamless process for all relevant stakeholders. We are honored to serve more than 1,800 customers, including 40 percent of all Fortune 100 companies.
Follow Checkmarx on LinkedIn, YouTube, and X.
Contacts
Media
Katie Brookes
Merritt Group for Checkmarx
brookes@merrittgrp.com
First published on Mon, Aug 5, 2024
Enjoyed what you read? Great news – there’s a lot more to explore!
Dive into our content repository of the latest tech news, a diverse range of articles spanning introductory guides, product reviews, trends and more, along with engaging interviews, up-to-date AI blogs and hilarious tech memes!
Also explore our collection of branded insights via informative white papers, enlightening case studies, in-depth reports, educational videos and exciting events and webinars from leading global brands.
Head to the TechDogs homepage to Know Your World of technology today!
Disclaimer - Reference to any specific product, software or entity does not constitute an endorsement or recommendation by TechDogs nor should any data or content published be relied upon. The views expressed by TechDogs' members and guests are their own and their appearance on our site does not imply an endorsement of them or any entity they represent. Views and opinions expressed by TechDogs' Authors are those of the Authors and do not necessarily reflect the view of TechDogs or any of its officials. While we aim to provide valuable and helpful information, some content on TechDogs' site may not have been thoroughly reviewed for every detail or aspect. We encourage users to verify any information independently where necessary.
Trending Business Wire
Motivus Strengthens Executive Leadership Team With Strategic C-Suite Appointments
By Business Wire
Omni Design Technologies Offers 3Nm, Single Core-Voltage Supply Rail Process, Voltage And Temperature (PVT) Monitor
By Business Wire
Optconnect Honored By Ericsson As Partner Of The Year
By Business Wire
Quantum Knight Receives FDA Authorization, Marking Breakthrough In Cryptographic Security
By Business Wire
Riverbed Named Data Observability Solution Provider Of The Year In 6Th Annual Data Breakthrough Awards Program
By Business Wire
Join Our Newsletter
Get weekly news, engaging articles, and career tips-all free!
By subscribing to our newsletter, you're cool with our terms and conditions and agree to our Privacy Policy.
Join The Discussion