Deep-dive on Veracode Static Analysis Pipeline Scan

Logo
Presented by

Brittany O'Shea, Product Marketing Manager, Veracode

About this talk

The pace of modern software development continues to accelerate. To confidently ship secure software on time, you need the right scan, at the right time, in the right place. Veracode Static Analysis provides scans that are optimized for when they are leveraged in the SDLC. Our new Pipeline Scan—the first of its kind in the market—delivers rapid feedback to developers—on every build. We designed the Pipeline Scan to meet the needs of DevOps engineers; it was shaped by the experiences of EA customers who commit code hundreds to thousands of times a day across their organizations. This new scan integrates into the CI pipeline to offer test results each time code is committed. Teams can break the build if policy-violating flaws are introduced on a commit or net-new security issues are found. Because this scan is performed in-line with existing CI tooling, there is no learning curve for development teams. Join us for this deep-dive into the capabilities of this new scan type and learn how you can start using it to enable your developers and advance your AppSec program.
Related topics:

More from this channel

Upcoming talks (0)
On-demand talks (396)
Subscribers (31056)
Veracode is intelligent software security. The Veracode Software Security Platform continuously finds flaws and vulnerabilities at every stage of the modern software development lifecycle. Prompted by powerful AI trained by trillions of lines of code, Veracode customers fix flaws faster with high accuracy. Trusted by security teams, developers, and business leaders from thousands of the world’s leading organizations, Veracode is the pioneer, continuing to redefine what intelligent software security means. Learn more at www.veracode.com