The Orca Cloud Security Platform bridges the gaps between cloud and application security with new Static Application Security Testing (SAST), OSS License Scanning, and AI-Driven remediation capabilities.
Orca Security has announced enhancements to its Cloud Security Platform that unify security, DevOps, and development teams with a full lifecycle approach to securing cloud-native applications. The newly added features, including SAST, open-source license detection, and AI-driven remediation, promise to reshape cloud security by linking development risks more closely with production environments.
According to Orca, 62% of organizations face severe vulnerabilities in their code repositories. The integrated SAST solution scans custom code against a comprehensive set of security policies to detect vulnerabilities early in the Software Development Lifecycle (SDLC). This proactive measure aims to mitigate risks before they escalate.
In a statement, CEO and Co-Founder Gil Geron emphasized the importance of fostering a symbiotic relationship between securing production and building secure applications, noting that the new capabilities enable organizations to prevent security issues by addressing vulnerabilities both earlier in development and at their source.
The enhanced platform also features open-source license detection, which helps organizations manage compliance and legal risks associated with the use of open-source software components within their codebases. This capability allows teams to address potential licensing issues before deployments occur.
AI-Driven Remediation offers a streamlined solution for identifying and fixing misconfigurations. Teams can now submit one-click pull requests through direct integration with popular source code management platforms like GitHub, GitLab, and Azure DevOps, simplifying the process of remediation and accreditation across the application lifecycle.
Orca's updated AppSec features aim to drastically improve application security by reducing vulnerabilities, misconfigurations, and other risks from reaching production environments.
Comments