Fortifywhite papers help cloud infrastructure providers and customers understand how to unlock the full benefits of the cloud through software security

05 July 2010
Fortify® Software's two new white papers, one business-oriented and one technical, intended to help cloud infrastructure providers and their customers understand how to unlock the full benefits of the cloud through software security.

The company also announced new capabilities in its Fortify 360 and Fortify on Demand products that include cloud-specific vulnerability analysis, the industry’s first software security Cloud Readiness Scorecard™, and remediation capabilities that enable teams not just to evaluate the readiness of their software for cloud environments, but to find and fix security vulnerabilities that could be caused specifically by a move to a cloud environment. The solutions are ideal for both enterprises and agencies that are considering a move to the cloud, and cloud providers that offer shared infrastructure services to clients.

“The shared nature of the cloud dramatically amplifies the need for software security,” said Brian Chess, Ph.D., Founder and Chief Scientist at Fortify Software. “Through an aggressive education campaign and our new product capabilities, we hope to make it easy for cloud providers and cloud consumers to understand and deploy secure software that can be trusted in any environment and unlock the full benefits of the cloud.”

In its report titled, “Security Guidance for Critical Areas of Focus in Cloud Computing” (Dec. 2009), the Cloud Security Alliance defined numerous benefits of the cloud: “Cloud enhances collaboration, agility, scaling, and availability, and provides the potential for cost reduction through optimized and efficient computing.”

“To fully realize the benefits of cloud computing, customers must trust that infrastructure vulnerabilities – especially the software that cyber-threats target more and more – don’t compromise the cloud’s shared services or open new avenues for hackers to access private information or disrupt business processes,” said Dave Cullinane, Chairman of the Board and Co-Founder of the Cloud Security Alliance.

Fortify’s new business white paper, called “Capturing the New Frontier: How Software Security Unlocks the Power of Cloud Computing”, is intended for anyone involved in evaluating a move to the cloud so that they understand and can address the unique software security risks of the cloud. The technical white paper, called “Software Security in the Cloud: A Technical Perspective”, is aimed at security practitioners and developers interested in gaining a deeper technical understanding of the vulnerabilities inherent to a cloud environment, and how to take action to mitigate these vulnerabilities.

The new cloud-specific capabilities in Fortify 360, an on-premise solution for Software Security Assurance, enables users to test for security issues specific to the cloud; produce a Cloud Readiness Scorecard, which rates an application from weak to strong depending on the number of minor or major fixes required before the application should be moved to the cloud; mitigate vulnerabilities; and then deploy applications safely within cloud environments.

Fortify on Demand, a set of hosted Software-as-a-Service (SaaS) solutions that allow any organization to test and score the security of all software with greater speed and accuracy, is the industry’s first SaaS-based software security solution to test for security issues specific to the cloud and to provide a Cloud Readiness Scorecard.

“Like immunizing themselves against infection, cloud providers can use Fortify 360 or Fortify on Demand to ensure that bad code introduced by one or more customers doesn’t contaminate their cloud offering. They can also create premium offerings around applications or infrastructure where software security has been rigorously applied,” said Chess. “For cloud consumers, our products can ensure that their code is secured and that they can trust their software before the move to this unique shared environment.”

“Capturing the New Frontier: How Software Security Unlocks the Power in Cloud Computing” and “Software Security in the Cloud: A Technical Perspective” are available via the Fortify web site.

 

Latest small and medium business security articles

 McKay deploys 3ami Monitoring and Audit System to safeguard its intellectual property against theft

 Companies continue to leave their security measures short when it comes to protection against mobile device risks

 Cloud-based Infrastructure as a Service save up to 55 percent of IT operations spend

 Djigzo partners with Comodo to provide email encryption and authentication solution

 The USA continues to be the number one spam polluter whle Europe becomes the most prolific continent for spamming

 Trading Standards conduct anti-piracy raid

 W32 Stuxnet-B rootkit can install itself automatically from a USB memory stick onto a fully-patched PC

 Norbain adds Cascade Electronic Systems to its range to ensure intruder solutions are available for all budgets

 The security message about encryption is finally getting through

 Bloxx Web filtering monitors the Web browsing activity of John R Weir staff split over the company's seven sites

...[view more articles on small and medium business security]...

 

Other security websites:

Small and Medium Business security links

Security guard charged with murder of colleagues KLANG: The security guard who allegedly shot two his colleagues dead at the Tengku Ampuan Rahimah Hospital staff car park here on Aug 27 has been charged with murder.

Security cameras are operating in Hackensack; more to be installed soon Four security cameras are operating in the city of Hackensack, and one more will be installed soon, Mayor Mel Rateike reported Sept. 1 to the city council.

Security tight as Maguindanao massacre trial resumes Security was tight at the Metro Manila District Jail in Taguig City as the Maguindanao massacre trial resumed on Wednesday.

Poor security to keep more Afghan polls closed Afghan election officials said Wednesday that scores of additional polling stations will be closed during the Sept. 18 parliamentary vote because of the deteriorating security situation in the country.

Skybox Security Appoints Dr. Amnon Lotem as Chief Technology Officer SAN JOSE, Calif., Sept. 8 /PRNewswire/ -- Skybox Security, the leader in automated security risk and compliance management, today announced the appointment of Dr. Amnon Lotem as Chief Technology Officer. Dr. Lotem has more than 20 years of experience in Artificial Intelligence (AI), modeling and simulation techniques. He first joined Skybox Security in 2002 and, as Chief Scientist, guided the ...

Security officer describes panic as shots fired inside Portsmouth school PORTSMOUTH – A school security officer said Keith Elliott had a blank stare on his face as he fired a shot inside the Wilson High School cafeteria in front of 500 students. The officer recalled the situation as chaotic as students crawled on floor to escape. Authorities say the then 15-year-old had been suspended shortly before the April 28 shooting.  In testimony Wednesday afternoon, a student ...

Court Security Officer Accidentally Fires Gun, Hurts 1 An Arapahoe County Courthouse security officer accidentally fired his handgun, injuring a colleague Wednesday morning after he ran the weapon through an X-ray machine, authorities say.

directory of Small and Medium Business security suppliers
Search directory Register your company
Small and Medium Business Security books:

SEARCH NEWS
DIRECTORY
Google