Seguridad Mania.com - España y América Latina
Portal sobre tecnologías para la seguridad física
- Destacamos »
- software Anti Blanqueo
FULTON, MD -- (Marketwired) -- 10/24/13 -- Sonatype, a software company that enables developers to easily build software applications while significantly reducing security, compliance, and licensing risks, today announced a program dedicated to ensuring companies can quickly meet requirements of the Payment Card Industry (PCI) Data Security Standard (DSS) including the new OWASP guidelines.
Financial services companies are turning to Sonatype to address new PCI DSS and related OWASP requirements. The PCI DSS Version 3.0 Change Highlights requires an inventory of all system components including software applications and the application components contained in each. In addition, organizations seeking PCI compliance need to align their security approach with OWASP and other standards. This includes support for OWASP A9, which requires organizations to avoid the use of insecure components. This is of increasing importance because 80% of the typical enterpise application is assembled with components, such as open source software (OSS) libraries and frameworks. Component-based development allows for faster development against business requirements, but also brings complexity and risk as components are a prime target for hackers. Companies can contact Sonatype today to initiate a complete software application inventory, alerting them to their compliance exposure.
"Sonatype was instrumental in helping Crosskey quickly address the PCI DSS requirements associated with component usage," said Monika Liikamaa, Director of Card Solutions, Crosskey. "PCI compliance is a nearly impossible task without an automated approach, especially since we have to accommodate the latest release of OWASP. We used Sonatype's Component Lifecycle Management solution to identify and choose the best and safest components and to manage and monitor those components over time. As such, we have addressed a key application security risk allowing all Crosskey customers to rest assured that their data and payments are safe with us."
Sonatype plays an instrumental role in helping organizations address PCI DSS compliance (OWASP included), by ensuring that OSS components used to construct applications are secure and remain secure over time. Sonatype specifically helps organizations processing payment card transaction, such as financial service providers and retailers to:
About Sonatype
Sonatype's software protects the world's enterprise software applications from security, compliance, and licensing threats, while dramatically reducing application development and deployment time. Every day, millions of developers build software applications from open source building blocks, known as components. Customers rely on Sonatype's software to produce trust-worthy applications that meet release deadlines with components they can trust. Sonatype accomplishes this task by enabling developers to: select the best components from the start of the development lifecycle; monitor component usage over time; and, quickly fix new issues when identified. Sonatype is privately held with investments from New Enterprise Associates (NEA), Accel Partners, Bay Partners, Hummer Winblad Venture Partners and Morgenthaler Ventures. Visit: www.sonatype.com
Chris Walker
Sonatype
Email Contact
Publicamos interesante Informe de más de 48 págs y varios videos demostrativos sobre los posibles ataques a los robots de montaje de las fábricas. ... Leer más ►
Publicado el 22-Jun-2017 • 10.48hs
Publicado el 20-Jun-2017 • 20.22hs
Dirigido tanto a los principiantes, como a los expertos en seguridad informática y sistemas de control industrial (ICS), este libro ayudará a los lectores a comprender mejor la protección de normas de control interno de las amenazas electrónicas. ... Leer más ►
Publicado el 3-Ene-2012 • 20.16hs
Publicado el 25-Set-2009 • 01.26hs
Publicado el 17-Dic-2008 • 08.32hs
Publicado el 11-Oct-2016 • 12.48hs
Publicado el 15-Mar-2016 • 11.59hs
Publicado el 2-Feb-2017 • 11.38hs
Publicado el 20-Jun-2014 • 17.17hs
Publicado el 31-May-2011 • 05.13hs
Publicado el 25-Set-2008 • 17.54hs
Publicado el 1-Set-2016 • 16.11hs
Publicado el 31-Ago-2016 • 18.53hs
Publicado el 19-Ene-2017 • 15.47hs
Publicado el 4-Jul-2016 • 18.51hs