19.02.2015 Views

2014 Digital Yearbook of Homeland Security Awards

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

ably. Code Dx ® makes it easy for s<strong>of</strong>tware developers<br />

and security analysts to start checking their s<strong>of</strong>tware for<br />

vulnerabilities without a significant investment <strong>of</strong> time<br />

or money. It embeds, automatically selects, and runs the<br />

appropriate open-source static application security testing<br />

(SAST) tools for each language in a s<strong>of</strong>tware code<br />

base. It also adds in results from commercial analysis<br />

tools and manual code analyses, combines these with<br />

the results <strong>of</strong> the open-source tools, and unifies the<br />

results into a common severity scale and display. Its<br />

visual analytics help to triage and prioritize s<strong>of</strong>tware<br />

vulnerabilities so that the most important vulnerabilities<br />

are fixed first, and false positives are removed from<br />

future vulnerability scans. Code Dx provides advanced<br />

collaboration and reporting tools to ensure expeditious<br />

communication <strong>of</strong> findings and remediation recommendations.<br />

Compliance reports can be customized to<br />

show which vulnerabilities are potential violations <strong>of</strong><br />

regulations such as PCI or HIPAA. Code Dx removes the<br />

most prominent barriers to finding and fixing s<strong>of</strong>tware<br />

vulnerabilities: time to get started, complexity, and expense.<br />

Its entry point <strong>of</strong> $2,500 for an annual subscription<br />

makes it affordable even for small businesses.<br />

39<br />

Link to Web Page <strong>of</strong> Nominated Organization:<br />

––––––––––––––––––––––––––––––––––––––––<br />

http://www.codedx.com<br />

Link to additional information on product,<br />

service or program, with brief description:<br />

––––––––––––––––––––––––––––––––––––––––<br />

Code Dx finds, prioritizes, and visualizes s<strong>of</strong>tware<br />

vulnerabilities fast and affordably: http://securedecisions.com/products/codedx/<br />

Name and organization <strong>of</strong> nominating<br />

contact for this entry, including name, title,<br />

organization:<br />

––––––––––––––––––––––––––––––––––––––––<br />

Dr. Anita D’Amico / Director Secure Decisions<br />

Nominating contact’s <strong>of</strong>fice telephone and cell<br />

phone:<br />

––––––––––––––––––––––––––––––––––––––––<br />

Applied Visions, Inc. Secure Decisions Division<br />

<strong>of</strong>fice: (631) 759-3909<br />

cell: (516) 702-7706<br />

Nominating contact’s email address:<br />

––––––––––––––––––––––––––––––––––––––––<br />

Anita.Damico@SecureDecisions.com

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!