Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Cloud

11/13/2017
04:00 PM
Jai Vijayan
Jai Vijayan
Slideshows
Connect Directly
Twitter
LinkedIn
RSS
E-Mail

Emerging IT Security Technologies: 13 Categories, 26 Vendors

A rundown of some of the hottest security product areas, and vendors helping to shape them.
11 of 14

DevSecOps

Tools for integrating security controls and processes into the DevOps pipeline. 
Vendor: ShiftLeft

Fully automated security-as-a-service for detecting and mitigating security vulnerabilities in cloud apps and microservices during build-time and runtime.
	
Factors to Watch

- Offered on a Try-and-Buy basis
- Combines code intelligence from build-time and runtime
- Exited stealth mode in Sept. 2017 with $9.3 million in Series A funding



Key Executives: Founder and CEO Manish Gupta was formerly the chief product and strategy officer for FireEye.

Founded: 2016

Vendor: Threat Stack

Enabling security and operations to work together with tools for automating critical manual processes.
	
Factors to Watch

- Single platform for monitoring cloud, hybrid cloud, and containerized environment
- Integrates into existing workflows
- Raised $45 million in Series C funding September 2017 bring total raised to $70 million



Key Executives: Brian Ahern took over as Chairman and CEO in May 2015. He is the founder of Industrial Defender Inc., a company that Lockheed Martin acquired in 2014.

Founded: 2012

Image Source: REDPIXEL.PL via Shutterstock

DevSecOps

Tools for integrating security controls and processes into the DevOps pipeline.

Vendor: ShiftLeft

Fully automated security-as-a-service for detecting and mitigating security vulnerabilities in cloud apps and microservices during build-time and runtime.

Factors to Watch

  • Offered on a Try-and-Buy basis
  • Combines code intelligence from build-time and runtime
  • Exited stealth mode in Sept. 2017 with $9.3 million in Series A funding

Key Executives: Founder and CEO Manish Gupta was formerly the chief product and strategy officer for FireEye.

Founded: 2016

Vendor: Threat Stack

Enabling security and operations to work together with tools for automating critical manual processes.

Factors to Watch

  • Single platform for monitoring cloud, hybrid cloud, and containerized environment
  • Integrates into existing workflows
  • Raised $45 million in Series C funding September 2017 bring total raised to $70 million

Key Executives: Brian Ahern took over as Chairman and CEO in May 2015. He is the founder of Industrial Defender Inc., a company that Lockheed Martin acquired in 2014.

Founded: 2012

Image Source: REDPIXEL.PL via Shutterstock

11 of 14
Comment  | 
Print  | 
Comments
Oldest First  |  Newest First  |  Threaded View
MarkS94105
100%
0%
MarkS94105,
User Rank: Apprentice
12/8/2017 | 2:28:08 PM
Story -> Potentially Valuable; Site -> Problematic Viewing and Printing
This topic and story is presented as a white paper.  To read the story, we must click the next arrow 13 times to see all 14 pages.  This is time consuming as the site loads so many advertisements.  There is no simple way to print the story, as the print function show only 1 of 14, 2 of 14, etc.  This may be by design, but I find it a serious barrier and will seek other sources for this material.  
The Cold Truth about Cyber Insurance
Chris Kennedy, CISO & VP Customer Success, AttackIQ,  11/7/2019
6 Small-Business Password Managers
Curtis Franklin Jr., Senior Editor at Dark Reading,  11/8/2019
Black Hat Q&A: Hacking a '90s Sports Car
Black Hat Staff, ,  11/7/2019
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Write a Caption, Win a Starbucks Card! Click Here
Latest Comment: Dueling Free Throws A riff on the song Dueling Banjos
Current Issue
7 Threats & Disruptive Forces Changing the Face of Cybersecurity
This Dark Reading Tech Digest gives an in-depth look at the biggest emerging threats and disruptive forces that are changing the face of cybersecurity today.
Flash Poll
Assessing Cybersecurity Risk in Today's Enterprise
Assessing Cybersecurity Risk in Today's Enterprise
Security leaders are struggling to understand their organizations risk exposure. While many are confident in their security strategies and processes, theyre also more concerned than ever about getting breached. Download this report today and get insights on how today's enterprises assess and perceive the risks they face in 2019!
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2019-18862
PUBLISHED: 2019-11-11
maidag in GNU Mailutils before 3.8 is installed setuid and allows local privilege escalation in the url mode.
CVE-2019-18853
PUBLISHED: 2019-11-11
ImageMagick before 7.0.9-0 allows remote attackers to cause a denial of service because XML_PARSE_HUGE is not properly restricted in coders/svg.c, related to SVG and libxml2.
CVE-2019-18854
PUBLISHED: 2019-11-11
A Denial Of Service vulnerability exists in the safe-svg (aka Safe SVG) plugin through 1.9.4 for WordPress, related to unlimited recursion for a '<use ... xlink:href="#identifier">' substring.
CVE-2019-18855
PUBLISHED: 2019-11-11
A Denial Of Service vulnerability exists in the safe-svg (aka Safe SVG) plugin through 1.9.4 for WordPress, related to potentially unwanted elements or attributes.
CVE-2019-18856
PUBLISHED: 2019-11-11
A Denial Of Service vulnerability exists in the SVG Sanitizer module through 8.x-1.0-alpha1 for Drupal because access to external resources with an SVG use element is mishandled.