openPR Logo
Press release

Accurics Unveils GitLab Static Analysis Integration To Contextualize Risk Across The SDLC

06-16-2021 09:25 AM CET | IT, New Media & Software

Press release from: Accurics

Accurics integrates with GitLab

Accurics integrates with GitLab

Integration supports misconfiguration and vulnerability correlation, reducing noise and empowering developers to fix riskiest threats first

PLEASANTON, Calif. – June 14, 2021 – Accurics, the cloud cyber resilience specialist, today announced a technology partnership with GitLab, a single application for the DevOps lifecycle, as well as the general availability of its integration with GitLab's Static Application Security Testing (SAST) solution. Accurics leverages the integration with GitLab to provide DevSecOps teams with a holistic, contextualized view of application and infrastructure risks. Organizations can now establish and programmatically enforce consistent risk management policies throughout the Software Development Lifecycle (SDLC) while minimizing the effort and expense of manual triage and investigation.

Cloud infrastructure and applications are traditionally deployed from two separate pipelines, which dissociates application security vulnerabilities from Infrastructure as Code (IaC) misconfigurations. As a result, developers are often left with a long list of vulnerabilities and misconfigurations to fix without the context required to prioritize remediation of those vulnerabilities and misconfigurations that could actually be exploited.

“The most effective innovation is often incremental – for example, new capabilities and additional functionality accompanied by relevant security advances,” said Om Moolchandani, Co-founder, CTO & CISO at Accurics. “In this environment, we see diverse and largely unconnected vulnerabilities and misconfigurations, collectively producing a level of noise that makes identifying the most serious risks vital but difficult. The partnership with GitLab serves to add greater context to every layer of code and strengthens the security risk posture throughout the extended development lifecycle.”
The integration with GitLab helps Accurics users overcome these challenges by correlating IaC, cloud, and SAST vulnerabilities to help mitigate risk throughout the SDLC and generate a threat score. This threat score can be used by policy guardrails established with Policy as Code, blocking the riskiest builds from being deployed into production while providing insight into less risky problems that don't warrant breaking the build. As a result, developers are able to focus resources on remediating the most immediate threats first.

“The growing adoption of GitOps practices and Infrastructure as Code necessitates scalable risk management tools,” said Nima Badiey, Vice President, Global Alliances at GitLab. “ The integration between GitLab and Accurics will help customers to programmatically define infrastructure and risk management policies more effectively throughout the software development lifecycle.”

To learn more about how Accurics integrates with GitLab Static Analysis, read this blog post: https://www.accurics.com/blog/devops-blog/accurics-and-gitlab-improve-security-automation/

Learn more at www.accurics.com.

PRESS CONTACT:
CONTOS DUNNE COMMUNICATIONS
+1 408-776-1400 (o)
Paula Dunne +1 408-893-8750 (m)
paula@contosdunne.com

Accurics Headquarters
4695 Chabot Drive
Suite 108
Pleasanton, CA 94588

About Accurics
At Accurics™, we envision a world where organizations can innovate in the cloud with confidence. Our mission is to enable organizations to achieve cloud cyber resilience with developer-first security that self-heals the cloud. The Accurics platform programmatically detects infrastructure misconfigurations and contextualizes the findings with application risks to identify breach paths throughout the development lifecycle. It automatically generates code to remediate issues and applies the fix in the development pipeline. Accurics enables organizations of all sizes to achieve developer-driven cloud cyber resilience through cloud-based and open source tools such as Terrascan™.

This release was published on openPR.

Permanent link to this press release:

Copy
Please set a link in the press area of your homepage to this press release on openPR. openPR disclaims liability for any content contained in this release.

You can edit or delete your press release Accurics Unveils GitLab Static Analysis Integration To Contextualize Risk Across The SDLC here

News-ID: 2306027 • Views:

More Releases from Accurics

Evolving Risks, Insecure Defaults, Watering Hole Threats: New Research from Accu …
Pleasanton, CA, February 22, 2021 – Accurics, the cloud cyber resilience specialist, today unveiled its latest research, “Accurics Cloud Cyber Resilience Report,” which highlights security risks identified in cloud native environments. The findings reveal an increased adoption of managed infrastructure services and the emergence of new cloud watering hole attacks. Of all violations identified, 23 percent correspond to poorly configured managed service offerings – largely the result of default security
Accurics updates open source Terrascan to help orgs detect and fix risks in Kubernetes
Accurics updates open source Terrascan to help orgs detect and fix risks in Kube …
Terrascan extends Policy as Code to Kubernetes September 16, 2020 Accurics is excited to announce Terrascan v1.1.0, with Kubernetes (k8s) support! Cloud native apps and infrastructure are notoriously complex and difficult to secure with traditional tools, and kubernetes adds automation and orchestration that escalate those problems to another level. Practically speaking, security automation is mandatory because it’s not realistic to expect humans to comprehend such complex, dynamic environments. Terrascan is an

More Releases for GitLab

Code Review Market Top Players- GitHub, Bitbucket, GitLab, Gerrit, Crucible.
InsightAce Analytic Pvt. Ltd. announces the release of a market assessment report on the " Code Review Market - (By Type (On-premise, Cloud-based), By Application (Individual, Enterprise), By Organization Size (Small, Medium, Large)), Trends, Industry Competition Analysis, Revenue and Forecast To 2031." According to the latest research by InsightAce Analytic, the Code Review Market is valued is expected to expand with a CAGR of 8.24% during the forecast period of 2024-2031. Get
GitLab Stock Gains Institutional Boost; Secures FedRAMP Certification Amid Analy …
San Francisco, CA - May 20, 2025 - GitLab Inc. (NASDAQ: GTLB), a prominent provider of DevSecOps platforms, has recently experienced significant developments, including increased institutional investment, a pivotal government certification, and evolving analyst sentiment. Increased Institutional Interest ARK Investment Management, under Cathie Wood's leadership, recently expanded its investment in GitLab by acquiring an additional 106,000 shares. This strategic move signals growing institutional confidence in GitLab's market potential and underscores its appeal
DevOps Tool Market Hits New High | Major Giants HashiCorp,CloudBees,GitLab
HTF MI just released the Global DevOps Tool Market Study, a comprehensive analysis of the market that spans more than 143+ pages and describes the product and industry scope as well as the market prognosis and status for 2025-2032. The marketization process is being accelerated by the market study's segmentation by important regions. The market is currently expanding its reach. Major companies profiled in DevOps Tool Market are: Docker, Kubernetes, Jenkins,
Code Review Market Top Companies Study - GitHub, Bitbucket, GitLab, Gerrit, Cruc …
InsightAce Analytic Pvt. Ltd. announces the release of a market assessment report on the " Code Review Market - (By Type (On-premise, Cloud-based), By Application (Individual, Enterprise), By Organization Size (Small, Medium, Large)), Trends, Industry Competition Analysis, Revenue and Forecast To 2031." According to the latest research by InsightAce Analytic, the Code Review Market is valued is expected to expand with a CAGR of 8.24% during the forecast period of 2024-2031. Get
DevOps Platform Market to Witness Stunning Growth with GitLab, Jenkins, CircleCI
HTF MI recently introduced Global DevOps Platform Market study with 143+ pages in-depth overview, describing about the Product / Industry Scope and elaborates market outlook and status (2024-2032). The market Study is segmented by key regions which is accelerating the marketization. At present, the market is developing its presence. Some key players from the complete study are GitLab, Jenkins, Puppet, Chef, Ansible, Azure DevOps, Atlassian, Red Hat, Docker, JFrog, HashiCorp,
Software Configuration Management Market Dazzling Worldwide with JIRA, Mercurial …
Global Software Configuration Management Market by Player, Region, Type, Application and Sales Channel (2024-2032) is the latest research study released by HTF MI evaluating the market risk side analysis, highlighting opportunities, and leveraging strategic and tactical decision-making support. The report provides information on market trends and development, growth drivers, technologies, and the changing investment structure of the Global Software Configuration Management Market. Some of the key players profiled in the