OpenText updates safety auditing instrument to assist builders navigate more and more complicated menace panorama


OpenText has unveiled the second technology of its superior software safety auditing instrument, Fortify Audit Assistant. This announcement was made in anticipation of the inaugural OpenText Safety Summit 2024 scheduled for February 6. 

The expertise is designed to satisfy the challenges confronted by at present’s builders, who’re navigating an more and more complicated menace panorama in multi-cloud environments. OpenText’s initiative underscores the rising want for stylish instruments and practices in software safety, responding to the pressures safety groups face in guaranteeing software program integrity and reliability from the outset.

Main updates to Fortify Audit Assistant embrace the flexibility to account for mannequin drift, flexibility to study from an organization’s distinctive setting, expansive mannequin experience through language specification, and the flexibility to contemplate the nuances of scan outcomes. 

The brand new iteration of Fortify Audit Assistant minimizes the incidence of false positives and irrelevant alerts. The instrument additionally goals to streamline builders’ work, enabling them to focus on addressing probably the most vital vulnerabilities. The refined auditing course of is a direct response to the calls for for extra environment friendly software safety testing, which has historically been slowed down by the time-consuming and handbook triaging of static evaluation outcomes, in response to OpenText.

The brand new technology of Fortify Audit Assistant is designed to combine safety concerns on the earliest phases of the software program growth lifecycle, ranging from code inception. This method helps with constructing software program methods that aren’t solely strong and dependable but in addition inherently safe. By embedding safety measures from the start, OpenText goals to mitigate dangers and improve the general resilience of software program merchandise towards rising threats.

The instrument leverages machine studying expertise to automate the safety auditing course of, studying from the experience of Fortify’s human auditors. This software of AI is a strategic transfer to deal with the hole in accessible experience for handbook examination, which is each resource-intensive and impractical for a lot of organizations. By automating the evaluation of software program vulnerabilities, Fortify Audit Assistant guarantees to considerably scale back the overhead related to hiring groups of specialists in software program engineering, laptop science, and cybersecurity, the corporate defined.

“The primary technology of Fortify Audit Assistant was effectively forward of its time with its use of predictive analytics and machine studying,” stated Prentiss Donohue, cybersecurity government vice chairman at OpenText. “These pioneering efforts paved the way in which for us to derive 10 years of information from human specialists and switch them into predictive fashions which can be considerably extra correct in comparison with the earlier technology’s fashions, bettering efficacy in auditing by decreasing false positives as much as 90%. Enterprises can now leverage this depth of knowledge—one thing nobody else within the trade can present—inside their very own software program assurance packages.”