Eskenzi PR ad banner Eskenzi PR ad banner
  • About Us
Monday, 25 September, 2023
IT Security Guru
Eskenzi PR banner
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2022
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2022
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
IT Security Guru
No Result
View All Result

Salt Security Partners with API Testing Leaders, introduces STEP programme

Shares strategies to enrich customers’ API ecosystems with the Salt platform’s API adaptive intelligence

by Guru Writer
August 23, 2023
in Featured
Salt Security Partners with API Testing Leaders, introduces STEP programme
Share on FacebookShare on Twitter

Salt Security, the API security company, has announced its Salt Technical Ecosystem Partner (STEP) programme, which the company says makes it easier and faster for enterprises to leverage the deep API adaptive intelligence Salt provides to reduce risk throughout their API ecosystem. Salt is integrating its AI-driven API security insights across organisations’ existing workflows and tools as part of the programme. The STEP programme accelerates those integrations, enabling joint customers to strengthen their API security posture with best-of-breed solutions enhanced by the API security intelligence of the Salt Security API Protection Platform.

 

To kick off the STEP program, Salt also introduced its inaugural partners – companies focused on API testing solutions. The partners include dynamic application security testing (DAST) companies Bright Security, Invicti Security, and StackHawk and interactive application security testing (IAST) company Contrast Security. With pre-built DAST and IAST integrations, Salt allows organisations to streamline deployment and: 

 

  • Move to a risk-based approach for API testing – by connecting cloud to code and focusing on sensitive data.
  • Reduce risk with increased surface coverage – by tapping the more accurate and up-to-date API inventory of Salt combined with vulnerability prioritisation from testing partners.
  • Gain better quality testing – leveraging best-of-breed testing capabilities spanning OWASP, MITRE, business logic, SQLi, XSS, SSRF, and other tests.
  • Reduce friction for DevOps and DevSecOps teams – enabling them to use their existing testing technologies designed for seamless integration into development pipelines. 
  • Speed time to value – by working with organisations’ existing integrated development environments (IDEs), software pipeline tools, and other workflows.
  • Improve efficiencies –  with context-rich OAS files automatically updated in real time, showing what needs to be tested and order of priority, extending the reach and applicability of companies’ existing API tests.
  • Increase R&D velocity – by focusing scanning efforts on priority APIs, such as external APIs or those that contain PII.

 

Along with its focus on testing, the Salt STEP programme formalises work Salt has already done to integrate with other API ecosystem technologies, including WAFs, API gateways and cloud security providers. Salt will jointly develop some integrations with partners and publish APIs to accelerate integrations to enable a broad swathe of partners to quickly pull valuable API data from the Salt system. 

 

Taking this “best of breed” approach ensures that enterprises gain industry-leading capabilities for API security across the entire lifecycle. No single company can bring to bear all the required disciplines to fully secure APIs, and attempting to do so results in mediocre solutions that leave enterprises vulnerable. The integrations resulting from the STEP programme will provide customers with the most capable, easy-to-deploy and effective API protection.

 

“Salt has taken a unique approach to solving the broad and serious challenge of securing APIs,” said Roey Eliyahu, CEO and co-founder of Salt Security. “Our deep API context offers the industry’s richest API discovery and runtime protection, and now we’re extending that adaptive intelligence to our partners’ best-of-breed solutions, providing our customers with unparalleled API security. We’re excited to welcome Bright, Contrast, Invicti, and StackHawk to our programme with their industry-leading API security testing solutions.”

 

API-related threats and vulnerabilities have increased in frequency and severity. According to the 2023 State of API Security report, 94% of organisations have experienced security issues in their production APIs over the past year. Moreover, a recent study found that the average cost of a security breach stands at $6.1 million, including remediation costs and reputational brand damage, and is expected to increase to nearly $14.5 million by 2030.

 

Partner Perspectives

“Through our partnership with Salt, Bright is poised to provide our customers with the most sophisticated and complete API security solution in the industry,” stated Gadi Bashvitz, CEO of Bright Security. “By leveraging the intelligence derived from Salt, application security (AppSec) and development teams are equipped to significantly improve their organisations’ API security posture. AppSec can provide governance for the AppSec programme, and development teams can detect and remediate vulnerabilities early in the development lifecycle.” 

“As a STEP partner, we look forward to providing our customers with API threat and vulnerability findings from Salt directly in Contrast’s Secure Code Platform,” said Tracey Mead, VP of Strategic Alliances at Contrast Security. “Context is key for application security, and nowhere is context more important than with APIs. With insights into API behaviours driven by Salt, our customers can quickly spot potential problem areas, reduce false positives and speed remediation efforts – all without missing a beat.”

“Web applications cannot be secure without the necessary testing coverage across APIs,” said Michael George, CEO of Invicti. “Our joint customers can now easily benefit from both extensive discovery of APIs and the comprehensive testing coverage and enterprise scale of our DAST engine. Additionally, customers will be able to accelerate vulnerability remediation with verified testing results, continually proven and enhanced by the experience of thousands of current customers.”

“To deliver a strong AppSec programme, developers need access to best-of-breed technologies that simplify finding and fixing vulnerabilities before deploying code to production. Given the explosive growth of API development, it’s imperative that teams prioritise and automate security testing for their APIs and do so in a way that seamlessly integrates with developer workflows,” said Joni Klippert, CEO of StackHawk. “As part of the Salt STEP programme, StackHawk is excited to bring the most developer-focused and comprehensive API security testing solution to help organisations deliver secure code rapidly. Together, Salt and StackHawk empower organisations with the most robust end-to-end API security experience to build secure software quickly, monitor and respond to attacks and incorporate that feedback into the building and testing of software development.”

FacebookTweetLinkedIn
ShareTweet
Previous Post

Five processes every organisation needs for successful BizDevOps

Next Post

Cyber Mindfulness Corner Company Spotlight: Egress

Recent News

Adarma Names James Todd as Chief Technology Officer, Reinforcing Dedication to Security Operations Excellence

Adarma Names James Todd as Chief Technology Officer, Reinforcing Dedication to Security Operations Excellence

September 25, 2023
Nurturing Our Cyber Talent

Nurturing Our Cyber Talent

September 25, 2023
The Journey to Secure Access Service Edge (SASE)

The Journey to Secure Access Service Edge (SASE)

September 22, 2023
WatchGuard

WatchGuard acquires CyGlass for AI-powered network anomaly detection

September 21, 2023

The IT Security Guru offers a daily news digest of all the best breaking IT security news stories first thing in the morning! Rather than you having to trawl through all the news feeds to find out what’s cooking, you can quickly get everything you need from this site!

Our Address: 10 London Mews, London, W2 1HY

Follow Us

© 2015 - 2019 IT Security Guru - Website Managed by Calm Logic

  • About Us
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2022
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us

© 2015 - 2019 IT Security Guru - Website Managed by Calm Logic

This site uses functional cookies and external scripts to improve your experience.

Privacy settings

Privacy Settings / PENDING

This site uses functional cookies and external scripts to improve your experience. Which cookies and scripts are used and how they impact your visit is specified on the left. You may change your settings at any time. Your choices will not impact your visit.

NOTE: These settings will only apply to the browser and device you are currently using.

GDPR Compliance

Powered by Cookie Information