Media Release

Secure Code Warrior platform integrates with global application security testing solution Fortify on Demand to deliver real-time security vulnerability training

November 13, 2017

Secure Code Warrior today announced the availability of its integration with Micro Focus Fortify, the first application security solution to be integrated with Secure Code Warrior’s new application programming interface (API).

With the integration of Fortify on Demand (FoD), the leading SaaS based AppSec solution, any vulnerabilities identified by FoD will now offer a direct link to a practical training module that teaches the developer why the problem happened, how to fix it, and, more importantly, how to prevent making the same mistake again. The developer can now take a very specific training that is directly applicable to their day-to-day work.

CTO of Secure Code Warrior, Matias Madou, Ph.D. said connecting application security platforms that find and fix vulnerabilities with vulnerability-specific training will break the rat race developers are currently operating in. “Teaching developers to understand security implications when writing code changes their role - enabling them to become the first line of security defense in their organization because they are preventing vulnerabilities from the start. It will not only help get security off their back but also gain confidence from management in their ability to write secure code,” said Madou.

“It is 30 times more expensive to detect and fix vulnerabilities in committed code than it is to prevent them when writing code in the IDE,” said Scott Johnson, Fortify Director of Product Management. “The Fortify and Secure Code Warrior integration provides a short and simple training approach with hands-on tests that keep security top of mind for every line of code that developers write.”

The Fortify and Secure Code Warrior Integration is available now on the Fortify Marketplace at https://marketplace.microfocus.com/fortify.

Secure Code Warrior platform is now available for integration with application security providers.

Govern AI-driven development before it ships

Measure AI-assisted risk, enforce secure coding policy at commit, and accelerate secure delivery across your SDLC.

book a demo
Resource library

Explore more articles

Access expert content on secure coding, AI governance, and software risk management.

browse all
News Article
Filter Label
This is some text inside of a div block.

Forbes: A New Frontier: NSA Proposes “Security By Design” Considerations For AI Enablement

​The cybersecurity industry, which has been advocating for “security by design” principles for more than a decade, stands in wide-eyed amazement at the risks posed by artificial intelligence (AI). As organizations rush to embrace AI enablement, a CISO’s most pressing priority is to avoid becoming a roadblock. However, without effective AI usage and governance, observability and traceability, organizations may be blindsided by their AI risk.​

Learn More
News Article
Filter Label
This is some text inside of a div block.

Techpartner.news: Secure Code Warrior introduces framework to govern AI use in software development

Secure Code Warrior has introduced the SCW AI Adoption Model, a framework designed to help organisations govern AI use in software development as the industry shifts from the traditional software development lifecycle (SDLC) toward what the company calls the Agentic Development Lifecycle (ADLC).

Learn More
News Article
Filter Label
This is some text inside of a div block.

DevOps.com: Are LLMs Equally Good (or Bad) at Building Secure Software?

With many software engineering teams moving from AI coding assistants into full agentic AI code generation and increasing the amount of code they produce exponentially, ensuring the security of that code must be a top priority. The study produces practical guidance for organizations that are getting on board the AI-assisted or agentic code development train.

Learn More

Secure AI-driven development before it ships

See developer risk, enforce policy, and prevent vulnerabilities across your software development lifecycle.

Book a demo
trust score