Black Duck: Open Source Vulnerability Management

An Intellyx Brain Candy Brief

Many enterprises leverage open source software (OSS), both as stand-alone applications as well as various libraries and other components that find their way into bespoke applications and distributed architectures.

To help such companies manage OSS, Black Duck Software (a division of Synopsys) inventories OSS in production, maps its known security vulnerabilities, and also identifies both quality and security risks.

Black Duck also helps its customers manage their open source risk policies and alerts them on new security threats as they become known.

Not only does Black Duck prevent or mitigate threats like the one that compromised Equifax, but it also helps organizations audit their OSS for compliance and security purposes.

Copyright © Intellyx LLC. Intellyx publishes the Agile Digital Transformation Roadmap poster, advises companies on their digital transformation initiatives, and helps vendors communicate their agility stories. As of the time of writing, none of the organizations mentioned in this article are Intellyx customers. To be considered for a Brain Candy article, email us at pr@intellyx.com.

SHARE THIS:

Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.