The Developer: Build security in from your IDE
- Click to vulnerable code: Ounce delivers confirmed vulnerabilities within your IDE. One cluck takes you to the vulnerable line of code
- In-context remediation advice: learn about the vulnerability and fix it, armed with advice from the industry’s most comprehensive software security knowledgebase
- Your workflow, your way:
- Automated Triage: Burden-free for the developer. No scanning, configuration or tuning, just direct access to the vulnerable line of code and how to fix it
- Developer Triage: scan code in your IDE, review the prioritized results, and click and fix at the selected vulnerable lines of code.
- Security Analyst Triage: your security experts conduct scans, review findings, and assign vulnerabilities to developers with additional guidance for expedited remediation
- Team Triage: automated cross-module scans deliver prioritized results to your team, empowering collaborative remediation between all developers on the vulnerable project.
- Free IDE plug-ins remove the barriers to deployment across the enterprise and beyond, to outsourced providers or other 3rd parties Centralized “push-and-play” deployment make enterprise-wide implementations practical and effi cient. Also, Ounce’s Mobile Auditor version means security analysts can work where the code is. Plug-ins are available for Microsoft® Visual Studio®, Eclipse, and Rational Application Developer (RAD).
OUNCE ACROSS YOUR ORGANIZATION:
Developers | Executives | Security Analysts | Auditors