AI-enabled tools reducing time to value and enhancing application security

SMART Surveillance 2024 Editor's Choice

Next-generation AI tools are adding new layers of intelligent testing, audit, security, and assurance to the application development lifecycle, reducing risk, and improving time to value while augmenting the overall security posture.

This is according to Paul Meyer, Security Solutions Executive at iOCO, the only OpenText platinum partner in Africa.


Paul Meyer.

iOCO notes that OpenText has invested heavily in unlocking the potential of AI and large language models (LLMs) across its solutions portfolio. It has harnessed the power of AI in its application security solutions for more secure and compliant application development.

Meyer says two of the most exciting new AI-enabled solutions from OpenText are Debricked Open Source Select and Fortify Audit Assistant, which address the growing challenge of developing secure and reliable applications quickly.

Open Source Select controls security, compliance, and code health; continuously and automatically scanning code from open-source environments to identify, prevent and remediate vulnerabilities at source. Fortify Audit Assistant Gen2 is a machine-learning-assisted auditing solution that reduces noise and false positives, streamlines security and improves developer efficiency with over 98% accuracy.

Meyer says he recently introduced local enterprises to these new tools for more secure application development. The response was overwhelmingly positive.

“OpenText Fortify on-premises, hybrid, and on-demand solutions address key challenges in enterprise application development,” he says. Nowadays, everything is application-driven, and security has become an immense issue. OpenText is trusted for securing the software development lifecycle (SDLC), including static application security testing (SAST) and dynamic application security testing (SAST).”

Open Source Select addresses vulnerabilities that can occur when sourcing code from open-source projects. “Many developers copy and paste code from open-source projects to speed up development. The problem with this is that the code could be insecure and contain security vulnerabilities, backdoors, and malware. With state-of-the-art machine learning, Open Source Select scans the code and gives insight into the open-source community’s health status on specific projects. As the community updates and improves the code, the developer’s code matures with it.” Remediation also happens at the source; thus, identifying issues early in the SDLC mitigates time and development costs on postproduction fault finding.

Developers can research over 40 million open-source projects to make informed decisions and compare and evaluate open-source dependencies before selecting what to import into their codebase. Debricked also mitigates risks related to licencing, unsupported packages and decaying communities.

Audit Assistant Gen2 machine-learning-assisted auditing of SAST results offer a ‘birds-eye- view’ of the entire development estate. Launched earlier this year, Generation 2 of Audit Assistant builds on ten years of data from human experts and turns it into augmentative, predictive models that are significantly more accurate compared to the previous generation's models, reducing false positives by up to 90%.

The new generation iteration also learns from each company’s unique environment and remains sensitive to unique data privacy needs. It reduces the number of application security scan findings that require deep manual examination and the risk of human error and information analysis fatigue. The time required for human auditing before the results are actionable is significantly reduced, and it assists in prioritising relevant issues with confidence, much earlier in the SDLC.

“It highlights vulnerabilities, correlates data, and gives a view of the overall health status. With AI, it allows enterprises to set thresholds for acceptability in the knowns and unknowns, filters out problematic noise to give an overview of priority problems, and offers actionable remediation steps. It helps enterprises speed up development and produce better code,” confirms Meyer.

iOCO states that while cybercriminals harness AI, leading vendors such as OpenText are innovatively using AI technology to counter cyber risk. OpenText is a global market leader in information management and has been working in the AI arena for over a decade. The company is leading the way in using AI to be omnipresent in areas such as service management and security.

Find out more at iOCO, Heidi Ziegelmeier, +27 11 417 8594, [email protected], https://ioco.tech/




Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

Perspectives on personal care monitoring and smart surveillance
Leaderware Editor's Choice Surveillance Smart Home Automation IoT & Automation
Dr Craig Donald believes smart surveillance offers a range of options for monitoring loved ones, but making the right choice is not always as simple as selecting the latest technology.

Read more...
AI enables security solutions to define business strategies
Regal Distributors SA Editor's Choice
While allowing technologies to do exactly what they should do with even more efficiency and precision, AI is also empowering these same technologies to break through their traditional boundaries and create an ecosystem where one interface delivers outcomes across highly segmented verticals.

Read more...
Putting cyber into surveillance
Dallmeier Electronic Southern Africa Cathexis Technologies Technews Publishing Editor's Choice
Cybersecurity has become an essential part of the physical security industry. However, unlike other IoT technologies, of which security products are a part, surveillance technologies have more to protect.

Read more...
2024 State of Security Report
Editor's Choice
Mobile IDs, MFA and sustainability emerge as top trends in HID Global’s 2024 State of Security Report, with artificial intelligence appearing in the conversation for the first time.

Read more...
Cyberthreats facing SMBs
Editor's Choice
Data and credential theft malware were the top two threats against SMBs in 2023, accounting for nearly 50% of all malware targeting this market segment. Ransomware is still the biggest threat.

Read more...
Are we our own worst enemy?
Editor's Choice
Sonja de Klerk believes the day-to-day issues we face can serve as opportunities for personal growth and empowerment, enabling us to contribute to creating a better and safer environment for ourselves and South Africa.

Read more...
How to spot a cyberattack if you are not a security pro
Editor's Choice
Cybersecurity awareness is straightforward if you know what to look for; vigilance and knowledge are our most potent weapons and the good news is that anyone can grasp the basics and spot suspicious activities.

Read more...
Protecting IP and secret data in the age of AI
Editor's Choice
The promise of artificial intelligence (AI) is a source of near-continuous hype for South Africans. However, for enterprises implementing AI solutions, there are some important considerations regarding their intellectual property (IP) and secret data.

Read more...
Super election year increases risks of political violence
Editor's Choice
Widening polarisation is expected in many elections, with terrorism, civil unrest, and environmental activism risks intensifying in a volatile geopolitical environment. Multinational businesses show an increasing interest in political violence insurance coverage in mitigation.

Read more...
Enhance control rooms with surveillance and intelligence
Leaderware Editor's Choice Surveillance Mining (Industry)
Dr Craig Donald advocates the use of intelligence and smart surveillance to assist control rooms in dealing with the challenges of the size and dispersed nature common in all mining environments.

Read more...