Average Ratings 0 Ratings

Total
ease
features
design
support

No User Reviews. Be the first to provide a review:

Write a Review

Average Ratings 0 Ratings

Total
ease
features
design
support

No User Reviews. Be the first to provide a review:

Write a Review

Description

Black Duck, a segment of the Synopsys Software Integrity Group, stands out as a prominent provider of application security testing (AST) solutions. Their extensive array of offerings encompasses tools for static analysis, software composition analysis (SCA), dynamic analysis, and interactive analysis, which assist organizations in detecting and addressing security vulnerabilities throughout the software development life cycle. By streamlining the identification and management of open-source software, Black Duck guarantees adherence to security and licensing regulations. Their solutions are meticulously crafted to enable organizations to foster trust in their software while effectively managing application security, quality, and compliance risks at a pace that aligns with business demands. With Black Duck, businesses are equipped to innovate with security in mind, delivering software solutions confidently and efficiently. Furthermore, their commitment to continuous improvement ensures that clients remain ahead of emerging security challenges in a rapidly evolving technological landscape.

Description

DevSecOps Next Generation - Securing Your Binaries. Identify security flaws and license violations early in development and block builds that have security issues before deployment. Automated and continuous auditing and governance of software artifacts throughout the software development cycle, from code to production. Additional functionalities include: - Deep recursive scanning components, drilling down to analyze all artifacts/dependencies and creating a graph showing the relationships between software components. - On-Prem or Cloud, Hybrid, Multi-Cloud Solution - An impact analysis of how one issue in a component affects all dependent parts with a display chain displaying the impacts in a component dependency diagram. - JFrog's vulnerability database is continuously updated with new component vulnerabilities data. VulnDB is the industry's most comprehensive security database.

API Access

Has API No 

API Access

Has API No 

Screenshots View All

Screenshots View All

Integrations

Kondukto Yes 
Phoenix Security Yes 
Rezilion Yes 
Tromzo Yes 
Vulcan Cyber Yes 
ArmorCode No 
Black Duck Mobile Application Security Testing Yes 
BlueFlag Security Yes 
Boozang No 
C# Yes 
Digital.ai Release Yes 
Longbow Yes 
Mend.io No 
NorthStar Navigator Yes 
OpsLevel No 
OpsMx Enterprise for Spinnaker No 
Prometheus No 
ReleaseIQ No 

Integrations

Kondukto Yes 
Phoenix Security Yes 
Rezilion Yes 
Tromzo Yes 
Vulcan Cyber Yes 
ArmorCode Yes 
Black Duck Mobile Application Security Testing No 
BlueFlag Security No 
Boozang Yes 
C# No 
Digital.ai Release No 
Longbow No 
Mend.io Yes 
NorthStar Navigator No 
OpsLevel Yes 
OpsMx Enterprise for Spinnaker Yes 
Prometheus Yes 
ReleaseIQ Yes 

Pricing Details

No price information available.
Free Trial Yes 
Free Version No 

Pricing Details

No price information available.
Free Trial Yes 
Free Version Yes 

Deployment

Web-Based Yes 
On-Premises No 
iPhone App No 
iPad App No 
Android App No 
Windows Yes 
Mac No 
Linux No 
Chromebook No 

Deployment

Web-Based Yes 
On-Premises Yes 
iPhone App No 
iPad App No 
Android App No 
Windows Yes 
Mac Yes 
Linux Yes 
Chromebook No 

Customer Support

Business Hours Yes 
Live Rep (24/7) Yes 
Online Support Yes 

Customer Support

Business Hours Yes 
Live Rep (24/7) Yes 
Online Support Yes 

Types of Training

Training Docs Yes 
Webinars Yes 
Live Training (Online) No 
In Person No 

Types of Training

Training Docs Yes 
Webinars Yes 
Live Training (Online) No 
In Person Yes 

Vendor Details

Company Name

Black Duck

Founded

2002

Country

United States

Website

www.blackduck.com

Vendor Details

Company Name

JFrog

Founded

2008

Country

United States

Website

jfrog.com/xray/

Product Features

IT Asset Management

Asset Tracking Yes 
Audit Management Yes 
Compliance Management Yes 
Configuration Management No 
Contract/License Management Yes 
Cost Tracking No 
Depreciation Management No 
IT Service Management No 
Inventory Management Yes 
Maintenance Management No 
Procurement Management No 
Requisition Management No 
Supplier Management Yes 

License Management

Automatic SKU Recognition No 
Central LM Server No 
Copy Protection No 
History Tracking Yes 
Node Management No 
Online Activation Yes 
Portable License No 
Sarbanes-Oxley Compliance Yes 
Timing Rights No 
Trial License Yes 

Static Application Security Testing (SAST)

Application Security No 
Dashboard No 
Debugging No 
Deployment Management No 
IDE No 
Multi-Language Scanning No 
Real-Time Analytics No 
Source Code Scanning No 
Vulnerability Scanning No 

Product Features

Continuous Integration

Build Log No 
Change Management No 
Configuration Management No 
Continuous Delivery Yes 
Continuous Deployment Yes 
Debugging Yes 
Permission Management Yes 
Quality Assurance Management Yes 
Testing Management No 

DevOps

Approval Workflow Yes 
Dashboard No 
KPIs No 
Policy Management Yes 
Portfolio Management No 
Prioritization No 
Release Management No 
Timeline Management No 
Troubleshooting Reports Yes 

IT Security

Anti Spam No 
Anti Virus No 
Email Attachment Protection No 
Event Tracking No 
IP Protection No 
Internet Usage Monitoring No 
Intrusion Detection System No 
Spyware Removal No 
Two-Factor Authentication No 
Vulnerability Scanning Yes 
Web Threat Management Yes 
Web Traffic Reporting No 

Vulnerability Management

Asset Discovery Yes 
Asset Tagging Yes 
Network Scanning Yes 
Patch Management Yes 
Policy Management Yes 
Prioritization Yes 
Risk Management Yes 
Vulnerability Assessment Yes 
Web Scanning Yes 

Alternatives

Revenera SCA Reviews

Revenera SCA

Revenera

Alternatives

aqua cloud Reviews

aqua cloud

aqua cloud GmbH