“There’s a tremendous amount of pressure on IT to protect company assets even with the growing gap between the discovery of vulnerabilities and the resources to successfully mitigate them,” said Hatem Naguib, senior vice president and general manager, Security Business at Barracuda. “With Barracuda Vulnerability Remediation Service, we make it easy for application developers to secure their applications from the time they write their first few lines of code. Our automated remediation creates an ‘always secure’ application environment, which enables DevOps teams to concentrate on development or application patching, without having to take additional steps to ensure applications are protected after every build.”
According to Verizon’s 2016 Data Breach Investigation Report, web application attacks are the biggest source of data loss, and the number of data breaches caused by web application attacks is rapidly increasing. Barracuda Web Application Firewalls blocked more than 53 billion web application attacks in December 2016 alone. Further, vulnerability management “has been a tedious, time-consuming, often manual and error-prone process in the past, requiring business context and threat intelligence to answer,” according to Gartner.1 In addition, while knowledge of web application vulnerabilities has been steadily growing for years, they remain prevalent, which Gartner believes is a reflection of the fact that “organisations are struggling not only with identifying vulnerabilities, but also with remediating them and creating secure development practices that eliminate vulnerabilities before they are introduced.”
Web Application Vulnerability Remediation Made “Easy as 1-2-3”
Barracuda Vulnerability Remediation Service alleviates pressure on DevOps teams by integrating security directly into the application development process. The automated security policy configuration created by the Vulnerability Remediation Service can be applied across any number of Web Application Firewall instances. Highlights include:
· Automated Vulnerability Detection – Schedule regular or on-demand scanning of websites and applications to find vulnerabilities.
· Automated View of Vulnerability Landscape – Continuously monitor with comprehensive reporting to learn about the threats posed by discovered vulnerabilities and associated risks.
Automated Remediation – Automatically create security configurations customised to specific applications and vulnerabilities, eliminating errors in manual configuration, maximizing security and reducing false positives.
“We trust Barracuda’s Web Application Firewall to protect critical applications,” said Mark Aston at DG Technology Consulting LLC. "We are excited about the new Vulnerability Remediation Service. The ability to easily detect vulnerabilities and apply remediation policies automatically is a huge step forward in simplifying a web application security strategy, and we look forward to rolling it out to our customers.”