WhiteHat Security Unveils New Integration Capabilities for Website Risk Management


-Bugtracking, SIEM and WAF Integrations Deliver Precise Website Security

SANTA CLARA, Calif., May 4 /-- WhiteHat Security, the leading provider of website risk management solutions, today announced its full suite of integration capabilities through the WhiteHat Sentinel API. WhiteHat Sentinel, the Company's website vulnerability assessment and management solution, integrates with industry leading bugtracking, security information and event management (SIEM) and Web application firewall (WAF) products, allowing website security data to be shared across departments. For the first time, website security can be integrated into an organization's operations, delivering new levels of visibility and control to security professionals.

WhiteHat's highly accurate vulnerability information combined with an open API makes WhiteHat Sentinel the only website risk management solution to provide reliable and precise website vulnerability data that can be shared and practically employed within an organization. WhiteHat Sentinel's new integration capabilities deliver crystal clear visibility to different business stakeholders, including risk management and compliance, product management and software development teams. Organizations have greater insight into their risk posture and can take corrective action, while communicating that action across the different security tools in their infrastructure.

The WhiteHat Sentinel API allows organizations to be more flexible in their dissemination of data and exert greater control by allowing different mitigation strategies and time to evaluate business risk. For example, risk management is better equipped to meet compliance standards and development teams have more time for remediation without diverting from key business initiatives.

As an example, WhiteHat Security integrated with Archer Technologies, a provider of enterprise governance, risk and compliance (GRC) solutions. The integration of WhiteHat Sentinel with the Archer SmartSuite Framework will enhance a customer's ability to manage enterprise risk by proactively identifying, tracking and managing the remediation of critical vulnerabilities in websites. Business managers will be able to analyze and report on vulnerabilities affecting their business-critical websites in one single view by risk and category -- providing both critical vulnerability data and compliance deficiencies. Users can assign ownership, track remediation efforts, proactively address issues before their systems are jeopardized, or accept the associated business risk.

"The ability to leverage software vulnerability information from WhiteHat Sentinel integrated with Archer, enables DTCC to recognize the economic benefit of the completion of remediation tasks with assigned accountability," said Jim Routh, CISO, Depository Trust & Clearing Corporation. "WhiteHat Sentinel provides excellent software vulnerability information by levels of risk that is aligned with an accountability model within Archer to manage risk and track key performance indicators to measure the health of the vulnerability management process."

Additional current implementations of the WhiteHat Sentinel API include integrations with:

-- Jira's bugtracking system - gives developers easy access to the information necessary to fix problems in custom website code; and,

-- F5 Networks and Breach Security Web Application Firewalls (WAF) - enables real-time mitigation of website attacks.

"Website security is more than a tally of the latest vulnerabilities that may threaten a company's websites," said Bill Pennington, senior vice president of services, WhiteHat Security. "It's about risk management. Website security data is no longer solely the domain of the security team. It's utilized by the compliance, product management and developer organizations within a company as well. WhiteHat Sentinel's ability to integrate with a wide array of solutions such as bugtracking software, SIEMs and WAFs provides a more collaborative and comprehensive approach to protecting an organization's websites."

About Archer Technologies

Archer Technologies delivers enterprise governance, risk and compliance (GRC) solutions. With more than six million licensed users and a client list that includes one in four of the Fortune 100, Archer enables highly regulated companies to reduce enterprise risks, manage and demonstrate compliance, automate business processes, and gain visibility into corporate risk and security controls.

Archer's solutions, including Policy, Asset, Threat, Risk, Business Continuity, Incident, Loss Event, Vendor, Audit and Compliance Management, are built on the highly flexible Archer SmartSuite Framework(TM), allowing clients to tailor the solutions according to their unique requirements. Whether deployed traditionally at the client site or via a SaaS model, the Framework has become a go-to GRC platform for many global organizations.

Archer is the only vendor that delivers the Archer E-GRC Ecosystem(TM) comprised of out-of-the-box solutions, a flexible Framework, a robust user community, and an application and partner exchange, which provides clients the tools they need to build a best-in-class enterprise GRC program. For more information, visit www.archer.com or call 1-888-539-EGRC.

About WhiteHat Security, Inc.

Headquartered in Santa Clara, California, WhiteHat Security is the leading provider of website risk management solutions that protect critical data, ensure compliance and narrow the window of risk. WhiteHat Sentinel, the company's flagship product family, is the most accurate, complete and cost-effective website vulnerability management solution available. It delivers the visibility, flexibility, and control that organizations need to prevent Web attacks. Furthermore, WhiteHat Sentinel enables automated mitigation of website vulnerabilities via integration with Web application firewalls. To learn more about WhiteHat Security, please visit our website at www.whitehatsec.com.

CONTACT: Dawn van Hoegaerden of WhiteHat Security, +1-408-343-8300, dawn@whitehatsec.com

Web Site: www.whitehatsec.com/

All Topics