Federal - Casestudies

Federal: The U.S. General Services Administration

The Ounce Labs solution allows the GSA to effectively address key data privacy protection objectives and standards. Out of the box, Ounce's unique software risk analysis capabilities enabled Certification and Accreditation professionals to rapidly analyze multi-million lines of code applications and have access to the latest relevant vulnerability and remediation information, right at their fingertips, while their developers found that they could accurately pinpoint vulnerabilities right to the line of code, and remediate those flaws in a fraction of the time it would have taken otherwise. click here for more >>

Defense: Global Defense Systems Integrator

Unlike other layers of security, Ounce identified and assisted in the remediation of defects at the source. This was facilitated by the range of supported platforms and languages, including IBM® AIX®, Linux®, Windows®, and Solaris®. In addition to Java™, JSP™ and Microsoft® ASP.Net code. Ounce was also able to accurately analyze older languages such as classic ASP and unmanaged C. click here for more >>

Defense: U.S. Navy

By partnering with Ounce Labs, the U.S. Navy was able to achieve previously unattainable levels of accuracy and completeness in their analysis of complex code, in highly secure environments. Security analysts were able to obtain accurate results without a deluge of false positives, meeting cost and schedule objectives through timely and flexible deployments of the Ounce solution.
click here for more >>

Section 508: Accessibility Information

Section 508 of the Rehabilitation Act requires that Federal agencies acquire electronic and information technology that is accessible to persons with disabilities.

Ounce Labs has endeavored to comply with all applicable Section 508 requirements. The company has produced a Voluntary Product Accessibility Template (VPAT) outlining accessibility compliance for all applicable sections. click here to request a VPAT report >>

Financial Services - Casestudies

Commercial: A Global Financial Services Organization

By implementing the Ounce Labs solution, stakeholders across the development lifecycle were able to identify and remediate vulnerabilities more effectively. Ounce Labs eliminated painfully difficult and slow build and analysis times, and delivered a substantial improvement with build integrations. This ease of integration in the mixed-language build environment led not only to greater user acceptance, but also an improved return on investment. click here for more >>

Service Provider - Casestudies

Service Provider: A Global Security Services Organization

Out of the box, the Ounce solution delivered accurate and deep analysis of diverse code, and deliver well-organized results with no false positives. Security experts found that they were able to rapidly audit code and provide the information to their customers in record time.
click here for more >>

Service Provider: ITWORX

After an exhaustive evaluation of a number of source code analysis solutions, ITWorx selected Ounce. The Ounce solution offered the accuracy, actionability, and adaptability ITWorx needed to fit the demanding requirements of their security-conscious customers. “Ounce also makes it easy for our developers and analysts to quickly implement the necessary changes to the software, helping us to deliver the most secure software possible, on time.”
click here for more >>

 

"It seems enterprise IT is finally grasping the liability insecure coding practices represent. Data protection and application-software security were chosen as the most critical issues through 2008 in the 2006 CSI/FBI Computer Crime and Security Survey, above policy and regulatory compliance, and identity theft/data-leakage prevention,"

Network Computing