Contrast Assess and Protect recently went through an independent evaluation by CoalFire, a respected Payment Card Industry (PCI) and Payment Application (PA) Qualified Security Assessor Company (QSAC).
“Coalfire PCI Compliance has determined that Contrast Assess and Contrast Protect can be valuable tools for helping organizations identify, classify, and address vulnerabilities and protect their software throughout the SDLC. Contrast Assess can be useful in the development of secure code by identifying issues earlier in the lifecycle and offering remediation paths. Contrast Protect allows supported software to be protected with greater fidelity than what is offered by traditional software security approaches alone. Contrast Assess and Contrast Protect may be used to replace some of the traditional approaches to assessing and protecting applications.”
This is crucial for the industry for three key reasons:
Organizations aspiring to achieve PCI compliance for software should read the full PCI Applicability Guide to determine the ways in which Contrast Security can help with these goals.
Contrast Assess is an automated Interactive Application Security Testing (IAST) solution that infuses software with vulnerability assessment capabilities so that security flaws are automatically identified. Leveraging a well-known industry methodology known as deep security instrumentation, Contrast Assess operates unobtrusively during development and testing of the web application or API, eliminating the need for time-wasting inaccurate manual static security scans, and other out-of-band security testing activities.
Contrast Protect is a Runtime Application Self-Protection (RASP) solution that can identify and block application attacks from within a running application, providing actionable and timely application layer threat intelligence across the entire application portfolio. The use of Contrast Protect eliminates the need for web application firewalls (WAFs) to achieve a number of PCI security requirements while providing better visibility and accuracy in finding and blocking attacks.
Get the latest content from Contrast directly to your mailbox. By subscribing, you will stay up to date with all the latest and greatest from Contrast.