"Our goal was to find and eliminate business-critical vulnerabilities as well as to receive practicable remediation guidance that we could build on as needed."
“About three years ago, we began to use Black Duck SCA when building the CI/CD process for our JDA Luminate product line, newly developed, SaaS-native products. Our goal is full migration to Black Duck SCA by the beginning of 2020.”
“We successfully pioneered implementation of the new HDCP 2.3 security protocol for high grade protection of digital content thanks to the extraordinary cooperation we experienced with Synopsys. Choosing DesignWare Security IP gave us an advantage in the highly competitive image processing market.”
"For new titles, we can speed up the development process because we can fix bugs while coding. We feel at ease when we develop new titles from scratch."
"We saw the light with Coverity’s accurate bug analysis. Coverity Static Analysis is a tool that doesn’t impose a burden on developers. Instead, they are delighted to use it."
"80 to 90 percent of bugs found by previous static analysis tools we used were false positives, but results produced by Coverity Static Analysis are very accurate. It is much easier to plan our development cycles now."
"It’s not so much that Coverity is our only safety net—we have other means to ensure safety such as code reviews and testing. But the real benefit of Coverity is that it can find specific defects which are very hard, if not impossible, to find by other means. These defects are also the ones that rarely occur, and in the worst case are identified in the field, but are the most expensive and highest risk defects to Frequentis and our customers. Coverity is a good compliment to our existing processes and tools to ensure the highest levels of product safety and quality."
"The cost of getting a fix to the field is ten times what it would be if found in development or testing. A one line change could take from 6 to 10 weeks to get through testing and approval by regulators. If the error is critical, we might have to pull a product from the field until it can be fixed. We just can’t afford any kind of errors. Anything we can do during the development process to eliminate defects will pay for itself in our industry."
"We really want to push the envelope of security. Working with Synopsys helped us move closer to that goal."
"With Synopsys Static Analysis, we can control our code quality and meet our customers’ demands and expectations."
"Identifying open source components and the different licensing types associated with the underlying source code was vital so that we could understand what risks and obligations potentially existed for us."
"ClickFox is the only customer journey analytics platform certified on Hadoop. Our product mission is to enable the business analysts of our clients to easily perform complex journey science and enable them to monetize data by gaining a deep understanding of what their customers are experiencing."
"Black Duck allows us to catch security vulnerabilities before our code goes out to clients."
"When we built our business case for bringing in Black Duck, our internal information security group was a co-sponsor of the effort."
"Using Black Duck has really improved communication with the customer and created trust in our product."