7 Feb 2024

Invicti Security and Mend.io announced a partnership to bring the full spectrum of application security testing and supply chain security tools to customers.

This partnership pairs Invicti’s DAST, IAST, and API Security domains with Mend’s SAST, SCA, and Container Security solutions to give customers full code coverage and continuous security.

Appsec testing tools

Balancing development speed and innovation with the best cybersecurity practices is critical for companies building and deploying software, particularly as bad actors are increasingly creative and agile in their attack methods.

A complete stack of appsec testing tools that prioritise accuracy and scale is necessary to ensure teams can keep pace with both release schedules and security needs.

Speed, accuracy, and coverage

The rising number of security vulnerabilities in software results in an ever-changing attack surface"

The rising number of security vulnerabilities in software results in an ever-changing attack surface, presenting a major challenge to organisations in maintaining and improving their security posture,” said Alvaro Warden, Director of Global Channels and Partnerships at Invicti.

Alvaro Warden adds, “To manage this challenge, companies must have a comprehensive solution that provides speed, accuracy, and coverage in their application security tech stack.”

Cloud-native software

Invicti and Mend.io saw the opportunity to jointly support customers in 2023 through partner opportunities.

They continue to see growing demand for the joint, full-spectrum appsec testing solution as cloud-native software development is shifting risk attention from the network to the application level.

Application security solutions

We are thrilled to have this partnership and serve the world's most demanding organisations with market-pioneering application security solutions from Mend.io and Invicti,” said Vered Shaked, Mend.io EVP of Corporate Development.

Vered Shaked adds, “Our complementary offering, both static and dynamic, ensures the delivery of continuous security across the entire development lifecycle.”