Customer Story

Leading AI Data Services Provider: Maintains Customer Trust with Spectra Assure

Assuring customers of software safety became a priority for the company after several cybersecurity incidents occurred. The cloud-based platform enables organizations to efficiently store their data, manage data access, and perform data analysis. Since software performing AI-based data analysis is crucial for the company and its customers to achieve their business goals, the security team needed a way to clearly showcase the risk posture of their applications to non-technical stakeholders.

Spectra Assure™ provides the visibility the company requires. Software builds and releases are deconstructed within minutes to deliver a SAFE report, which includes a comprehensive software bill of materials (SBOM) and risk assessment. The analysis highlights any detected threats, such as malware and tampering, prioritizes risks, such as exposed secrets and code vulnerabilities, and provides actionable remediation feedback. 

SAFE reports can be securely shared with internal teams and customers.  The easily digestible assessment summaries help non-technical stakeholders understand the level of software risk.

Comprehensive Insights for Assuring Customers

Malicious behaviors embedded in indirect software dependencies were of particular concern to the security team. These threats could not be detected by existing scanning tools.

Spectra Assure demonstrated superior threat detection and SBOM generation during the proof of concept evaluation. The binary analysis identified open-source, commercial, third-party, and proprietary software dependencies, as well as build artifacts – without needing source code. Software analyzed in its final executable state creates a more comprehensive SBOM than tools focused on open source, or that rely solely on build manifests specifying the expected software contents rather than the actual contents.

Each component and artifact is examined for embedded threats like malware, tampering, malicious behaviors, and suspicious changes. Proprietary threat detection engines cut through noisy findings, enabling the team to focus on actual threats without alert fatigue. Spectra Assure is powered by threat intelligence curated from over 422 billion files and software components, predictive threat models, and an in-house research team, which enables organizations to stay ahead of emerging threats and increasingly advanced malware attacks.

  • Customer | Leading AI Data Services Provider
  • Headquarters | United States
  • Employees | Over 7,000
  • Industry | Technology

Challenges

  • Ensure builds and releases are safe
  • Assess complex software components
  • Comprehensive software analysis

Solution

  • Spectra Assure assesses software builds and releases, providing comprehensive SBOMs, risk assessments, and remediation feedback

Results

  • Increased visibility with comprehensive SBOM and risk analysis
  • Improved risk management with superior malware and tampering detection before release
  • Increased security assurance for stakeholders with a securely shareable SAFE report

All RL Solutions

  • Spectra Analyze

Want to Learn More?

Schedule a Demo
Contact Sales

Expert Insights