Contact Center Solutions Industry News

TMCNet:  Veracode Studies the Effectiveness of Bug Bounty Programs [Professional Services Close - Up]

[February 01, 2013]

Veracode Studies the Effectiveness of Bug Bounty Programs [Professional Services Close - Up]

(Professional Services Close - Up Via Acquire Media NewsEdge) Veracode, Inc., a company focusing on cloud-based application security testing, has released an infographic that examines the success of bug bounty programs.

According to a release, the past decade has witnessed major growth in demand for bug hunters, with online giants such as Google, Mozilla, Facebook, and PayPal turning to bug bounty programs to improve the security of their products. Organizations are currently paying security researchers anywhere from hundreds to tens of thousands of dollars per vulnerability; however, this approach still leaves many applications vulnerable to attacks.

Veracode's infographic, titled "Can Bug Hunters Keep the Internet Safe " takes a look at which companies are relying on bounty programs for security findings, and compares market rates for discovering and reporting different types of vulnerabilities. In addition to paid bounty programs, the infographic details which companies have implemented unpaid bug hunting or responsible disclosure programs.

The infographic uses data from Veracode scans to demonstrate the current state of security in vendor-supplied web applications and concludes with Veracode's recommendations for creating effective vendor application security testing programs.

"The fact that we're seeing all of these bug bounty programs shows that more organizations are getting serious about security, which is a positive sign." said Chris Eng, vice president of research, Veracode. "But implementing a bounty program is only one step towards creating a comprehensive security program." Veracode recommends developing a programmatic approach to vendor software security that is built on thorough policies, open communication, vendor education, and collaboration between vendors and enterprises.

More information: www.veracode.com/blog/2013/01/can-bug-hunters-keep-the-internet- safe-infographic www.veracode.com ((Comments on this story may be sent to newsdesk@closeupmedia.com)) (c) 2013 ProQuest Information and Learning Company; All Rights Reserved.

[ Back To Contact Center Solutions Homepage's Homepage ]



Related Contact Center Solutions Articles

FOLLOW US

Contact Center Solutions Glossary of Terms

Featured Whitepaper

    Microsoft® Lync® in the Contact Center: Integrating with Customer Interaction Center™ to Provide a Barrier‐free Customer Experience To implement contact center functionality, organizations using Microsoft Lync Server 2010 can follow the unified communications blueprint of open standards interoperability and integrate to a contact center solution of their choice. Customer Interaction Center (CIC) from Interactive Intelligence is a proven best of breed contact center solution that merits consideration ...

Featured Success Story

    Contact Center Solutions Featured Success Story
    Interactive Intelligence all-in-one IP communications software suite integrated with Microsoft Lync helps Bentley save $200,000 annually.

Featured Product Demo

    Contact Center Solutions Interaction Analyzer™
    Interaction Analyzer™
    Real-time word and phrase spotting. Alerting. Analytics. Scoring. Coaching. Watch how Interaction Analyzer turns every moment, of every past and present call, into data that lets you deliver an exceptional customer experience.

Featured Resources