Snyk enters cloud security market with Fugue acquisition

&#13

Developer security platform Snyk has obtained Fugue, marking its fifth acquisition in excess of the previous yr and a 50 %.

The go, introduced Thursday, marks Snyk’s entry into the cloud security industry. By incorporating Fugue, a startup specializing in cloud infrastructure safety and compliance, Snyk plans to permit developer-1st cloud security posture management (CSPM). It would be the “industry’s very first CSPM built by and for builders,” in accordance to Snyk’s announcement. Conditions of the acquisition were not disclosed.

Fugue, dependent in Frederick, Md., was launched in 2013 and focuses on protection for the cloud development lifecycle that contains infrastructure-as-code (IaC) capabilities. Snyk reported the acquisition will assist the evolving role of developers by encouraging them “secure their code in advance of deployment, preserve its safe integrity whilst functioning, and superior recognize the specific spots to present fixes back in the code.”

Doug Cahill, vice president and group director of cybersecurity at Organization Strategy Group (ESG), a division of TechTarget, pointed out the two companies’ shared determination to open up resource communities.

Chris Steffen, exploration director at Organization Management Associates, claimed the acquisition will increase Snyk’s IaC abilities with the positive aspects of Fugue’s cloud safety.

“Supplied the value of DevSecOps in the cloud, the integration of the two companies will deliver additional security decisions for builders as they build workloads for the cloud place,” Steffen explained to SearchSecurity.

Similarly, ESG senior analyst Melinda Marks mentioned the expanding use of IaC has introduced extra possibility for the reason that developers are swiftly applying templates and scripts to provision infrastructure. If there is a code flaw or misconfiguration, she claimed, it can expose consumer or corporation data if deployed in generation.

“Fugue has been focused in this region, constructing equipment for developers to support them use policy-as-code, automatic screening and posture management to reduce misconfigurations,” she mentioned in an email to SearchSecurity. “Snyk has been addressing IaC protection with a module as element of its resolution, but it is really pleasant to see them obtain Fugue so they can offer you a more comprehensive solution to support builders securely use IaC.”

In October, Snyk obtained CloudSkiff, which also focuses on IaC as effectively as drift detection. Other new acquisitions by Snyk consist of open supply compliance and safety device FossID past Could and AI seller Manifold in January 2021. In 2020, Snyk acquired software investigation startup DeepCode.