industry news
Subscribe Now

LDRA Delivers Secure Software Development Resource for Embedded Markets

Web portal guides developers in how to build security into embedded software from the ground up to help prevent hacks, liability claims, reputational damage, compliance fines, and frantic customers

WIRRAL, U.K. – 27 August 2020 – LDRA, the leader in standards compliance, automated software verification, software code analysis, and test tools, today launched the Secure Software Development Resource Centre. The online portal guides developers through the phases of the software development lifecycle—from requirements, design, model, code, and verification whether developers are using traditional V-model, waterfall lifecycle, or an agile approach. By implementing best practices such as bidirectional traceability that connects functional safety and security standards’ objectives to requirements, models, design, code, tests, and testing artifacts, companies greatly increase their ability to build secure code and mitigate security risks. This is critical for minimizing the risk of liability claims, damage to reputation, and compliance fines.

“Too often, companies design their software first and test it later, which invariably leads to insecure code that puts people and property at risk,” said Ian Hennell, Operations Director, LDRA. “The security resources at our new portal are designed to help companies learn how to build security into their software from the beginning, because attempting to bolt on security after the fact is costly and error prone. Preventing vulnerabilities from entering the code during construction cost-effectively addresses the accelerating security requirements of connected devices and systems.”

The portal offers insightful content on:

  • Why secure application code matters, identifying what makes software a target for hackers and key elements associated with in-depth protective measures used to secure applications, particularly when designs involve IoT endpoints that need securing.
  • The Secure Software Development Lifecycle (SSDLC) provides a detailed introduction to a better, proactive approach to ensure that code is secure by construction and implemented using a systematic development process.
  • How Static Application Software Test (SAST) can be implemented early in the lifecycle, lowering the cost of vulnerability rectification.
  • How white box Dynamic Application Software Test (DAST) analyzes and complements SAST and black box DAST techniques.
  • Why secure software development is key for various vertical applications such as automotive, aerospace & defense, industrial & energy, rail, medical, and IoT.

The security resources at the online portal highlight case studies from companies such as HCC Embedded and Now Technologies that successfully enhanced the safety and security of their products by using the LDRA tool suite to build applications systematically through all stages of software development. Developed by a company that actively plays a leadership role in the formation of many security and safety standards, the LDRA tool suite automates code reviews for compliance and the testing process as a whole. With the tool suite developers can quickly identify and repair potential coding flaws and vulnerabilities, thereby saving time and money in the production of high-assurance software applications.

“Customers like HCC Embedded and Now Technologies knew they needed to develop applications for security-sensitive systems, and worked closely with us to make that happen,” Hennell said. “Our new online portal and its extensive resources will share the best security practices these customers and others have learned in using our proactive approach to securing software. Over the months and years ahead, we will build on the portal’s initial content, highlighting industry trends, customer successes, insights, and techniques developers can use to secure all phases of the software development lifecycle in the most cost-effective manner possible.”

Visit the portal at https://resources.ldra.com/secure-software-development/

About LDRA

 

For more than 40 years, LDRA has developed and driven the market for software that automates code analysis and software testing for safety-, mission-, security-, and business-critical markets. Working with clients to achieve early error identification and elimination, and full compliance with industry standards, LDRA traces requirements through static and dynamic analysis to unit testing and verification for a wide variety of hardware and software platforms. Boasting a worldwide presence, LDRA has headquarters in the United Kingdom, United States, Germany, and India coupled with an extensive distributor network. For more information on the LDRA tool suite, please visit www.ldra.com.

Leave a Reply

featured blogs
Apr 18, 2024
Are you ready for a revolution in robotic technology (as opposed to a robotic revolution, of course)?...
Apr 18, 2024
See how Cisco accelerates library characterization and chip design with our cloud EDA tools, scaling access to SoC validation solutions and compute services.The post Cisco Accelerates Project Schedule by 66% Using Synopsys Cloud appeared first on Chip Design....
Apr 18, 2024
Analog Behavioral Modeling involves creating models that mimic a desired external circuit behavior at a block level rather than simply reproducing individual transistor characteristics. One of the significant benefits of using models is that they reduce the simulation time. V...

featured video

How MediaTek Optimizes SI Design with Cadence Optimality Explorer and Clarity 3D Solver

Sponsored by Cadence Design Systems

In the era of 5G/6G communication, signal integrity (SI) design considerations are important in high-speed interface design. MediaTek’s design process usually relies on human intuition, but with Cadence’s Optimality Intelligent System Explorer and Clarity 3D Solver, they’ve increased design productivity by 75X. The Optimality Explorer’s AI technology not only improves productivity, but also provides helpful insights and answers.

Learn how MediaTek uses Cadence tools in SI design

featured chalk talk

SLM Silicon.da Introduction
Sponsored by Synopsys
In this episode of Chalk Talk, Amelia Dalton and Guy Cortez from Synopsys investigate how Synopsys’ Silicon.da platform can increase engineering productivity and silicon efficiency while providing the tool scalability needed for today’s semiconductor designs. They also walk through the steps involved in a SLM workflow and examine how this open and extensible platform can help you avoid pitfalls in each step of your next IC design.
Dec 6, 2023
17,866 views