Day 2 at the Global AppSec US Conference by OWASP® Foundation! 🌐 We had a fantastic evening at last night’s happy hour, hosted by OpenText, Sonatype, and Secure Code Warrior! 🥂 Thanks to everyone who came out to network, share insights, and enjoy the great company. Today, we’re back at booth #201, ready to dive into more conversations about securing the software supply chain. Stop by and learn how Sonatype is empowering developers and security teams! #GlobalAppSecUS #OWASP #CyberSecurity #SoftwareSupplyChain Paul Volkman Larissa Brown Matthew Padon Sable Y. Mia Casas Brian Kelley Diogo Rispoli
Sonatype
Software Development
Fulton, MD 26,823 followers
Develop software fearlessly.
About us
The Sonatype journey started 15 years ago, just as the concept of “open source” software development was gaining steam. From our humble beginning as core contributors to Apache Maven, to supporting the world’s largest repository of open source components (Central), to distributing the world's most popular repository manager (Sonatype Nexus Repository), we’ve played a meaningful role in helping the world embrace the power of open innovation. Over time, we witnessed the staggering volume and variety of open source libraries that began flowing into every development environment in the world. We understood that when open source components are properly managed, they provide a tremendous energy for accelerating innovation. Conversely, when unmanaged, open source "gone wild" can lead directly to security vulnerabilities, licensing risks, enormous rework, and waste. Our vision today is simple. We are laser focused on helping organizations continuously harness all of the good that open source has to offer, without any of the risk. In order to do this, we have invested in knowing more about the quality of open source than anyone else in the world. This investment takes the form of machine learning, artificial intelligence, and human expertise, which in aggregate produces highly curated intelligence that is infused into every Sonatype product. Organizations equipped with Sonatype products make better decisions, innovate faster at scale, and rest comfortably knowing that their applications always consist of the highest quality open source components.
- Website
-
https://www.sonatype.com
External link for Sonatype
- Industry
- Software Development
- Company size
- 501-1,000 employees
- Headquarters
- Fulton, MD
- Type
- Privately Held
- Founded
- 2008
- Specialties
- Open Source, Open Source Governance, Management and Compliance, Repository Management, DevOps, DevSecOps, Software Supply Chain, Continuous Delivery, Continuous Integration, Open Source Security, Docker Private Registry, Software Component Analysis, Open source software, Application security, information security, artifact repository, SBOMs, and SaaS
Locations
-
Primary
8161 Maple Lawn Blvd, Suite 250
Fulton, MD 20759, US
-
8281 Greensboro Drive
Suite 630
McLean, Virginia 22102, US
-
1 Primrose Street
1 Primrose Street
London, England EC2A 2EX, GB
Employees at Sonatype
Updates
-
Day 1 of GrrCON 2024 is here! We’re excited to be part of this amazing event that brings together security pros, hackers, and innovators from around the globe. Stop by booth #65 to explore all of Sonatype's solutions—from SBOM management to software supply chain security. For more on how we can help secure your software, visit our website for detailed insights. https://bit.ly/4c6o4tg 💡 #GrrCON2024 #CyberSecurity #HackerConference #SoftwareSupplyChain #Sonatype Jared Snyder Ken Youn Darryl Maurice
-
Unlock the full FinServ: Open Source Optimization webinar series, supported by FINOS, on demand! 📈 Tailored specifically for software developers and security professionals in the financial services sector, this series dives into the critical challenges and innovations shaping the industry. Catch up on expert insights across key sessions: 🔹 AI/LLM in the Financial Services Industry 🔹 Dependency Management 🔹 Automation/Prioritization 🔹 Licensing Compliance Don’t miss out—explore the series now to stay ahead in fintech innovation and security! https://bit.ly/3VckoQi #FinTech #FinancialServices #OpenSource #Cybersecurity
-
Exciting news! Brian Fox, Sonatype’s CTO, has been selected to join MAS' newly established Cyber and Technology Resilience Experts (CTREX) Panel. Brian will collaborate with industry experts on this panel to drive advancements in cybersecurity and technology resilience across the financial sector. Read more in their press release below!
MAS has announced the establishment of a Cyber and Technology Resilience Experts (CTREX) Panel. The Panel replaces MAS’ Cyber Security Advisory Panel, with an expanded mandate to cover technology resilience which, together with cybersecurity, significantly underpins the operational resilience of the financial sector. READ MORE: https://lnkd.in/gSeuGDjw
-
💪 It’s time to celebrate the trailblazers of tech! Join these powerful women as they share their groundbreaking work: "Step Up Your Game - Simplifying Complex Workflows with AWS Step Functions" with Chloe McAree "Error 404! Job Role Not Found - Courtesy GenAI" with Garima Bajpai "Build Your Own DevSecOps Maturity Assessment Model" with Annie Fleming These sessions are a must-attend for anyone looking to be inspired by innovation and female leadership in tech. Build your agenda today and join us on October 10th! https://lnkd.in/gw2cbRfg #WomenInTech #Innovation #DevOps #ADDO2024 #AllDayDevOps
-
📢 Sonatype's Top 5 Takeaways from SBOM-a-Rama Fall 2024! This year's SBOM-a-Rama, hosted by CISA, showcased the explosive growth of SBOM adoption and the critical role these tools play in modern cybersecurity and software supply chain management. 🌐 From emerging challenges like SBOM exchange to exciting innovations in AI/ML SBOMs, we've broken down the key highlights and what they mean for the future of secure software development. Check out our latest blog to dive into the top trends and insights from the event! https://bit.ly/4gBNBxK #SBOM #Cybersecurity #SupplyChainSecurity #SoftwareDevelopment
-
Live from InfoSec World 2024! 🚨 We’re excited to be here, showcasing how Sonatype is transforming software supply chain security at Booth #516. 💻 Swing by to chat with our team and learn more about the latest innovations, including our SBOM Manager. Plus, we just wrapped up Bryan Whyte, CISSP session, "Going Beyond the SBOM: How to Secure the Software Supply Chain." Check out a snapshot of Bryan on stage sharing insights on tackling the rise in supply chain attacks! Stop by for live demos and more valuable insights. #InfoSecWorld2024 #CyberSecurity #SoftwareSupplyChain #SBOM #OpenSourceSecurity April Downey Sharon Starrett Andrew Olasz
-
🎥 Join us for an All Day DevOps (#ADDO) Watch Party at the Carahsoft Office on October 10th, from 3:00-7:00 PM ET! Network with fellow DevOps professionals and catch some of the best sessions from the world's largest DevOps conference—live and in person. Plus, earn 3.6 CPE credits while you’re at it! 📍 Join us at the Carahsoft Office in Reston, VA for a fun, interactive experience—register now: https://bit.ly/4djJwLE #ADDO2024 #DevOps #AllDayDevOps
-
🧠 Ready to dive into the future of tech? Check out these mind-blowing AI & automation sessions at All Day DevOps (#ADDO): "Unleashing the Power of Generative AI in DevSecOps" with Mfundo D. "Achieving Quality at Scale: Revolutionizing QA with GenAI" with Fitz Nowlan "AI-Augmented DevOps Research: Reality vs Hype" with Mitch Ashley Build your agenda & get ready for 24 hours of innovation! We'll see you on October 10th! https://bit.ly/4gaz4ca #AI #Automation #DevOps #TechFuture #ADDO2024 #AllDayDevOps
-
Get ready for some incredible insights at this year's #ADDO Keynotes! 🙌 Our keynote speakers are bringing next-level innovation, fresh perspectives, and practical takeaways to elevate your #DevOps journey. 🎤 Join us on October 10th and hear from the best in the industry. Don’t miss it! Register now and start building your agenda. https://lnkd.in/gw2cbRfg #ADDO2024 #Keynotes #DevOps Ilkka Turunen Brian Fox Jonathan Meadows Citi Christopher Robinson Intel Corporation Pallavi Nargund Amazon Web Services (AWS) Manuel Hoffmann Harvard University Frank Roe SmartBear Georg Link, PhD Bitergia