Kiuwan

Application Security
Cloud-based code security for your DevSecOps process


Register as a Partner


+2,100
MSP Partner


+35.000
Customers


35 Million
Protected users per month


100 Billion
Protected daily queries


Kiuwan, the code security tool

Kiuwan fornisce una piattaforma di soluzioni per la sicurezza delle applicazioni end-to-end che opera nel cloud o sul tuo dispositivo.
From code analysis to governance, Kiuwan is essential for the development process. Code analysis identifies defects, the lifecycle verifies software deliveries, and governance manages your application portfolio to assess risks.

IDE Integration and Multilingual Support

Kiuwan supports over 30 programming languages and integrates with popular IDEs, making it perfect for a wide range of development needs, from WordPress to Python and beyond.

Introduction to Kiuwan

Security Reports

Kiuwan provides you with detailed and regular reports, allowing you to justify security investments, examine vulnerabilities, and identify app and code quality issues that require corrective actions.

Kiuwan Solutions

SAST

Code Security.
Early Vulnerability Detection.

Scopri di più

Insights SCA

Software Composition Analysis.
Resolves vulnerabilities and ensures license compliance.

Scopri di più

Code Quality & Governance

Add-on Components.
Code quality and targeted decisions.

Scopri di più


SAST – Protect your applications from day one

The leading static application security testing (SAST) service enables early vulnerability detection to protect your development.
With Kiuwan SAST you can:

  • Identify Security Risks
    Quickly detect vulnerabilities with targeted scans and act before they turn into breaches.
  • Create Action Plans
    Receive prioritized recommendations to quickly address vulnerabilities and improve security.
  • Optimize your workflow
    Automate security checks with seamless tool integration, keeping vulnerabilities under control without interrupting workflow.

SCA – Manage open-source risk with Kiuwan Insights

Reduce threats from third-party components with continuous or on-demand scanning through Software Composition Analysis (SCA).

With Kiuwan Insights SCA you can:

  • Reduce Security Risks
    Proactive Threat Detection
    Kiuwan SCA constantly analyzes open-source and third-party components by comparing them with the NIST National Vulnerability Database and other sources to identify and mitigate security vulnerabilities.

    Real-time Alerts
    Receive immediate notifications of all detected vulnerabilities, allowing your team to address issues promptly and prevent potential breaches.

    Detailed reports
    Access comprehensive reports on identified threats to understand their severity and impact, enabling informed decision-making and quick resolution.
  • Simplify License Management
    Automatic License Detection
    Kiuwan SCA automatically identifies licenses associated with each open-source component, ensuring compliance with legal requirements.

    Avoid legal risks
    By providing detailed information on license terms and conditions, Kiuwan helps prevent legal issues related to the misuse of open-source software.

    Proactive Management
    Meet license obligations and ensure that all components are used in compliance with their respective licenses, reducing the risk of compliance violations.

  • Improve development efficiency
    Code Scan Automation
    Kiuwan SCA automates scanning and analysis of open-source and third-party code, reducing the time and effort needed for manual checks.

    Real-time Updates
    Continuous scanning ensures that your development team is always aware of the latest vulnerabilities and can focus more on core development activities.

    Efficient Dependency Management
    Isolate and manage dependencies effectively, providing clear visibility into how different components interact within your software and reducing overhead and potential conflicts.

  • Improve workflow integration
    Seamless SDLC integration
    Kiuwan SCA integrates seamlessly with your software development lifecycle (SDLC), supporting both cloud-based and on-premise development environments.

    Dev Tools Compatibility
    It works with over 30 programming languages and integrates with popular repositories, version control systems, and CI/CD tools such as Git, Jenkins, and Microsoft Azure DevOps.

    Continuous Monitoring
    Maintain continuous security and compliance checks throughout the development process, ensuring constant protection and efficiency.











Add-on Components

Code quality and software governance

Code quality and software governance are essential tools that can benefit stakeholders at all levels, both internal and external. Learn how Kiuwan Code Quality & Governance can help security teams, engineers, developers, and IT professionals stay on track with projects.

Kiuwan Code Quality

Enables static and dynamic code analysis.
Both are necessary and should be used together, but the main differences lie in the environment where they occur and the types of errors they help developers detect. Kiuwan Code Quality allows you to perform both.

Advantages

Kiuwan’s OWASP-accredited Code Quality tool provides developers with features that enhance their software development process.
Here are some key benefits:

  • Reduce Technical Debt
    Kiuwan's analysis functionality manages the effort required for your software to fix any code defects.

    Easily Integrates
    The Code Quality tool works seamlessly alongside other analysis programs to expand your capabilities and processes.

    Enable Visual Configuration
    Kiuwan creates templates to select rules and properties for all types of quality control you may need to perform.

    Includes Jenkins analysis
    Analyzes the result file from your code analysis toolset so you can constantly analyze your work every time you build.

    Provides differential reports
    With Kiuwan, you can easily detect and fix introduced defects before they become major maintainability, portability, security, efficiency, or reliability issues.

  • Kiuwan Code Quality automatically creates an action plan to address defects. Your team can prioritize corrective actions based on multiple factors, including technical resources, time, and cost factors.

Kiuwan Governance

The framework for managing the development process.
Kiuwan Governance is designed with security/QA engineers and IT managers in mind. It allows development and programming teams to group QA analysis results, providing essential information for executive-level application management.

Advantages

With these additional features, IT managers will have:

  • Complete visibility of the entire application portfolio
  • Objective information for negotiating SLAs.
  • The ability to measure external vendor contributions and understand their progress from a privileged perspective.

These benefits allow development teams to manage their time and resources more easily. Additionally, they and stakeholders can compare new progress with the software’s baseline version.

Portfolio grouping with Kiuwan Governance

Kiuwan Governance allows teams to group code analysis results into separate portfolios, simplifying executive-level management. The four predefined portfolios within the program include:

  • Business value
  • Provider
  • Technology
  • Quality model

Standards compliant

Kiuwan aligns with OWASP, CWE, CVE, CPE, and NIST to ensure that your code meets industry regulations.

Register as a Partner CoreTech

Take advantage of the benefits and discounts reserved for you


Sign up for Free


Request the Trial

Try it for free, you’ll love it!


Free Trial