Developer protection platform Snyk has bought Fugue, marking its fifth acquisition around the previous 12 months and a fifty percent.
The transfer, introduced Thursday, marks Snyk’s entry into the cloud protection sector. By including Fugue, a startup specializing in cloud infrastructure stability and compliance, Snyk programs to enable developer-1st cloud protection posture administration (CSPM). It would be the “industry’s to start with CSPM developed by and for developers,” in accordance to Snyk’s announcement. Conditions of the acquisition ended up not disclosed.
Fugue, based in Frederick, Md., was started in 2013 and focuses on protection for the cloud growth lifecycle that contains infrastructure-as-code (IaC) abilities. Snyk reported the acquisition will guide the evolving part of builders by assisting them “protected their code right before deployment, preserve its safe integrity even though functioning, and greater comprehend the specific sites to offer fixes again in the code.”
Doug Cahill, vice president and team director of cybersecurity at Enterprise Strategy Group (ESG), a division of TechTarget, noted the two companies’ shared motivation to open up source communities.
Chris Steffen, analysis director at Organization Administration Associates, explained the acquisition will augment Snyk’s IaC capabilities with the benefits of Fugue’s cloud protection.
“Provided the relevance of DevSecOps in the cloud, the integration of the two organizations will give supplemental security possibilities for builders as they produce workloads for the cloud room,” Steffen told SearchSecurity.
Equally, ESG senior analyst Melinda Marks claimed the developing use of IaC has introduced more risk due to the fact developers are rapidly employing templates and scripts to provision infrastructure. If there is a code flaw or misconfiguration, she said, it can expose client or enterprise data if deployed in manufacturing.
“Fugue has been concentrated in this region, making instruments for developers to enable them use policy-as-code, automatic tests and posture administration to cut down misconfigurations,” she reported in an e mail to SearchSecurity. “Snyk has been addressing IaC safety with a module as section of its solution, but it can be nice to see them receive Fugue so they can give a much more entire remedy to help builders properly use IaC.”
In Oct, Snyk bought CloudSkiff, which also focuses on IaC as well as drift detection. Other the latest acquisitions by Snyk include open up source compliance and stability tool FossID past May possibly and AI seller Manifold in January 2021. In 2020, Snyk obtained program assessment startup DeepCode.