CAST | Top 20 Cyber Security Solutions - 2015
CAST: Analyzing and Measuring the Risk and Structural Quality of Software
CIOReview
  • About Us
  • US
    • US
    • APAC
    • LATAM
    • CANADA
    • EUROPE
About UsConferencePartner With Us
  • Technology
      1. ARTIFICIAL INTELLIGENCE
      2. AUDIOVISUAL
      3. BLOCKCHAIN
      4. BUSINESS INTELLIGENCE
      5. CLOUD
      6. DATA ANALYTICS
      7. DEVOPS
      8. DIGITAL TRANSFORMATION
      9. DIGITAL TWIN
      10. LOW CODE NO CODE PLATFORM
      11. NETWORKING
      12. ROBOTIC PROCESS AUTOMATION
      13. SECURITY
  • Industry
      1. CONTACT CENTER
      2. EDUCATION
      3. HEALTHCARE
      4. LEGAL
      5. MANUFACTURING
      6. PUBLIC SECTOR
      7. RETAIL
      8. TELECOM
  • Solutions
      1. ASSET MANAGEMENT
      2. CUSTOMER EXPERIENCE MANAGEMENT
      3. CYBER SECURITY
      4. DATA CENTER
      5. DOCUMENT MANAGEMENT
      6. ELECTRONIC DATA INTERCHANGE
      7. ENTERPRISE DATA MANAGEMENT
      8. ENTERPRISE RESOURCE PLANNING
      9. ENTERPRISE RISK MANAGEMENT
      10. ENTERPRISE-GRADE WEB DATA SOLUTIONS
      11. FACILITY MANAGEMENT
      12. FIELD SERVICE
      13. IDENTITY AND ACCESS MANAGEMENT
      14. INFRASTRUCTURE
      15. IT SERVICE MANAGEMENT
      16. MANAGED IT SERVICES
      17. PAYMENT AND CARD
      18. PROJECT MANAGEMENT
      19. SOFTWARE TESTING
      20. STORAGE
      21. VIDEO SOLUTIONS
      22. WORKFLOW
  • Platforms
      1. ACUMATICA
      2. AMAZON
      3. IBM
      4. MICROSOFT
      5. ODOO
      6. ORACLE
      7. SAGE
      8. SAP
      9. SERVICENOW
  • Functions
      1. COMPLIANCE
      2. CONTRACT MANAGEMENT
      3. LOGISTICS
      4. PROCUREMENT
      5. SALES AND MARKETING
      6. SUPPLY CHAIN
  • Leadership Perspectives
  • Innovation Insights
  • Research
  • Magazines
  • News
  • CXO Awards
Menu
  • US
    • US
    • APAC
    • LATAM
    • CANADA
    • EUROPE
CIOREVIEW >> Cybersecurity >> CAST

CAST has been recognized by CIOReview Magazine as the recipient of “Top 20 Cyber Security Solutions - 2015,” based on our proprietary methodology, reflecting its position in the industry. This profile has been developed by the CIOReview research and editorial team based on insights from an interview with Vincent Delaroche, Chairman & CEO.

CAST
Analyzing and Measuring the Risk and Structural Quality of Software

CAST

Vincent Delaroche, Chairman & CEO
In today’s complex IT environments, security is not just about protecting a business and its assets from an attack on the outside. In fact, today, an estimated 84 percent of all security breaches are application-related, not firewall violations. This has prompted some security professionals to opt for a direct and effective approach—designing security directly into applications by forming an architectural defense against threats, whether internal or external.

“CAST has been pioneering this area for a long time,” begins Vincent Delaroche, Chairman and CEO, CAST. “We began by reverse engineering the existing technical architecture of legacy applications and then overlaid software engineering rules onto those blueprints. Now, we provide sophisticated architectural rule compliance right out of the box enforcing secure architecture for key business applications.”

Today, CAST delivers this assurance to Fortune 1000 customers across the globe. “We resolve issues that traditional approaches cannot, by providing system-level engineering intelligence through structural and architectural analysis. This is an important perspective because it depicts the inner workings of your operations—how companies make money and how end users interact with your business,” says Delaroche.

The company’s Application Intelligence Platform (AIP) analyzes all types of source code, headers, files, data structure—everything that makes a complete IT system and automatically “rebuilds” a logical model of the entire app. It points out hard-to-find coding mistakes and architectural flaws that may represent serious security threats. Part of CAST’s AIP is its Application Analytics Dashboard that drives out IT risks by creating visibility into system level weakness. This offers a holistic view of the IT system’s structure, from the UX to the logic layers and from the business logic to the data structure.

“Our customers are on the leading edge of adopting secure architecture principles and ensuring all development adheres to pre-defined secure data access rules,” says Delaroche. For instance, a large healthcare provider deployed CAST and started focusing on overall structural quality in the development process—part quality control and part developer education. “By addressing overall quality, the customer greatly improved their security.

Moreover, they dispatched security flaws much earlier in their development cycle than they would with more traditional security approaches,” he says.

One key to CAST’s success is its own benchmark repository named Appmarq, an application quality database that enables clients to compare software systems. “The Appmarq database includes the structural quality statistics of two thousand applications, representing more than 1.8 billion lines of code analyzed, classified by all key industry sectors and technologies. Appmarq’s insights on how an application’s structural quality deviates from the norm helps organizations to improve their performance, reduce costs, and increase productivity,” explains Delaroche.

“Most recently, we’ve been developing a new approach to measuring technical debt and we’re also innovating in the area of automated function point (AFP) measurement.” CAST introduced Transaction Risk Index (TRI) that identifies vulnerable transaction call paths and the Propagated Risk Index (PRI)—which highlights the risk hotspots throughout an application. “We continue to combine our software analysis capabilities with dynamic performance data and other environment parameters in order to provide increasingly meaningful results.”

We resolve issues that traditional approaches cannot, by providing systemlevel engineering intelligence through structural and architectural analysis


The company is also working on a certification capability which allows customers the ability to put an “ingredients label” on their software, showing that it’s compliant with standards from the Consortium for IT Software Quality (CISQ), a joint initiative of Carnegie Mellon University’s Software Engineering Institute (SEI) and the Object Management Group (OMG). “CISQ compliance will provide business managers with the proof that their software is of the highest quality and security—up to the task of running their critical business processes,” concludes Delaroche.

Top 20 Cyber Security Solutions - 2015

Company
CAST

Headquarters
New York, NY

Management
Vincent Delaroche, Chairman & CEO

Description
Provides Software Analysis and Measurement, with unique technology and fact-based transparency into application development and sourcing to transform it into a management discipline.

Top 20 Cyber Security Solutions - 2015

I agree We use cookies on this website to enhance your user experience. By clicking any link on this page you are giving your consent for us to set cookies. More info

CIOReview
Follow on LinkedIn

About

  • Home
  • About Us
  • Partner With Us

Stay Connected

  • Subscribe
  • Newsletter
  • Sitemap

Contact Us

  • editor@cioreview.com
  • sales@cioreview.com
  • marketing@cioreview.com

Legal

  • Editorial Policy
  • Privacy Policy
  • Terms of Use

© 2026 CIOReview. All rights reserved. Headquartered in Fort Lauderdale, FL, USA.

 

companies_description
This content is copyright protected

However, if you would like to share the information in this article, you may use the link below:

https://cybersecurity.cioreview.com/vendor/2015/cast