Latest news with #STIG


Associated Press
14-05-2025
- Business
- Associated Press
ColorTokens Slashes Federal Compliance Timelines and Enhances Container Security with RapidFort
SAN FRANCISCO--(BUSINESS WIRE)--May 14, 2025-- RapidFort, the fastest growing cybersecurity company securing the global software supply chain, has partnered with ColorTokens Inc., a pioneer in Zero Trust security and leader in microsegmentation, to strengthen its containerized infrastructure security and optimize its federal compliance efforts. By leveraging RapidFort's platform, ColorTokens notably reduced its attack surface by 77%, minimizing its security risks and improving security operations. 'RapidFort has measurably strengthened the security of both our cloud‑hosted SaaS platform and our on‑premise product,' said Harish Akali, CTO of ColorTokens, 'It's hardened container images, continuous scanning, and clear remediation guidance have cut our vulnerability backlog and supplied the evidence we needed to fast‑track FedRAMP, IRAP, and other certification audits.' Like many organizations who enter the federal marketplace, ColorTokens was challenged by diverse third-party base images and complex DevSecOps workflows. The constant need to maintain stringent federal compliance standards, including FIPS and STIG, required a solution that would reduce vulnerabilities without overburdening engineering resources. RapidFort helped ColorTokens address these challenges by: 'Far too often, organizations must divert critical resources to remediate vulnerabilities and meet compliance requirements, rather than advancing core business priorities,' said Mehran Farimani, CEO of RapidFort. 'By leveraging the RapidFort platform to optimize vulnerability management and minimize their security risks, ColorTokens was able to secure their software faster and with less strain on their teams, reducing the burden of meeting stringent federal compliance requirements.' RapidFort, already available through Platform One, Tradewind Marketplace, AWS Marketplace, Microsoft Azure Marketplace, Google Cloud Marketplace, and Carahsoft, provides a reliable and efficient pathway for organizations looking to enter the federal marketplace and drive growth in the government sector. For more information about the RapidFort platform, please visit: About RapidFort RapidFort offers a cybersecurity platform that streamlines and secures modern infrastructure. Their innovative approach allows organizations to continuously monitor and minimize their software attack surface, ultimately improving their security posture and operational efficiency. RapidFort empowers development and security teams with a free tier and free community images, making it easy to get started with secure software development. Learn more about RapidFort at View source version on CONTACT: Cole Christy LaunchTech Communications 619-972-9836 [email protected] KEYWORD: UNITED STATES NORTH AMERICA CALIFORNIA INDUSTRY KEYWORD: SOFTWARE INTERNET DATA MANAGEMENT TECHNOLOGY LOGISTICS/SUPPLY CHAIN MANAGEMENT TRANSPORT OTHER TECHNOLOGY SECURITY SOURCE: RapidFort Copyright Business Wire 2025. PUB: 05/14/2025 09:30 AM/DISC: 05/14/2025 09:31 AM


Business Wire
14-05-2025
- Business
- Business Wire
ColorTokens Slashes Federal Compliance Timelines and Enhances Container Security with RapidFort
SAN FRANCISCO--(BUSINESS WIRE)-- RapidFort, the fastest growing cybersecurity company securing the global software supply chain, has partnered with ColorTokens Inc., a pioneer in Zero Trust security and leader in microsegmentation, to strengthen its containerized infrastructure security and optimize its federal compliance efforts. By leveraging RapidFort's platform, ColorTokens notably reduced its attack surface by 77%, minimizing its security risks and improving security operations. 'RapidFort has measurably strengthened the security of both our cloud‑hosted SaaS platform and our on‑premise product,' said Harish Akali, CTO of ColorTokens, 'It's hardened container images, continuous scanning, and clear remediation guidance have cut our vulnerability backlog and supplied the evidence we needed to fast‑track FedRAMP, IRAP, and other certification audits.' Like many organizations who enter the federal marketplace, ColorTokens was challenged by diverse third-party base images and complex DevSecOps workflows. The constant need to maintain stringent federal compliance standards, including FIPS and STIG, required a solution that would reduce vulnerabilities without overburdening engineering resources. RapidFort helped ColorTokens address these challenges by: Deploying FIPS and STIG aligned pre-hardened, near-zero CVE images for Ubuntu, Redis, Golang, and Reducing vulnerabilities through intelligent runtime profiling and automated removal of unused software components, dramatically reducing exposure and cutting down on manual patching efforts. Embedding RapidFort's runtime-aware scanner into CI/CD pipelines, providing continuous visibility, real-time vulnerability insights, and proactive control. Accelerating compliance readiness by three months using built-in benchmarking and STIGing tools, simplifying the path to federal certifications like FedRAMP. 'Far too often, organizations must divert critical resources to remediate vulnerabilities and meet compliance requirements, rather than advancing core business priorities,' said Mehran Farimani, CEO of RapidFort. 'By leveraging the RapidFort platform to optimize vulnerability management and minimize their security risks, ColorTokens was able to secure their software faster and with less strain on their teams, reducing the burden of meeting stringent federal compliance requirements.' RapidFort, already available through Platform One, Tradewind Marketplace, AWS Marketplace, Microsoft Azure Marketplace, Google Cloud Marketplace, and Carahsoft, provides a reliable and efficient pathway for organizations looking to enter the federal marketplace and drive growth in the government sector. For more information about the RapidFort platform, please visit: About RapidFort RapidFort offers a cybersecurity platform that streamlines and secures modern infrastructure. Their innovative approach allows organizations to continuously monitor and minimize their software attack surface, ultimately improving their security posture and operational efficiency. RapidFort empowers development and security teams with a free tier and free community images, making it easy to get started with secure software development. Learn more about RapidFort at
Yahoo
14-05-2025
- Business
- Yahoo
ColorTokens Slashes Federal Compliance Timelines and Enhances Container Security with RapidFort
Partnership significantly improved company's operational efficiency by eliminating critical software vulnerabilities and fast-tracking certification audits by three months SAN FRANCISCO, May 14, 2025--(BUSINESS WIRE)--RapidFort, the fastest growing cybersecurity company securing the global software supply chain, has partnered with ColorTokens Inc., a pioneer in Zero Trust security and leader in microsegmentation, to strengthen its containerized infrastructure security and optimize its federal compliance efforts. By leveraging RapidFort's platform, ColorTokens notably reduced its attack surface by 77%, minimizing its security risks and improving security operations. "RapidFort has measurably strengthened the security of both our cloud‑hosted SaaS platform and our on‑premise product," said Harish Akali, CTO of ColorTokens, "It's hardened container images, continuous scanning, and clear remediation guidance have cut our vulnerability backlog and supplied the evidence we needed to fast‑track FedRAMP, IRAP, and other certification audits." Like many organizations who enter the federal marketplace, ColorTokens was challenged by diverse third-party base images and complex DevSecOps workflows. The constant need to maintain stringent federal compliance standards, including FIPS and STIG, required a solution that would reduce vulnerabilities without overburdening engineering resources. RapidFort helped ColorTokens address these challenges by: Deploying FIPS and STIG aligned pre-hardened, near-zero CVE images for Ubuntu, Redis, Golang, and Reducing vulnerabilities through intelligent runtime profiling and automated removal of unused software components, dramatically reducing exposure and cutting down on manual patching efforts. Embedding RapidFort's runtime-aware scanner into CI/CD pipelines, providing continuous visibility, real-time vulnerability insights, and proactive control. Accelerating compliance readiness by three months using built-in benchmarking and STIGing tools, simplifying the path to federal certifications like FedRAMP. "Far too often, organizations must divert critical resources to remediate vulnerabilities and meet compliance requirements, rather than advancing core business priorities," said Mehran Farimani, CEO of RapidFort. "By leveraging the RapidFort platform to optimize vulnerability management and minimize their security risks, ColorTokens was able to secure their software faster and with less strain on their teams, reducing the burden of meeting stringent federal compliance requirements." RapidFort, already available through Platform One, Tradewind Marketplace, AWS Marketplace, Microsoft Azure Marketplace, Google Cloud Marketplace, and Carahsoft, provides a reliable and efficient pathway for organizations looking to enter the federal marketplace and drive growth in the government sector. For more information about the RapidFort platform, please visit: About RapidFort RapidFort offers a cybersecurity platform that streamlines and secures modern infrastructure. Their innovative approach allows organizations to continuously monitor and minimize their software attack surface, ultimately improving their security posture and operational efficiency. RapidFort empowers development and security teams with a free tier and free community images, making it easy to get started with secure software development. Learn more about RapidFort at View source version on Contacts Cole ChristyLaunchTech Communications619-972-9836cole@ Error in retrieving data Sign in to access your portfolio Error in retrieving data Error in retrieving data Error in retrieving data Error in retrieving data
Yahoo
09-04-2025
- Business
- Yahoo
Beyond Identity Accelerates Path to FedRAMP Certification with RapidFort, Slashing Time and Costs
Partnership fast-tracks access to government markets and simplifies compliance SAN FRANCISCO, April 09, 2025--(BUSINESS WIRE)--RapidFort, the fastest growing cybersecurity company securing the global software supply chain, has partnered with Beyond Identity, a leading provider of identity and access management solutions, to reduce the time and costs of FedRAMP certification. By working together with RapidFort, Beyond Identity shortened the certification process by three months and cut associated costs by 50%, outperforming alternative approaches and cementing its credibility in the government sector. "RapidFort was an excellent and comprehensive partner during our FedRAMP journey," says Borislav Ivanov, Engineering Manager, Site Reliability Engineering at Beyond Identity. "They cut the cost of image hardening and SSDLC efforts by 50%, shaved three months off our overall compliance timeline, and delivered outstanding support every step of the way." Achieving FedRAMP certification is a crucial and complex process for any organization looking to provide solutions to the federal government, demanding extensive documentation, security testing, and ongoing compliance efforts. Beyond Identity wanted to streamline this process and reduce overall certification costs, all without overburdening its engineering team. RapidFort played a critical role in helping Beyond Identity earn its certification, while achieving its budgetary and process goals in 3 key ways: Simplified the compliance process with pre-hardened, near-zero CVE Curated Images aligned with NIST 800-70, FIPS 140-2, and 140-3 standards, establishing a secure foundation, and cutting through a significant portion of the initial compliance work. Streamlined the benchmarking process with their automated scanning tools, ensuring Security Technical Implementation Guide (STIG) hardened applications. Automatically generated the necessary compliance documentation, including Plan of Action and Milestones (POAM) and Software Bill of Materials (SBOM), further reducing labor-intensive work. "Our customers are developing cutting-edge security solutions for both the private and public sectors, so it's imperative that their offerings are approved for government use as quickly as possible," said Mehran Farimani, CEO of RapidFort. "We're proud to be setting the industry standard for FedRAMP certification support, streamlining a traditionally formidable process, and strengthening the infrastructure that helps secure our nation." RapidFort, already available through Platform One, Tradewind Marketplace, AWS Marketplace, Microsoft Azure Marketplace, Google Cloud Marketplace, and Carahsoft, provides a reliable and efficient pathway for organizations looking to enter the federal marketplace and drive growth in the government sector. For more information about the RapidFort platform, please visit: About RapidFort RapidFort offers a cybersecurity platform that streamlines and secures modern infrastructure. Their innovative approach allows organizations to continuously monitor and minimize their software attack surface, ultimately improving their security posture and operational efficiency. RapidFort empowers development and security teams with a free tier and free community images, making it easy to get started with secure software development. Learn more about RapidFort at View source version on Contacts Cole ChristyLaunchTech Communications619-972-9836cole@