The Internet isn't a single technology, but a collection of related technologies that enable everyone to connect together. Its commercial advantages has increased the risks of security breaches several folds. Web applications are increasing in popularity due to several reasons including scalability, faster deployment and shorter learning-to-use periods. New threats are always emerging and the potential of unauthorized users from entering the company networks are now high. Watchfire provides software and services to organizations that want to effectively manage online security, privacy, quality, and compliance.
The Beginning
Watchfire entered the online risk and compliance market in 1996 and is a privately held company. In July 2004, Watchfire entered the security space with its acquisition of Sanctum, a pioneer and leader in web application security testing market.
The Success Team
Peter C. McKay -- President and CEO
Michael Weider -- Founder and CTO
Diane Hall -- Vice President, Operations
Brian McDonough -- Vice President, Sales, North America
James Glover -- Vice President, Security Sales
Carey Stanton -- Vice President, Business and Corporate Development
Paul Michaud -- Vice President, Professional Services
Info Security Products Portfolio
AppScan®
AppScan® Developer Edition (DE)
AppScan® for Mercury Quality Center.
"As organizations expand their online presence, they will be vulnerable to security breaches of all kinds. Watchfire solutions help audit and prioritize key issues that concern mainly security, privacy and compliance in order to minimize online risks."
Rick Justice, Chief Editor
What makes Watchfire an Info Security "Hot Company" 2006
Products
AppScan embodies a technology that is highly advanced and protected by patents.
AppScan: gives auditors the industry’s leading web application security testing solution to conduct accurate and comprehensive security audits early in the development lifecycle, and validate web application quality and compliance against regulatory and organizational security initiatives, to greatly improve user productivity.
AppScan DE (Developer Edition): gives security teams the power of AppScan within several major development environments, such as JBuilder, Websphere, MS Visual Studio.Net and Eclipse, which allows unit testing of web applications to be completed more quickly and easily. AppScan DE provides automated precision security unit testing, has robust built-in intelligence to deliver comprehensive defect analysis and offers inline environment specific recommendations for fixing security flaws.
AppScan for Mercury Quality Center™: integrates into the Mercury Quality Center environment to help users centralize test creation and results viewing to facilitate a consistent and repeatable testing process which reduce errors and improve efficiency. AppScan for Mercury Quality Center lets you automate test creation and execute them as part of the normal QA run to empower you with comprehensive security defect advisories, modification and maintenance processes in addition to detailed fix recommendations, all in easy-to-understand QA language.
Most comprehensive compliance reporting in the industry - AppScan reports on more than 31 global compliance requirements and standards, including FISMA, VISA CISP, GLBA, SOX, NERC CIPC Security Guidelines for the Electricity Sector, the Japanese Personal Information Protection Act 2003 (JPIPA), the UK Data Protection Act 1998 (UK DPA), Director of Central Intelligence DCID 6/3 (US DOD regulation), California Assembly Bill No. 1950 (CA AB 1950). AppScan maps to Open Web Application Security Project’s (OWASP) top 10 critical web application vulnerabilities, the SANS Top 20, the Web Application Security Consortium (WASC) standards and many others, providing the industry’s most complete compliance reporting.
Superior technology and proven business benefits - AppScan is the industry’s first and most widely deployed web application security testing tool. Since 2004 the company has significantly increased its customer adoption and renewal rates have been more than 95 percent. Watchfire and its products have received many awards including the International Association of Privacy Professional’s (IAPP) Innovative Technology Award and ComputerWorld’s Innovative Technology Award. Watchfire is considered a thought and technology leader in the web application security and compliance space.
Watchfire and its products have received several awards including the International Association of Privacy Professional’s (IAPP) Innovative Technology Award and ComputerWorld’s Innovative Technology Award. Watchfire is considered a thought and technology leader in the web application security and compliance space. Its executives are often invited to speak at leading industry events, including the IAPP, RSA, InfoSecurity and are often called upon to comment by media on the topic of security and online risk issues. The company is also frequently quoted in the business and trade press including The Wall Street Journal, The New York Times, Investor's Business Daily and USA Today.
People
The company is led by Peter McKay who joined
Watchfire in 2001, bringing with him 20 years of technology-related business
management experience with global companies.
Strong leadership team - Watchfire has strong and experienced leadership teams who are thought leaders and sought after commentators on the subject of online privacy security and compliance. Watchfire executives speak regularly at numerous industry and business events and are often quoted in high-profile media outlets.
Performance
Watchfire has a proven track record of helping its customers define and achieve their online security and compliance goals. Although Watchfire brings its solutions to market predominately through a direct sales team, Watchfire also supports a growing number of global solution providers and market-leading technology partners.
Watchfire’s AppScan is the industry’s first and most widely deployed web application security testing tool. Since 2004 the company has significantly increased customer adoption and renewal rates for AppScan have been more than 95 percent, demonstrating customer loyalty to AppScan.
As a company, Watchfire has more than 300 enterprise enterprise customers for it's solutions (this number includes customers of Watchfire's WebXM platform). Watchfire's leadership is illustrated by the fact that nine of the world's top 10 banks, six of the world's 10 largest pharmaceutical companies, seven of the world's 10 largest technology companies and seven of the world's most valuable global brands use Watchfire’s solutions.
Watchfire’s AppScan has not only positively impacted hundreds of organization’s bottom line by mitigating web application security risks, protecting brand and automating the cumbersome and costly manual testing process, but the solution’s influence has been much broader. AppScan has also positively impacted the protection of these organization’s own customer’s security, potentially touching millions of people by encouraging adoption and trust of the online channel.
In 2005 Watchfire introduced a well-received web application security partner program and has signed a number of new global resellers, solution providers and technology partners including RedCliff, Ostfold Software and SiegeWorks. The company also expanded its web application security technology partnerships with Mercury, F5 and Microsoft. Watchfire also recently introduced a version of AppScan® for Mercury Quality Center™.
Watchfire has established partnerships with the world’s top solution providers including PricewaterhouseCoopers, Deloitte and Touche and IBM Global Services. These organizations have incorporated privacy and security consulting services around Watchfire’s technologies. Watchfire recently contributed guidelines to TRUSTe’s data security recommendations and its WebXM software is a key part of its seal program.
Potential
Ability to address both online privacy and security - There is a strong synergy between privacy and security. Watchfire has leading solutions that address both critical issues. Most organizations use web applications for major tasks or website functions, including forms interacting with personal information (credit cards, bank account information), classified information, confidential information, medical history, email and user satisfaction feedback. Organizations legally bound to protect the privacy and security of personally identifiable information, and hackers can get at this sensitive information, you run the risk of being non-compliant with a host of mandated legislation as well as investigations by the FTC and Attorney Generals. Web application security has become a growing privacy and risk compliance concern that organizations need to properly address. Watchfire helps organizations effectively manage both.
Global sales and support coverage - Watchfire is headquartered in Waltham, MA, with major offices in Ottawa, Canada, Herzelia, Israel, United Kingdom, Tokyo, Japan, New York City and Washington to serve key countries and verticals including financial services and the U.S. Federal Government.
Watchfire
880 Winter Street
Waltham, MA, 02451 USA
Tel: (
781) 810-1450
www.watchfire.com