News

HP To Acquire Fortify

Hewlett-Packard Co. today said it is acquiring security software vendor Fortify Software Inc. for an undisclosed amount.

Fortify's software security remediation suite, called Fortify 360, is widely used by large enterprises and government agencies. HP's planned acquisition of Fortify is not a major surprise to those who follow the companies given their close partnership.

"This has been in the cards for a long time," said Ovum analyst Tony Baer, in an e-mail. "HP and Fortify have been gradually dancing more closely together over the past year into what was about to become an exclusive relationship for HP, where Fortify was about to offer integrations specifically for HP Quality Center."

Baer noted the acquisition was inevitable after IBM acquired Ounce Labs last year. HP three years ago acquired SPI Dynamics, then regarded as a leading supplier of security assessment software. Fortify's suite offers security remediation at the development and QA testing phase, officials of both companies said during an interview.

"What we bring to the table is now that you find the issues with an application, how can you go about solving the problem, so time to security becomes important," said Barmak Meftah, Fortify chief products officer.

"The expertise they have on static analysis and understanding what happens in the code itself as software is being attacked is highly complimentary with our dynamic security testing technology," added Mark Sarbiewski,VP of Products in HP's Software & Solutions group.

It remains to be seen how long the founders, who include Fortify's chief scientist Brian Chess, will remain with HP. After the deal is closed, HP said it intends to initially run Fortify as a separate business unit but over time it will be integrated into HP's Software and Solutions business. Fortify CEO John Jack will run the business unit within HP, according to the company.

Sarbiewski said Fortify's software will be made available to HP's partners as well as integrated into its service offerings.

About the Author

Jeffrey Schwartz is editor of Redmond magazine and also covers cloud computing for Virtualization Review's Cloud Report. In addition, he writes the Channeling the Cloud column for Redmond Channel Partner. Follow him on Twitter @JeffreySchwartz.

comments powered by Disqus

Featured

  • Lessons Learned Building a GenAI-Powered App

    Sometimes, complex technical achievements are best explained through one example. That's the approach Mete Atamel, Developer Advocate at Google, is taking as he makes the rounds detailing the capabilities of Vertex AI and associated tooling on the Google Cloud Platform.

  • 30th Annual Visual Studio Magazine Reader's Choice Awards Announced

    For the 30th year in a row, Visual Studio Magazine readers have chosen the best tools and services for developers. The 2024 winners are honored in 43 categories, from component suites to testing tools to AI helpers.

  • Another Report Weighs In on GitHub Copilot Dev Productivity: 👎

    Several reports have answered "yes" to the question of whether GitHub Copilot improves developer productivity. A new one says "no."

  • Logistic Regression with Batch SGD Training and Weight Decay Using C#

    Dr. James McCaffrey from Microsoft Research presents a complete end-to-end program that explains how to perform binary classification (predicting a variable with two possible discrete values) using logistic regression, where the prediction model is trained using batch stochastic gradient descent with weight decay.

Subscribe on YouTube