Dynatrace, Snyk Unify Security Insights across Software Lifecycle

Software intelligence company Dynatrace announced a strategic technology alliance with Snyk to make software delivery more secure. The alliance leverages the DevSecOps Lifecycle Coverage with a Snyk app built using the Dynatrace AppEngine. The app connects Snyk container scans in pre-production with Dynatrace production-runtime insights.

It also enables security and development teams to use the Dynatrace platform to unlock precise, AI-powered answers that detail and prioritize vulnerabilities across the software lifecycle, with guidance that allows them proactively to remediate security risks.

According to recent research, 69 percent of CISOs say vulnerability management in modern software development has become more complex. Development and security teams struggle to balance the volume of applications in their environment and increased deployment frequency with the need to ensure these applications are secure.

As a result, many applications are not adequately validated with security scans. To maintain agility, teams need unified analytics across the software lifecycle that pinpoints gaps and enables proactive risk mitigation.

“Dynatrace’s new DevSecOps Lifecycle Coverage with Snyk app provides an end-to-end understanding of application security, from pre-production to production-runtime environments,” said Luca Domenella, head of cloud operations and DevOps at Soldo. “Pre-production container scans from Snyk combined with AI-powered application runtime insights and analytics from Dynatrace will enable our teams to pinpoint the location of vulnerabilities in our complex multi-cloud ecosystem, automatically prioritize these based on the risk of each exposure and use recommendations to proactively remediate these risks.”

The DevSecOps Lifecycle Coverage with Snyk app will be available within 90 days.

The announcement was made during Dynatrace’s cloud observability conference Perform, where it also announced the launch of its Carbon Impact app to deliver real-time insights into the carbon footprint of an organization’s Dynatrace-monitored hybrid and multi-cloud ecosystem and precise answers detailing how to reduce its environmental impact.

The company developed Carbon Impact using the Dynatrace AppEngine, a Dynatrace platform technology that empowers teams with an easy-to-use, low-code approach to deliver custom, compliant, and intelligent data-driven apps for boundless business, development, security and operations use cases.

Organizations are prioritizing sustainability as they work to meet environmental and regulatory requirements. While cloud providers share carbon footprint data, this only covers individual SaaS services rather than complete hybrid and multi-cloud ecosystems.

Additionally, these service-specific insights lack the details teams need to drive action – for example, which hosts, processes, or applications are driving consumption. These deficiencies make reporting and compliance challenging and limit organizations’ ability to understand where and how to optimize their ecosystems to ensure minimal environmental impact.

Dynatrace Carbon Impact addresses these challenges by calculating, tracking, and reporting the carbon footprint of Dynatrace-monitored hybrid and multi-cloud ecosystems. The Dynatrace platform leverages Carbon Impact and its Smartscape topology and dependency mapping to provide process- and app-level details for precise optimization insights.

With guidance from the Sustainable Digital Infrastructure Alliance (SDIA) and leveraging formulas from Cloud Carbon Footprint, Dynatrace developed the Carbon Impact app to align key consumption metrics with their contribution to a carbon footprint

Dynatrace partners, including Atos, a global leader in digital transformation and sustainability, can use the insights from Carbon Impact to help their customers meet stakeholder and regulatory requirements.

To learn more, visit the Dynatrace blog.