In the context of Viettel's continuous development of large-scale digital platforms, integrating security testing into the software development lifecycle (Secure SDLC) has become essential. NGSI successfully implemented the Fortify Application Security Testing solution, helping Viettel enhance application security from design to deployment.
Fortify by OpenText is a world-leading application security testing platform, recognized for over a decade in the Gartner Magic Quadrant for Application Security Testing (AST). The system supports:
Static Application Security Testing (SAST): Analyzes source code to detect vulnerabilities early during the coding phase.
Dynamic Application Security Testing (DAST): Simulates real-world attacks on running applications.
Software Composition Analysis (SCA): Identifies risks in third-party open-source libraries.
DevOps Integration: Automates the entire vulnerability scanning and analysis process across CI/CD pipelines.
The solution ensures security coverage across the entire software development lifecycle, enabling early detection and mitigation of vulnerabilities.
Up to 60% reduction in exploitable security risks in production environments.
Early detection and remediation of hundreds of vulnerabilities during the development process.
50% improvement in IT system protection, especially in large-scale digital services and platforms.
Comprehensive training for Viettel’s development team in secure coding and application security practices, enhancing internal capabilities and reducing external dependencies.