Sonatype Closes $30 Million Financing


February 4, 2016 By
Wayne Jackson
circles3

At Sonatype, we know that two things are true: Security, quality, and speed are critical to modern software (business) success, and The world’s best software starts with the world’s best components. That’s precisely why our Nexus Software Supply Chain Automation solutions automatically and continuously infuse the highest quality components into every aspect of software development […]

Continue reading...

Legos, Death Stars, and Millennium Falcons, Oh My


February 2, 2016 By
Jeff Wayman

The Lego Death Star has about 1/10th of the parts of a Toyota; 3803 to be exact. If you’ve ever assembled the Lego Death Star, or anything lego related, you know having the right parts is critical. Even more impressive is what the group over at Titans Creations did. This group of Lego fans (known as My Own Creation[ers]) built a scale model (mini-figure scale) of the Millennium Falcon. Coming in at around 10,000 parts it’s one of the more, if not most impressive custom models to date.

Continue reading...

Rugged DevOps: Solving Big Problems


January 27, 2016 By
Derek Weeks
Screen Shot 2016-01-27 at 10.39.16 AM

In part one of this series, “Rugged DevOps: Survival is Not Mandatory”, I shared news that 1 in 16 open source and third-party components downloaded last year included a known vulnerability. That may not seem like too many until you realize the average company downloads well over 200,000 components annually. These components are electively downloaded by development teams, often unaware of the vulnerabilities that come with them.

Continue reading...

Rugged DevOps: Survival is Not Mandatory


January 25, 2016 By
Derek Weeks
Rugged Devops

Deming, the patron saint of DevOps once advised, “It is not necessary to change. Survival is not mandatory.” To survive, application development teams are constantly pressured to deliver software even faster. But fast is not enough. The best organizations realize that security, quality and integrity at velocity are mandatory for survival. Hence, DevOpsSec

Continue reading...

Ground Control To Nexus Users: Nexus Repository Manager 3 Milestone 7 Release


January 21, 2016 By
Jeffry Hesse
The Nexus Team

The final milestone is here, and we are pleased to announce Nexus Repository Manager 3 Milestone 7 has “made the grade” and it’s ready to release! It’s time to engage your engines and blast off with Nexus as this version will be upgradeable to future versions of Repository Manager 3.

Continue reading...

Why CEO’s Choose Harry


January 15, 2016 By
Derek Weeks
HARRY

We are excited to see GrowthCap just announced NEA’s Harry Weller as their Investor of the Year.  Harry and our CEO, Wayne Jackson, started working together in 1998 when he invested in Riverbed Technologies, followed by an investment in SourceFire, and most recently teaming up for the third time with Sonatype.  We’re honored to be partnered […]

Continue reading...

What’s in Your Software


By
Matt Howard
Screen Shot 2016-01-15 at 9.01.37 AM

I can’t tell you how excited I am to be a part of the Sonatype team that is literally reinventing how quality software gets made. As the new guy leading marketing, my first test was to explain Sonatype to my mom. She’s a smart cookie — but she’s 82 years old — and doesn’t know very much about software.

Continue reading...

Getting Rugged DevOps Right


December 3, 2015 By
Derek Weeks
Screen Shot 2015-12-03 at 12.28.19 PM

Two Perspectives Jack, an accomplished application security pro, tells me, “The developers won’t talk to us.  It’s like we speak a different language.  They are releasing new builds so fast, how could they check each one for security vulnerabilities?  We can’t move as fast as they do.” Then in the next moment, Diane, a DevOps […]

Continue reading...

Software Supply Chains: DevOps Lessons Learned from Southwest Airlines


November 23, 2015 By
Wayne Jackson
SW

I was talking to a new business acquaintance the other day and had a really interesting exchange. It went something like this: Him: So, what does Sonatype do? Me: We work in the software development realm doing this new thing called Software Supply Chain Automation. Him: What does that mean? Me: Well, modern software is, […]

Continue reading...

Nexus Firewall: Quality at Velocity


November 17, 2015 By
Mike Hansen
fw2 small

The quantitative research summarized below, covering over 7,000 repositories across nearly 100 countries, highlights some of the challenges with quality at modern development velocities. By leveraging automation in your repository manager, you can improve application quality and reduce unplanned work while lowering exposure to risk. Repository managers like Nexus, Artifactory and Archiva have been serving […]

Continue reading...