News and Notes from the Makers of Nexus | Sonatype Blog

CIO.com: Helping Developers Reduce Open Source Risk

Written by Derek Weeks | November 17, 2014

Last week, CIO.com shared a story of an inflection point in application security. Lucian Constantin discussed how there needs to be a shift from manual open source risk analysis to more automated approaches. His article stated, “The notion of using manual audits, manual approvals and traditional governance to deal with that level of [open source component] consumption is just impossible.” Lucian also described how Sonatype’s new release of CLM helps companies automate open source risk analysis, governance, and reporting.

You can read the full article on CIO.com here.