TechNet Augusta 2024 Supporting Partner Opportunities


AFCEA has developed an enhanced supporting partner program that will offer maximum visibility to those who participate! What better way to make sure you stand out and increase your exposure at this foremost event in which industry leaders can learn about military requirements and connect with decision makers and operators, where senior military and government officials can gain feedback, and where industry thought leaders will discuss and demonstrate solutions. Supporting Partner opportunities are offered at several investment levels, ensuring your ability to participate.

Browse available options below, or jump to specific categories such as Patron Packages, Branding and Individual Opportunities.

Deadline to purchase a Supporting Partnership is July 10th.

JFrog

Sunnyvale,  CA 
United States
  • Booth: R1120


 Press Releases

  • JFrog and Carahsoft Partner to Better Secure the Public Sector’s Software Supply Chain

    PRESS RELEASE, February 20, 2024

    Government Organizations are Now Able to Accelerate the Delivery of Trusted Software from End to End Using the Secure Software Development Framework (SSDF) 

    Sunnyvale, Calif. and Reston, VA. — February 20, 2024 — JFrog Ltd. (Nasdaq: FROG), the Liquid Software company and creators of the JFrog Software Supply Chain Platform, and Carahsoft Technology Corp., the Trusted Government IT Solutions Provider®, today announced a partnership that empowers U.S. Government organizations to safeguard their software supply chains with automated DevSecOps workflows to secure software services consumed by citizens. Under the agreement, Carahsoft will serve as a JFrog Public Sector Distributor, making its platform solution available to the Public Sector through Carahsoft’s reseller partners and NASA Solutions for Enterprise-Wide Procurement (SEWP) V and Information Technology Enterprise Solutions – Software 2 (ITES-SW2) contracts.

    “With the number and severity of security threats on the rise, plus increasing regulatory requirements, government organizations must ensure their software is compliant and secure, while also meeting their IT transformation goals,” said Shlomi Ziv, SVP of Americas, JFrog. “Our partnership with Carahsoft will provide public sector organizations with reliable solutions that incorporate security from the start while unburdening DevOps teams from complex and time-consuming remediation processes and ensuring compliance.”

    Government agencies, like all organizations, want to release trusted software fast and on schedule to enable public servants to provide citizens with modern applications and digital services. The Secure Software Development Framework (SSDF) integrates secure development practices into the software development lifecycle, reducing vulnerabilities, mitigating potential impacts of known and unknown vulnerabilities, and preventing future recurrences by addressing root causes.

    Gartner predicts that 45 percent of organizations worldwide will experience a software supply chain attack by 2025 (a three-fold increase from 2021). Plus, a report by the SANS Institute showed there is a 70 percent chance a cybersecurity incident will be caused by an organization’s suppliers. 

    “Supply chain attacks in recent years have highlighted the importance of integrating security into each phase of software development,” said Natalie Gregory, Vice President of Open Source Solutions at Carahsoft. “JFrog’s platform provides agencies with unparalleled security, agility and peace of mind for their software supply chain. We’re excited to make these capabilities available to the Public Sector through our reseller partner network and supply Government agencies with the tools needed to enhance their security.”

    Compliance with NIST SP 800-218 and the SSDF is mandatory for government organizations. The JFrog Software Supply Chain Platform is designed to assure customers that their environment complies with NIST 800-218 guidelines in accordance with the Office of Management and Budget (OMB) M-22-16 memorandum. All JFrog solutions are created using the SSDF, which is consistent with both the White House Executive Order (EO) 14028 and the White House Memorandum on Improving the Cybersecurity of National Security, Department of Defense (DoD) and Intelligence Community Systems in the NSM-8. The JFrog Platform supports on-premise, hybrid, cloud, multi-cloud or air-gapped environments and can be hosted on Amazon Web Services, Microsoft Azure or the Google Cloud Platform.   

    The JFrog Software Supply Chain Platform is available through Carahsoft’s SEWP V contracts NNG15SC03B and NNG15SC27B, the ITES-SW2 Contract W52P1J-20-D-0042 for Federal and the DoD, and the Massachusetts Higher Education Consortium (MHEC) and NJSBA contracts for Educational institutions. For more information, contact the Carahsoft team at (877) 742-8468 or JFrog@carahsoft.com, visit https://www.carahsoft.com/jfrog

     

    About JFrog 

    JFrog Ltd. (Nasdaq: FROG) is on a mission to create a world of software delivered without friction from developer to device. Driven by a “Liquid Software” vision, the JFrog Software Supply Chain Platform is a single system of record that powers organizations to build, manage, and distribute software quickly and securely, ensuring it is available, traceable, and tamper-proof. The integrated security features also help identify, protect, and remediate against threats and vulnerabilities. JFrog’s hybrid, universal, multi-cloud platform is available as both self-hosted and SaaS services across major cloud service providers. Millions of users and 7K+ customers worldwide, including a majority of the Fortune 100, depend on JFrog solutions to securely embrace digital transformation. Once you leap forward, you won’t go back! Learn more at jfrog.com and follow us on Twitter: @jfrog.

    About Carahsoft 

    Carahsoft Technology Corp. is The Trusted Government IT Solutions Provider, supporting Public Sector organizations across Federal, State and Local Government agencies and Education and Healthcare markets. As the Master Government Aggregator® for our vendor partners, we deliver solutions for Open Source, DevSecOps, Cybersecurity, Artificial Intelligence and Machine Learning, MultiCloud, Customer Experience and Engagement, Big Data and more. Working with resellers, systems integrators, and consultants, our sales and marketing teams provide industry-leading IT products, services and training through hundreds of contract vehicles. Visit us at www.carahsoft.com.

    Cautionary Note About Forward-Looking Statements

  • Empowering DevSecOps:
    As an integrator or government agency providing mission-critical software, the question to ask yourself “Is my software development environment NIST SP 800-218 compliant?”. Compliance with NIST SP 800-218 and the SSDF (Secure Software Development Framework) is mandatory, and it’s time to ensure your software supply chain is compliant.


    Learn more about JFrog’s DevSecOps solutions for government agencies and their contractors.
    TALK TO A JFROG GOVERNMENT EXPERT

    Government agencies must release software reliably, confidently, and on schedule to empower public servants to serve citizens with modern applications and digital services. Simultaneously, they need to ensure that software is secure and compliant to prevent cyber-attacks and meet IT transformation goals. To accomplish these goals, the Government came up with NIST 800-218 guidelines on how to develop software using a SSDF.

    The 4 Practice Areas of the NIST-800-218 Compliance RequirementsThe 4 Practice Areas of the NIST-800-218 Compliance Requirements

    NIST SP 800-218, SSDF Regulatory Compliance

    SSDF is a core set of secure software development practices that can be integrated into each SDLC implementation. Following these practices should help software producers reduce the number of vulnerabilities in released software, mitigate the potential impact of the exploitation of undetected or unaddressed vulnerabilities, and address the root causes of vulnerabilities to prevent future recurrences.

    JFrog Platform support for these operational efficiencies includes:

    1. Product Readiness: making sure products can be consumed by the government accreditations such as FedRamp, FISMA or getting positioning documents to pass audits or gaining Authority to Operate (ATO)
    2. Product Alignment: The government procures software based on how well the product meets the criteria and guidelines met by the product rather than the capabilities, henceforth, the product needs to align its capabilities with the policies.

    JFrog addresses alignment to core guidelines NIST 800-218 and NIST 800-171 along with FIPS, NSM-8 packaging of Executive Order for IC communities.

    Executive Order 14028

    Executive Order 14028 (EO 14028) on improving the Nation’s Cybersecurity requires federal civilian agencies to establish plans to drive the adoption of a Zero Trust Architecture. EO 14028 directed NIST to issue guidance “Identifying practices that enhance the security of the software supply chain”. NIST defines the best practices on development frameworks so agencies can avoid hacks such as SolarWinds, and log4j vulnerabilities and how to avoid nefarious artifacts that get into public repositories by a secure curation process that integrators are building into products.

    Executive Order 14028

    The Office of Management and Budget (OMB) in adherence with NIST guidelines, is now asking every piece of software that the government consumes needs to be attested by the software producer. The Cybersecurity and Infrastructure Security Agency (CISA) is now the arbitrator mandating dates when agencies need to produce the attestation letter – six months after the common form was approved. The NSM-8 National Security Memorandum implements the cybersecurity requirements of EO 14028 for National Security Systems (NSS) – networks across the U.S. Government that contain classified information or are otherwise critical to military and intelligence activities.

    Why Choose the JFrog Software Supply Chain Platform?

    The JFrog Software Supply Chain Platform provides government agencies with the toolkit to navigate the crossroads of DevOps innovation and NIST SP 800-218, SSDF regulatory compliance. The JFrog Software Supply Chain Platform oversees the complete software development lifecycle, from code development to production. Our security-first approach has taken FISMA, NIST SP 800-161.r1, NIST SP 800-171 (CMMC) standards into consideration.

    The JFrog Software Supply Chain Platform is a single system of record that powers organizations to build, manage, and distribute trusted software quickly and securely in a unified platform. The integrated advanced security features help identify, protect, and remediate against known and unknown security threats and vulnerabilities.

    The JFrog Platform Support of the NIST SP 800-218 Practice AreasThe JFrog Platform Support of the NIST SP 800-218 Practice Areas

    JFrog Cyber Security Research Team

    JFrog’s dedicated team of security engineers and researchers is committed to advancing software security through the discovery, analysis, and exposure of new security vulnerabilities and attack methods.

    They respond promptly with deep research, rapidly updating our vulnerability database, and disclosing new CVEs as a registered CNA (CVE Numbering Authority). Their research enhances the CVE data and advanced algorithms used in the JFrog Platform, providing more scanning capabilities, CVE details, context, and developer step-by-step remediation.

    Learn how JFrog can be your NIST SP 800-218 compliance partner for your software development.


 Products

  • The JFrog Software Supply Chain Platform
    JFrog provides the Federal, Civilian, and DoD sectors with a holistic, full-context software supply chain platform that ensures source-to-edge security and deep, granular defense against known and unknown threats. The JFrog platform ensures the completeness of your security data, automating seamless workflows to deliver proactive protection throughout your entire software development life cycleEnsure mission-critical infrastructure and components are always available to your development teams anywhere in the world.

    The JFrog Software Supply Chain Platform is a fully automated DevSecOps solution for distributing trusted software releases from code to production. It's a highly scalable, open, and flexible solution that supports the software supply chain's most popular package technologies and DevOps ecosystem tools. It provides full traceability from development to all deployment environments, including ML models, edge devices, cloud, and production data centers. JFrog combines deep binary analysis, contextualized prioritization, unified policy enforcement, and protection spanning from code to edge, delivering a comprehensive, multi-layered approach to securing the software supply chain that differentiates it from disjointed point solutions.

    Use JFrog to bring AI technology and ML models into your secure software development lifecycle to deliver AI-infused applications at scale. Utilize JFrog's integrated security solutions to intelligently identify software supply chain security issues that attackers use to compromise applications and breach systems and networks. 


    With adherence to NIST SP 800-218 and other standards, JFrog equips your teams to deploy trusted software rapidly and with the utmost confidence in your compliance and security, including advanced SBOM generation. 

    ...

  • JFrog Application Security Solution

    Intelligently deliver secure software at speed and scale with the industry’s only DevOps-centric security solution. It’s application security that finally unifies developers, operations, and security teams to safeguard the entire software supply chain in a holistic, hybrid, multi-cloud platform. We protect your application software from the known and unknown and give you the confidence to deliver trusted software releases. JFrog has a software supply chain platform to manage and secure your artifacts against myriad attack vectors across the software supply chain. We arm your security, operations, and development teams to defend your entire software supply chain from source to edge. JFrog delivers a seamless shift left developer experience from holistic DevOps-centric security built-in to developer workflows throughout the SDLC.

    JFrog’s differentiated approach is to deliver a unified platform that bridges the gap between Developers, DevOps, and Security teams, driving a single source of truth for software supply chain security. JFrog’s tools and research focus on the binary level, revealing issues not visible in the source code alone, and providing a full picture of any impact or point of exploitation for faster remediation.

    We offer the following application security capabilities:

    • Enhanced Software Composition Analysis (SCA)
    • Static Application Security Testing (SAST)
    • Malicious Package Detection
    • ML Model Scanning
    • Open Source License Compliance
    • Open Source Software Firewall
    • Open Source Software (Package) Catalog
    • CVE Prioritization and Applicability Analysis
    • Operational Risk Policies
    • Automated SBOM Generation
    • Secrets Detection
    • IaC Security Scanning
    ...


Contact this Exhibitor/Sponsor

Type your information and click "Send Email" to send an email to this exhibitor. To return to the previous screen without saving, click "Reset".