You can also browse Wikipedia:Featured articles and Wikipedia:Good articles to find examples of Wikipedia's best writing on topics similar to your proposed arti
Where to get help
How to improve a draft
You can also browse Wikipedia:Featured articles and Wikipedia:Good articles to find examples of Wikipedia's best writing on topics similar to your proposed article. Improving your odds of a speedy review To improve your odds of a faster review, tag your draft with relevant WikiProject tags using the button below. This will let reviewers know a new draft has been submitted in their area of interest. For instance, if you wrote about a female astronomer, you would want to add the Biography, Astronomy, and Women scientists tags. Editor resources
|
The following Wikipedia contributor may be personally or professionally connected to the subject of this page. Relevant policies and guidelines may include conflict of interest, autobiography, and neutral point of view.
|
| Type | Private |
|---|---|
| Industry | Cybersecurity |
| Founded | 2013 |
| Founders | Greg Anderson Matt Tesauro |
| Headquarters | Austin, Texas, U.S. |
Key people | Greg Anderson (CEO) Matt Tesauro (CTO) |
| Products | DefectDojo (open source) DefectDojo Pro |
| Website | defectdojo |
DefectDojo is an open-source application security and vulnerability management platform. Originally created in 2013 at Rackspace by Greg Anderson and Matt Tesauro, the project was publicly released as open-source software in 2015.[citation needed] The platform enables DevSecOps teams to aggregate, deduplicate, and manage security findings from more than 200 security tools, including static application security testing (SAST), dynamic application security testing (DAST), and software composition analysis (SCA) scanners.[1] DefectDojo is an OWASP Flagship project.[1]
DefectDojo Inc., headquartered in Austin, Texas, develops and maintains both the open-source edition and a commercial version called DefectDojo Pro.[2]
DefectDojo originated in 2013 when Greg Anderson, then an intern working under Matt Tesauro at Rackspace, sought to address the difficulty of consolidating security testing results from multiple tools into a single platform.[3][4] Anderson developed the initial tool while working on Rackspace's application security team, and the project was released as open-source software in 2015 under the BSD 3-Clause License.[5]
After leaving Rackspace, Anderson and Tesauro worked together at Pearson, where they used DefectDojo to scale the company's application security program from scanning 44 applications per year to 414, an increase of 849 percent.[3]
DefectDojo was adopted as a project of the Open Worldwide Application Security Project (OWASP) Foundation and was designated a Flagship project, the highest project tier within the organization.[1] The project is featured in the OWASP Developer Guide as a recommended tool for vulnerability management.[6]
Anderson incorporated DefectDojo Inc. (formerly known as 10Security) and launched DefectDojo Pro, a commercial edition offering enterprise scalability, a redesigned user interface, and additional integrations with platforms such as ServiceNow, GitHub, GitLab, and Azure DevOps.[2]
In September 2024, DefectDojo raised $7 million in a Series A funding round led by Iolar Ventures and Aspenwood Ventures.[2]
DefectDojo is written in Python using the Django web framework.[5] The platform uses a relational database (PostgreSQL or MySQL) for data storage and Celery for asynchronous task processing, including automated deduplication and synchronization with issue trackers.[6][5]
The platform's data model is organized around four core components: products, engagements, tests, and findings.[6] Security scan results can be imported from more than 200 tools, and the platform applies deduplication algorithms to reduce duplicate findings across different scanners.[1] DefectDojo provides a REST API for integration with CI/CD pipelines and other automation workflows.[5]
Key capabilities include:
The open-source edition, released under the BSD 3-Clause License, provides the core vulnerability management platform including multi-tool aggregation, deduplication, remediation tracking, and API access.[5][1] It is self-hosted and can be deployed using Docker or Kubernetes.[5]
DefectDojo Pro is the commercial edition, available as a cloud-hosted software as a service (SaaS) or self-hosted deployment.[2]
DefectDojo is recognized on the Open Source Security Index as one of the most popular open-source security projects on GitHub.[1] As of February 2026[update], the project's GitHub repository has more than 4,500 stars and over 400 contributors.[5]
Category:Computer security software Category:Free security software Category:Free software programmed in Python Category:Software using the BSD license Category:Software companies based in Texas Category:Companies based in Austin, Texas Category:American companies established in 2013 Category:2013 software
Informasi ini disarikan dari Wikipedia dan disajikan kembali untuk tujuan edukasi. Konten tersedia di bawah lisensi CC BY-SA 3.0. Kami tidak bertanggung jawab atas ketidakakuratan data yang bersumber dari kontribusi publik tersebut.
- provide significant coverage: discuss the subject in detail, not just brief mentions or routine announcements;
- are reliable: from reputable outlets with editorial oversight;
- are independent: not connected to the subject, such as interviews, press releases, the subject's own website, or sponsored content.
Please add references that meet all three of these criteria. If none exist, the subject is not yet suitable for Wikipedia.