Anchore company logo

The profile is currenly unclaimed by the seller. All information is provided by CB Insights.

anchore.com

Founded Year

2015

Stage

Series B | Alive

Total Raised

$47.5M

Last Raised

$20M | 2 yrs ago

Mosaic Score

+20 points in the past 30 days

What is a Mosaic Score?
The Mosaic Score is an algorithm that measures the overall financial health and market potential of private companies.

About Anchore

Anchore makes it possible to manage, secure, and troubleshoot containers continuously, without sacrificing speed. The platform delivers a process that allows container development and deployment to be secure from the start, by ensuring that the contents of a user's containers match the standards that they define. The tools are transparent to developers, visible to production, accessible to security, and all designed for the fluid nature of containers.

Anchore Headquarter Location

800 Presidio Avenue Suite B

Santa Barbara, California, 93101,

United States

Predict your next investment

The CB Insights tech market intelligence platform analyzes millions of data points on venture capital, startups, patents , partnerships and news mentions to help you see tomorrow's opportunities, today.

Research containing Anchore

Get data-driven expert analysis from the CB Insights Intelligence Unit.

CB Insights Intelligence Analysts have mentioned Anchore in 1 CB Insights research brief, most recently on Jan 29, 2020.

Expert Collections containing Anchore

Expert Collections are analyst-curated lists that highlight the companies you need to know in the most important technology spaces.

Anchore is included in 2 Expert Collections, including Supply Chain & Logistics Tech.

S

Supply Chain & Logistics Tech

3,127 items

Companies offering technology-driven solutions that serve the supply chain & logistics space (e.g. shipping, inventory mgmt, last mile, trucking).

C

Cyber Defenders

28 items

Our selected startups are early to mid-stage high-momentum companies pioneering technology with the potential to transform cybersecurity.

Latest Anchore News

Rezilion launches Dynamic SBOM for software supply chain devsecops

May 17, 2022

Rezilion’s new Dynamic SBOM (software bill of materials) works with its devsecops platform and is designed to help security teams understand how software components are being executed in runtime. Veracode Aiming to help organizations manage security across the software development life cycle (SDLC), devsecops platform developer Rezilion is launching Dynamic SBOM (software bill of materials), an application designed to plug into an organization's software environment to examine how multiple components are being executed in runtime, and reveal bugs and vulnerabilities. "Rapid digital transformation has created a situation where the software attack surface for any organization is constantly changing," says Liran Tancman, co-founder and CEO of Rezillion. "We need to think of more holistic, fluid ways of managing software vulnerabilities. With the introduction of our Dynamic SBOM, this is Rezilion's first step in a series of product announcements we are preparing later this summer to provide customers with exactly this kind of a solution." How dynamic and static SBOMs differ A static SBOM can be defined as a list of all the open-source and third-party components present in a software's codebase. Also included in SBOMs are the versions of the components used, licenses governing those components, and their patch status. The purpose of the SBOMs is to help security teams better assess risks associated with software components. Static SBOMs allow for a one-time analysis as opposed to a dynamic SBOM's continuous/always-on design. A dynamic SBOM, in addition to listing the components present in a software environment, reveals those executed at runtime and details the many dependencies they have. "Unlike static SBOMs, a dynamic SBOM reveals if and how software components are being executed in runtime, providing organizations with a solution to understand not only where bugs exist — but also whether or not they could be exploited by attackers," says Tancman. Additionally, Tancman adds, while a static SBOM traditionally yields an inventory of only one type of software component, Rezilion's Dynamic SBOM sees all software components across development and production. SBOM maps software environment Rezilion's SBOM is deployed as a plugin to the company's existing devops tools and cloud infrastructure. Rezilion's core technology then reverse-engineers and maps the client's software environment, dynamically tracking the usage, provenance, behavior, and exposure of each component in detail, and then mapping this to runtime execution for improved attack surface visibility. Dynamic SBOM is a relatively new concept, building on the popularity of SBOMs in software supply chain security management. Tancman says that he is not aware of other dynamic SBOMs that are  similar to Rezilion's, though he acknowledges that companies including Anchore and Fossa also offer SBOMs. Anchore, for example, recently released Anchore Enterprise 4.0 , designed to identify dependencies in source code repositories and monitor software development for SBOM "drift" that can include malware or compromised software. In addition, Deepfence has launched ThreatMapper 1.3.0 , a new version of its open-source threat intelligence platform, which includes runtime SBOM monitoring. How Rezilion's SBOM distinguishes itself Rezilion claims to differentiate its SBOM with a host of features including bug identification and resolution, vulnerability scanning, devopment to production cycle implementation and result-report solutions. Capabilities include: Dynamic inventory: Continuous tracking and management of the software environment as changes are being introduced; Full Stack, Full Cycle Coverage: Scans software components across development and production, on-premesis and cloud, hosts, containers, and IoT devices; Dynamic search: searches and pinpoints vulnerable components across files, hosts, containers, and applications; Exportable formats (premium version): sharing result with customers using a formal VEX (vulnerability exchange) or Cyclone DX document. Next read this

Anchore Web Traffic

Rank
Page Views per User (PVPU)
Page Views per Million (PVPM)
Reach per Million (RPM)
CBI Logo

Anchore Rank

  • When was Anchore founded?

    Anchore was founded in 2015.

  • Where is Anchore's headquarters?

    Anchore's headquarters is located at 800 Presidio Avenue, Santa Barbara.

  • What is Anchore's latest funding round?

    Anchore's latest funding round is Series B.

  • How much did Anchore raise?

    Anchore raised a total of $47.5M.

  • Who are the investors of Anchore?

    Investors of Anchore include Menlo Ventures, SignalFire, Andreas Von Blottnitz and e.ventures.

  • Who are Anchore's competitors?

    Competitors of Anchore include RapidFort and 1 more.

You May Also Like

Snyk Logo
Snyk

Snyk is an open-source security platform designed to help software-driven businesses enhance developer security. Snyk's dependency scanner finds, prioritizes, and fixes vulnerabilities and license violations in open source dependencies and container images.

W
Wiz

Wiz operates as a cloud security company that allows companies to secure their cloud infrastructure at scale. Wiz delivers a contextual risk assessment of a client's cloud with the aims of enabling a reduction in security alerts, a clear action plan, and cloud hygiene at scale.

Sysdig Logo
Sysdig

Sysdig provides an intelligence platform to deliver monitoring, security, and troubleshooting in a microservices-friendly architecture used by a community of developers, administrators, and other IT professionals looking for visibility into systems and containers.

Aqua Security Logo
Aqua Security

Aqua Security enables enterprises to secure their virtual container environments from development to production, accelerating container adoption and bridging the gap between DevOps and IT security. Aqua's Container Security Platform provides full visibility into container activity, allowing organizations to detect and prevent suspicious activity and attacks in real time. Integrated with container lifecycle and orchestration tools, the Aqua platform provides transparent, automated security while helping to enforce policy and simplify regulatory compliance.

Cycode Logo
Cycode

Cycode is a source code visibility and protection company. Cycode utilizes its Source Path Intelligence engine to deliver comprehensive visibility into all of an organization's source code and automatically detect and respond to anomalies in access, movement, and usage.

Lacework Logo
Lacework

Lacework is a late-stage technology firm that develops a complete security platform for the entire IT infrastructure, from DevOps and orchestration environments to cloud and hybrid workloads. Lacework is designed to self-adapt to the cloud's ever-changing configurations to provide visibility and intrusion detection that helps enterprises keep their data and resources safe. The firm serves a wide variety of industries that require intrusion detection. Lacework was founded in 2015 and is based in San Jose, California.

Discover the right solution for your team

The CB Insights tech market intelligence platform analyzes millions of data points on vendors, products, partnerships, and patents to help your team find their next technology solution.

Request a demo

CBI websites generally use certain cookies to enable better interactions with our sites and services. Use of these cookies, which may be stored on your device, permits us to improve and customize your experience. You can read more about your cookie choices at our privacy policy here. By continuing to use this site you are consenting to these choices.