WhiteSource | 20 Most Promising Open Source Solution Provider - 2016
WhiteSource: Adoption of Open Source Components Simplified
CIOReview
  • About Us
About UsConferencePartner With Us
  • Technology
      1. ARTIFICIAL INTELLIGENCE
      2. AUDIOVISUAL
      3. BLOCKCHAIN
      4. BUSINESS INTELLIGENCE
      5. CLOUD
      6. DATA ANALYTICS
      7. DEVOPS
      8. DIGITAL TRANSFORMATION
      9. DIGITAL TWIN
      10. LOW CODE NO CODE PLATFORM
      11. NETWORKING
      12. ROBOTIC PROCESS AUTOMATION
      13. SECURITY
  • Industry
      1. CONTACT CENTER
      2. EDUCATION
      3. HEALTHCARE
      4. LEGAL
      5. MANUFACTURING
      6. PUBLIC SECTOR
      7. RETAIL
      8. TELECOM
  • Solutions
      1. ASSET MANAGEMENT
      2. CUSTOMER EXPERIENCE MANAGEMENT
      3. CYBER SECURITY
      4. DATA CENTER
      5. DOCUMENT MANAGEMENT
      6. ELECTRONIC DATA INTERCHANGE
      7. ENTERPRISE DATA MANAGEMENT
      8. ENTERPRISE RESOURCE PLANNING
      9. ENTERPRISE RISK MANAGEMENT
      10. ENTERPRISE-GRADE WEB DATA SOLUTIONS
      11. FACILITY MANAGEMENT
      12. FIELD SERVICE
      13. IDENTITY AND ACCESS MANAGEMENT
      14. INFRASTRUCTURE
      15. IT SERVICE MANAGEMENT
      16. MANAGED IT SERVICES
      17. PAYMENT AND CARD
      18. PROJECT MANAGEMENT
      19. SOFTWARE TESTING
      20. STORAGE
      21. VIDEO SOLUTIONS
      22. WORKFLOW
  • Platforms
      1. ACUMATICA
      2. AMAZON
      3. IBM
      4. MICROSOFT
      5. ODOO
      6. ORACLE
      7. SAGE
      8. SAP
      9. SERVICENOW
  • Functions
      1. COMPLIANCE
      2. CONTRACT MANAGEMENT
      3. LOGISTICS
      4. PROCUREMENT
      5. SALES AND MARKETING
      6. SUPPLY CHAIN
  • Leadership Perspectives
  • Innovation Insights
  • Research
  • Magazines
  • News
  • CXO Awards
Menu
  • US
    • US
    • APAC
    • LATAM
    • CANADA
    • EUROPE
CIOREVIEW >> Opensource >> WhiteSource

WhiteSource has been recognized by CIOReview Magazine as the recipient of “20 Most Promising Open Source Solution Providers - 2016,” based on our proprietary methodology, reflecting its position in the industry. This profile has been developed by the CIOReview research and editorial team based on insights from an interview with Rami Sass, Co-founder & CEO.

WhiteSource
Adoption of Open Source Components Simplified

WhiteSource

Rami Sass, Co-founder & CEO
WhiteSource’s journey to create an open source security and license compliance management solution started with its founders’ personal experience. They found themselves in a tough spot 8 years ago, during the acquisition of their previous company, Eurekify. The technology due diligence process required them to submit an inventory report, detailing the open source components in their software. “This became a very complex and painful affair,” says Rami Sass, Co-Founder and CEO, WhiteSource.

“Manual tracking proved too inaccurate for the due diligence process. While code scanners, like Black Duck and Palamida, were the only automated solutions back then and were too expensive, time-consuming and labor intensive,” explains Sass. After that ordeal, the founders decided they would develop a solution to help software development organizations manage their open source usage automatically and effortlessly. And so WhiteSource was born.

“Today, 50-80 percent of a typical commercial software product consists of open source components, and open source usage is only rising. After all, why should organizations invest resources re-inventing the wheel, when they can focus on developing new innovative technologies that put them ahead of their competition,” remarks Sass. “However, companies must track their open source usage, to detect vulnerable open source components or license compliance issues.”

Typically, when issues are discovered late, it’s often in pre-release, or even post-deployment. At these stages, fixing or replacing components is a complex, painful and costly process. Also, more hackers are becoming aware of the ‘potential’ in exploiting security vulnerabilities in open source components, as one vulnerability can be translated into thousands of victims, if not more. We just need to look at the damage Heartbleed caused. Therefore, you need to detect vulnerabilities affecting your open source vulnerabilities as early as possible.

“Software development teams invest heavily in application security with testing tools like SAST and DAST. These are great for detecting proprietary code security vulnerabilities, but they cannot do the same when it comes to open source. Therefore, unless you’re using security tools designed for open source, you’re putting your products at risk.”

Unless you’re using security tools designed for open source, you’re putting your products at risk


WhiteSource enables software development and security teams to shift left their open source management to the earliest stages of development by integrating with repositories, build tools and CI servers, to continuously monitor the open source components in their software. WhiteSource even offers a unique tool for developers, enabling them to identify problematic components while they’re browsing online repositories like GitHub, Maven Central etc. Thus, developers are alerted on issues before they even download a component.

WhiteSource automates the entire open source management process: security, license compliance, bugs tracking, quality, version and more. It integrates with your software development lifecycle (SDLC) to detect open source components once they’re added to your repository or build. It also provides real-time alerts, offers detailed remediation options for problematic open source components and enforces policies automatically at every stage of your SDLC. Therefore, you can prevent components with copyleft licenses, such as the GNU GPL family, from ever entering your products. WhiteSource also generate a wide range of up-to-date reports within minutes.

Open source is everywhere, and as a famous man once said ‘If you don’t think you’re using open source, you are. And if you think you are, you’re using more than you realize’. And to be honest, if you’re required to develop quality software fast, the benefits open source offers are simply too good to refuse. Organizations shouldn’t be afraid of open source usage, but they should take the appropriate steps to manage it properly.

Organizations have every reason to embrace open source with open arms. Executives just need to take the initiative and promote effective open source management within their organizations.

20 Most Promising Open Source Solution Providers - 2016

Company
WhiteSource

Headquarters
New York City, NY

Management
Rami Sass, Co-founder & CEO

Description
Offers the only all-in-one licensing, security, quality and reporting solution for managing open source components

20 Most Promising Open Source Solution Providers - 2016

I agree We use cookies on this website to enhance your user experience. By clicking any link on this page you are giving your consent for us to set cookies. More info

CIOReview
Follow on LinkedIn

About

  • Home
  • About Us
  • Partner With Us

Stay Connected

  • Subscribe
  • Newsletter
  • Sitemap

Contact Us

  • editor@cioreview.com
  • sales@cioreview.com
  • marketing@cioreview.com

Legal

  • Editorial Policy
  • Privacy Policy
  • Terms of Use

© 2026 CIOReview. All rights reserved. Headquartered in Fort Lauderdale, FL, USA.

 

companies_description
This content is copyright protected

However, if you would like to share the information in this article, you may use the link below:

https://opensource.cioreview.com/vendor/2016/whitesource