Today’s post was written by SAFECode Executive Director Howard A. Schmidt.

I am pleased to officially welcome Huawei, NetApp, Sonatype and Veracode as SAFECode’s newest members. Each of these companies brings unique perspective and expertise to our efforts and we look forward to working with them.

They will join current SAFECode members in collaborative work across a number of interesting and important areas. These include a review of secure development practices in an Internet of Things (IoT) environment, sharing practices around the management of third-party software components, and looking at ways to support customers in their assessment of security for the software they purchase. We also continue to support existing SAFECode work, such as our popular training initiative and extending the use of our Fundamental Practices for Secure Software Development work.

You can learn more about our new members by visiting the links below. If you’d like to learn more about joining SAFECode, you can find more information here or contact us with any questions.


Huawei Huawei is a leading global ICT solutions provider. Through our dedication to customer-centric innovation and strong partnerships, we have established end-to-end capabilities and strengths across the carrier networks, enterprise, consumer, and cloud computing fields.


nalogo1 NetApp creates innovative storage and data management solutions that deliver outstanding cost efficiency and accelerate business breakthroughs.


sonatype Sonatype focuses on the challenge of creating a secure software supply chain. Sonatype uniquely identifies all components and integrates data about known security, license and quality risks into the tools developers use every day, so risky components can be easily avoided and defects repaired early in the development process.


veracode Veracode delivers the most widely used cloud-based service for securing web, mobile, legacy and third-party enterprise applications. By identifying critical application-layer threats before cyber-criminals can find and exploit them, Veracode helps enterprises deliver innovation to market faster — without sacrificing security.