Home >>
Resources >> Zebra Defends Its Attack
Surface from All Angles
with HackerOne
Zebra Defends Its Attack
Surface from All Angles
with HackerOne
As a world leader in digital products, solutions,
and software, Zebra Technologies enables
businesses of all sizes to connect data, assets,
and people intelligently. With a mission to scale,
Zebra turned to HackerOne to help the company
shift left by moving security checks as early and
as often in the software development life cycle
(SDLC) as possible. The end goal? To defend and
arm its security program from every angle.
Key Takeaways
- Before Challenges
Slow, traditional pentesting with insufficient reports led to
gaps in testing the attack surface
Security was not included early enough in development,
leading to developers working separately from security
No formal process for reporting vulnerabilities, exposing
the company to more risk
Business charter from the CEO and CISO to bring unity
across siloed security functions
- Security Goals
Gain agility and speed with continuous testing
Work with a diverse bench of security research experts
Close the gap by taking control of 100% of the
attack surface
Establish a feedback loop to improve processes earlier in
the software development life cycle (SDLC)
- TPlatform Solutions
• HackerOne Pentest: Penetration Testing as a Service
• HackerOne Response: Vulnerability Disclosure
Program (VDP)
• HackerOne Bounty: Private Bug Bounty
• HackerOne Challenge: Time-bound security testing
• Advisory Services: Triage, remediation, and
custom reporting
- With such success and leadership support, Zebra plans to continue to expand its
security program. Assets are regularly added to the scope of the VDP to help keep the
program fresh. They also harden what goes into the bug bounty so that they can raise
bounties and stand out as a marquee program for hackers.
I will receive information, tips, and offers about Office and other Technology Trends products
and services. Privacy
Statement.
White Paper from
Technology Trends
* - marks a required field