New Palo Alto solution secures cloud apps in pre-production

The new tool identifies and remediates critical risks before deployment—without disrupting development workflows.

 


Palo Alto Networks® (NASDAQ: PANW) has unveiled Cortex® Cloud™ Application Security Posture Management (ASPM), a new security module designed to prioritize prevention by intelligently blocking risks before applications reach production.

This solution enables security and development teams to remediate vulnerabilities in cloud and AI-powered applications up to ten times faster, with greater efficiency and at lower cost.

Integration with AppSec Partners.

The module features an open AppSec partner ecosystem, integrating data from third-party code scanners into a centralized platform for comprehensive visibility.

By combining native insights with inputs from external vendors—including Black Duck, Checkmarx, GitLab, HashiCorp, Semgrep, Snyk, and Veracode—organizations can significantly enhance their security posture without requiring developers to change their existing tools.

This innovation is built on Cortex Cloud, a platform that unifies Cloud-Native Application Protection Platform (CNAPP) capabilities with advanced real-time detection and response (CDR). Palo Alto Networks customers can leverage AI-ready data—from code to SOC—transforming security operations across the entire lifecycle.

Key ASPM Advantages

Sarit Tager, Vice President of Product Management at Palo Alto Networks, stated:

“As AI-generated code compresses application development from months to hours, security must evolve to keep pace with innovation. Equipped with an industry-leading CNAPP, best-in-class CDR, and now a prevention-first ASPM, Cortex Cloud delivers the most comprehensive approach to cloud security—automatically stopping risks before they reach production with full lifecycle visibility.”

Key benefits of Cortex Cloud ASPM include:

Proactive prevention:
Stops security issues from reaching production by using application and business context to apply targeted protections—without slowing development.

Focus on real risks:
Identifies critical threats without generating noise or forcing developers to change tools, by integrating native and third-party data with complete context.

Automated remediation:
Eliminates manual fix processes by automating remediation across every phase of the application lifecycle.

Industry Perspective.

Katie Norton, Research Director for DevSecOps and Software Supply Chain Security at IDC, highlighted:

“Application risks making it to production remain a persistent challenge for security teams, continuing to expose organizations. As development accelerates, the challenge is not just identifying vulnerabilities—but focusing on those that pose real risk. By connecting application security with the real-time threat landscape, Palo Alto Networks’ Cortex Cloud ASPM can help organizations stop threats faster and operate more efficiently.”

Cortex Cloud ASPM is currently in early access, with general availability expected in the second half of 2025.


Share:
Hosting Web
Most Read