API Discovery and Security™ is a cloud-based Software as a Service (SaaS) platform that allows organizations to find their hidden/embeded APIs through source code and network analysis, benchmark APIs with industry leading standards (such as OWASP and PCI) and monitor APIs on regular basis for security and legal risk management.
API Discovery and Security™ platform is available from AWS Marketplace for enterprises that are looking to build an end-to-end API Governance program. This platform is readily available as a single-tenant SaaS (on-premises/private cloud) solution as well as multi-tenant SaaS (shared/public cloud) solution in AWS Marketplace: https://aws.amazon.com/marketplace/pp/B08TRPVH5X.
AWS Marketplace customers can purchase subscriptions to the platform, and directly integrate their existing CICD pipelines/DevSecOps tools with the platform’s API marketplace, dashboards, scanning agents, and IDE plugins. Customizable platform subscriptions with specific enterprise needs are also available through TeejLab’s enterprise sales team. Ultimately, API Discovery and Lifecycle Manager™ can help enterprises achieve their digital and data monetization objectives without having to compromise their data privacy, security , and integrity obligations.
An overview of the platform can be viewed here: https://www.youtube.com/watch?v=BWP3QlxfK4k
Technical Capabilities of the Platform:
TeejLab’s API Governance platform allows organizations to find and test Public/Open APIs, benchmark Private/Internal APIs with industry leading standards, and monitor APIs regularly for security and legal risk management . Users can perform automated security tests using OWASP top-10 and CIS top-20 frameworks to find and mitigate API-specific vulnerabilities.
This can help enterprises identify and address legal risks associated with achieving compliance manage certain legal risks (such as compliance with GDPR, HIPPA, EU-US Privacy Shield, SOC2, PCI-DSS, ISO27001) and security threats (such as unauthorized access and SQL injection problems leading to data breaches) even before APIs are integrated with various SaaS/cloud products and services. Enterprises can perform Software Composition Analysis and Network Analysis to discover their hidden/embedded/shadow APIs. Users can generate security and compliance reports (in pdf, CSV, etc.) to collaborate with different stakeholders across organizations, and monetize their APIs in a seamless fashion.