Veracode Bolsters Board of Advisors, Adds Three Security Veterans


BURLINGTON, MA--(Marketwire - September 10, 2007) - Veracode Inc., provider of the industry's first on-demand application security review solutions, today announced the appointment of three security veterans to the Veracode Board of Advisors. Recognizing the importance of broad industry support behind developing more secure software, Veracode has enhanced its already notable advisory board by adding three executives with extensive experience in enterprise security and managing operational risk.

These industry experts were selected to guide the Company's solution roadmap, organizational strategy and execution. The new board members include:

--  John Meakin, Group Head of Information Security, Standard Chartered
    Bank
--  Paul Simmonds, Chief Information Security Officer, ICI
--  Bill Wray, Vice Chairman and Chief Information Officer, Citizens
    Financial Group, Inc.
    

John Meakin

John Meakin is a specialist in information systems security with more than 18 years of experience. Since mid-2002, he has led a global information security team at Standard Chartered Bank. He has also provided information security consultancy support to a number of blue-chip clients aimed at improving their systems security and effectiveness. Dr. Meakin was also previously responsible for leading systems security policy and strategy for Reuters, The Royal Bank of Scotland, Swiss Bank Corporation, and the investment-banking arm of Dresdner Bank. Dr. Meakin earned a Ph.D. in Experimental Solid State Physics from Cambridge University.

"Today, only a small percentage of applications in an enterprise inventory are tested regularly for security because testing is expensive and the skilled resources required are not widely available," Meakin said. "Veracode provides a compelling on-demand business model to cost-effectively test a larger percentage of the entire application inventory. More testing is a necessary response to the increased threats to web-facing and enterprise applications."

Paul Simmonds

Paul Simmonds joined ICI in 2001 when he was recruited to manage information security for the U.K. chemical company. Simmonds also spent seven years with Motorola, as global information security manager and then CSO with a European web hosting company prior to joining ICI in 2001.

Simmonds was 2005 CSO of the year (SC Magazine European Awards) and listed in 2004 & 2005 global top 50 most powerful people in networking by the U.S. publication Network World Fusion for his work with the Jericho Forum, which he co-founded and currently serves as an elected board member.

"In today's world, it is essential that enterprises trust the quality of the code being supplied to them," Simmonds said. "Veracode will provide an on-demand platform that enables distributed business ecosystems to have consistent security across a partner ecosystem to protect their brand."

Bill Wray

Bill Wray is Vice Chairman and Chief Information Officer at Citizens Financial Group, Inc., and manages the Manufacturing Group, the enterprise technology and operations arm of Citizens. Wray is a member of the Executive Management Committee, the company's most senior management group. In addition to technology and operations, his banking experience includes senior roles in credit and risk management. Wray also served as an Army officer and worked in commercial real estate investment prior to beginning his banking career at Shawmut Bank in 1990.

"Scanning binaries helps us to fully understand the unknown risk associated with applications," Wray said. "Veracode's scanning technology enables deeper analysis of the security of the application and provides organizations with a greater ability to control risk and implement compensating controls."

"In a market as dynamic as application security, it's imperative that Veracode work with seasoned executives who bring unique industry perspectives and understand how the security landscape is truly changing," said Matt Moynahan, president and chief executive officer of Veracode. "The participation of each new member of our advisory board will enhance Veracode's ability to be a trusted, independent security services provider to the software industry."

About Veracode

Veracode is the industry's first provider of automated, on-demand application security solutions. Created by a world-class team of application security experts from @stake, Guardent, VeriSign and Symantec, the company delivers services to identify software flaws introduced through coding errors or malicious intent. The Veracode SecurityReview™ solution uses patented binary code analysis that is uniquely able to inspect entire application inventories, including components, and does not require companies to expose their valuable source code. Enterprises can now protect their intellectual property while preventing attacks allowed by vulnerabilities in applications.

As the most accurate and comprehensive solution available, Veracode makes it simple and cost-effective to implement application security best practices and reduce operational costs related to manual reviews. Whether a company is developing applications internally, purchasing software or integrating code from partners, Veracode SecurityReview provides insight to the security level of software. Outsourcing code analysis to Veracode is the easiest way to secure your software. With a pragmatic approach to application security, Veracode helps you fix what matters most to your business.

For more information about Veracode, please visit www.veracode.com.