SlideShare a Scribd company logo
1 of 5
Download to read offline
There continues to be a major drive
for governance around the quality,
maintainability, and reliability of applications
delivered to the U.S. Federal Government,
yet all government departments and
agencies are expected to execute
their mandates with fewer budget
dollars. CAST’s U.S. Federal group
helps government agencies maximize IT
investments and optimize performance
through the use of proven technologies and
best practices.
IT Vendor Transparency
Federal IT programs are increasingly
mandating standards to application
development and sustainment vendors as
part of the acquisition process. However,
program offices often face challenges to
develop standard contracting language that
ensures software code quality checking
becomes “business as usual” for every
delivery to government. Additionally,
programs are challenged to provide
unambiguous guidance to their systems
integrator partners on the standards that will
be used to assess delivered applications.
The applied use of application, program,
or enterprise-level Software Analysis
and Measurement promotes common
understanding for government and
providers on the current and ongoing
delivery quality of the code. This visibility
improves outcomes, with a 50% lower
likelihood of testing or deployment defects
thus reducing production risks and reducing
costs for fixes, retesting, and rework.
Software Assurance
In the report Cyber Security: A Crisis of
Prioritization, the President’s Information
Technology Advisory Committee summed
up the problem of non-secure software as
follows: “Vulnerabilities in software that are
introduced by mistake or poor practices
are a serious problem today.” Applications
designed with solid architectural
fundamentals emphasizing reliability and
resiliency are more difficult to penetrate,
despite the fact that software development
is typically not managed scientifically or with
a rigorous security discipline throughout
the development and sustainment program
management lifecycle.
Poor design results in vulnerabilities that
are often replicated and propagated within
a complex system. Simply performing late-
stage security audits and building firewalls is
not enough—security must be designed and
built into an application and then rigorously
verified multiple times within each and every
release.
CAST’s Software Assurance solution
provides a holistic, system-level assessment
that verifies conformance to requirements
and industry standards.
www.castsoftware.com
North America 373 Park Avenue South New York, NY 10016 Phone:+1 212-871-8330
Questions?
Email us at contact@castsoftware.com
Copyright © 2013 CAST All Rights Reserved
CAST U.S. Federal Solutions
CAST helps government
agencies optimize IT
vendor performance and
reduce IT system risks.
Software Code Quality Checking
Software Code Quality Checking (SCQC)
is an automated analysis of source code
to ensure that the application meets the
stated performance, maintainability, and
usability requirements within program
budget, program schedule, risk, and
other constraints. SCQC complements
Developmental Test & Evaluation (DT&E)
and Operational Test & Evaluation (OT&E)
by identifying defects earlier in the system
development lifecycle (SDLC). Since
SCQC focuses on the structural, and not
functional, aspects of the application,
government testers can concentrate on the
objectives of DT&E and OT&E, as opposed
to finding defects overlooked by the
developer and having to return the product
for resolution and rework. By identifying
and correcting defects earlier, end-users
will see measurable improvements in
the performance of the application and
program executives will see a reduction in
sustainment/maintenance costs.
Program and IT Portfolio
Benchmark
Benchmarking delivers critical benefits for
the enterprise or larger individual Category
1 or 2 programs looking to continuously
improve application development
governance and transparency. First,
benchmarking provides objective
current-state assessments that provide
insight into cost, quality, and cycle time,
external and internal comparison of
quality, and identification of meaningful
gaps that can be improved. Second,
effective benchmarking is a foundation
for transformation since it enables an
organization to easily identify and prioritize
opportunities—by process, vendor,
and cost driver—which, in turn, results
in relevant improvement targets and a
stronger overall business case for the
transformation effort.
Benchmarking initial quality and state of
a portfolio forms the basis for continuous
“The CRASH Report shows that Government, more than any other industry, has the most complex and most difficult
to maintain IT systems. What’s worse is that, in this highly outsourced ecosystem, the system integrators that develop
these systems do not suffer the consequence of these higher sustainment costs – the government does.”
-Dr. Bill Curtis
SCQC ensures
critical systems
meet performance,
reliability, and security
requirements within
budget and other
program constraints.
www.castsoftware.com
North America 373 Park Avenue South New York, NY 10016 Phone:+1 212-871-8330
Questions?
Email us at contact@castsoftware.com
improvement. Ongoing benchmarking
encourages continuous application
development improvement culture as it is
supports regular measurement against an
objective baseline.
We often hear government executives
question how they are performing relative
to similar industry or government organiza-
tions. To meet this need, CAST introduced
Appmarq, the industry’s first software qual-
ity benchmarking capability in 2010. We
gather data from CAST analyses performed
across global industry and public sector IT
organizations and provide normalized data
in support of external benchmarking.
IT Productivity Measurement
The largest opportunity for improving
quality and productivity during application
development is by eliminating the largest
source of waste: 30-50% of development
effort is devoted to rework of defects.
These staggering numbers are driven by
the fact that defects become 10 times
more expensive to fix for each major phase
of the software lifecycle they slip past.
Under these circumstances, quality largely
determines productivity.
One of the most vexing problems in
software engineering is measuring the
amount of progress made in developing
or sustaining a software product. CAST
Application Intelligence Platform (AIP) is
a platform that gives OCIO and Program
executives the visibility and control
needed to quantify quality and progress,
rather than just time spent, so they can
improve business productivity and reduce
IT costs. Productivity without quality is a
waste and, paradoxically, quality without
productivity is expensive! Superior
performance is achieved when both quality
and productivity increase simultaneously.
CAST provides penetrating insight into
application structural quality that is
critical to improve the overall cost of
ownership, business responsiveness, and
dependability of applications.
www.castsoftware.com
North America 373 Park Avenue South New York, NY 10016 Phone:+1 212-871-8330
Questions?
Email us at contact@castsoftware.com
Copyright © 2013 CAST All Rights Reserved
Appmarq provides
normalized industry
data in support of
external benchmarking.
“…a failure to satisfy a non-functional requirement can
be critical, even catastrophic…non-functional require-
ments are sometimes difficult to verify. We cannot write
a test case to verify a system’s reliability… The ability to
associate code to non-functional properties can be a pow-
erful weapon in a software engineer’s arsenal.”
-Diomidis Spinellis, Code Quality: The Open Source Perspective
www.castsoftware.com
North America 373 Park Avenue South New York, NY 10016 Phone:+1 212-871-8330
Questions?
Email us at contact@castsoftware.com
Copyright © 2013 CAST All Rights Reserved
Federal Partnerships
CAST has successfully teamed with Boeing, CSC, Northrop Grumman, Accenture, Keane,
Ingenium, Booz Allen, Lockheed, Raytheon, and Sybase Corporation, among others.
Contract Vehicle
GSA Schedule (GS-35F-0649S)
For examples of contracts and SLA’s, please contact the CAST Federal Practice:
castfed@castsoftware.com
CAST prior performance in Federal contracts includes:

More Related Content

What's hot

Accenture Customer Story_CAST
Accenture Customer Story_CASTAccenture Customer Story_CAST
Accenture Customer Story_CASTCAST
 
How Security Audits Improve Reliability in Kentico 12
How Security Audits Improve Reliability in Kentico 12How Security Audits Improve Reliability in Kentico 12
How Security Audits Improve Reliability in Kentico 12Ray Business Technologies
 
Mobile payments test automation
Mobile payments test automationMobile payments test automation
Mobile payments test automationThinksoft Global
 
Hp arc sight_state of security ops_whitepaper
Hp arc sight_state of security ops_whitepaperHp arc sight_state of security ops_whitepaper
Hp arc sight_state of security ops_whitepaperrickkaun
 
Trust but Verify: Strategies for managing software supplier risk
Trust but Verify: Strategies for managing software supplier riskTrust but Verify: Strategies for managing software supplier risk
Trust but Verify: Strategies for managing software supplier riskTimothy Jarrett
 
Keys to m-payment strategy that reduces risks and improves efficiency
Keys to m-payment strategy that reduces risks and improves efficiencyKeys to m-payment strategy that reduces risks and improves efficiency
Keys to m-payment strategy that reduces risks and improves efficiencyBMI Healthcare
 
Trends in Enterprise Adoption of MDM Features and Capabilities: Excerpt
Trends in Enterprise Adoption of MDM Features and Capabilities: ExcerptTrends in Enterprise Adoption of MDM Features and Capabilities: Excerpt
Trends in Enterprise Adoption of MDM Features and Capabilities: ExcerptKelly Teal
 
Idge dell server convergence2014 qp #1
Idge dell server convergence2014 qp #1Idge dell server convergence2014 qp #1
Idge dell server convergence2014 qp #1jmariani14
 
A Review on Software Fault Detection and Prevention Mechanism in Software Dev...
A Review on Software Fault Detection and Prevention Mechanism in Software Dev...A Review on Software Fault Detection and Prevention Mechanism in Software Dev...
A Review on Software Fault Detection and Prevention Mechanism in Software Dev...iosrjce
 
Ipm executive-summary-vi-federal
Ipm executive-summary-vi-federalIpm executive-summary-vi-federal
Ipm executive-summary-vi-federalJohn McDonald
 
L3 Requirements Eng Overview
L3 Requirements Eng OverviewL3 Requirements Eng Overview
L3 Requirements Eng OverviewIan Sommerville
 
Does Application Security Pay? Measuring the Business Impact of Software Secu...
Does Application Security Pay? Measuring the Business Impact of Software Secu...Does Application Security Pay? Measuring the Business Impact of Software Secu...
Does Application Security Pay? Measuring the Business Impact of Software Secu...Mainstay
 
Modelling Determinants of Software Development Outsourcing for Nigeria
Modelling Determinants of Software Development Outsourcing for NigeriaModelling Determinants of Software Development Outsourcing for Nigeria
Modelling Determinants of Software Development Outsourcing for NigeriaIJMTST Journal
 
The prominence of it lifecycle assurance
The prominence of it lifecycle assuranceThe prominence of it lifecycle assurance
The prominence of it lifecycle assuranceMaveric Systems
 
Software Engineering: Designing a Better Experience for Communications, Media...
Software Engineering: Designing a Better Experience for Communications, Media...Software Engineering: Designing a Better Experience for Communications, Media...
Software Engineering: Designing a Better Experience for Communications, Media...Cognizant
 
Demystifying Robotic Process Automation (RPA) & Automation Testing
Demystifying Robotic Process Automation (RPA) & Automation TestingDemystifying Robotic Process Automation (RPA) & Automation Testing
Demystifying Robotic Process Automation (RPA) & Automation TestingCitiusTech
 
How Enterprise Architects Can Build Resilient, Reliable Software-Based Health...
How Enterprise Architects Can Build Resilient, Reliable Software-Based Health...How Enterprise Architects Can Build Resilient, Reliable Software-Based Health...
How Enterprise Architects Can Build Resilient, Reliable Software-Based Health...Cognizant
 
In Automated Controls It’s No Longer the Traditional Build vs. Buy
In Automated Controls It’s No Longer the Traditional Build vs. BuyIn Automated Controls It’s No Longer the Traditional Build vs. Buy
In Automated Controls It’s No Longer the Traditional Build vs. BuyMelissa Luongo
 
How Domain-Driven Design Can Boost Legacy System Modernization
How Domain-Driven Design Can Boost Legacy System ModernizationHow Domain-Driven Design Can Boost Legacy System Modernization
How Domain-Driven Design Can Boost Legacy System ModernizationCognizant
 
GRP & IT Vendor Governance in Government
GRP & IT Vendor Governance in GovernmentGRP & IT Vendor Governance in Government
GRP & IT Vendor Governance in GovernmentFreeBalance
 

What's hot (20)

Accenture Customer Story_CAST
Accenture Customer Story_CASTAccenture Customer Story_CAST
Accenture Customer Story_CAST
 
How Security Audits Improve Reliability in Kentico 12
How Security Audits Improve Reliability in Kentico 12How Security Audits Improve Reliability in Kentico 12
How Security Audits Improve Reliability in Kentico 12
 
Mobile payments test automation
Mobile payments test automationMobile payments test automation
Mobile payments test automation
 
Hp arc sight_state of security ops_whitepaper
Hp arc sight_state of security ops_whitepaperHp arc sight_state of security ops_whitepaper
Hp arc sight_state of security ops_whitepaper
 
Trust but Verify: Strategies for managing software supplier risk
Trust but Verify: Strategies for managing software supplier riskTrust but Verify: Strategies for managing software supplier risk
Trust but Verify: Strategies for managing software supplier risk
 
Keys to m-payment strategy that reduces risks and improves efficiency
Keys to m-payment strategy that reduces risks and improves efficiencyKeys to m-payment strategy that reduces risks and improves efficiency
Keys to m-payment strategy that reduces risks and improves efficiency
 
Trends in Enterprise Adoption of MDM Features and Capabilities: Excerpt
Trends in Enterprise Adoption of MDM Features and Capabilities: ExcerptTrends in Enterprise Adoption of MDM Features and Capabilities: Excerpt
Trends in Enterprise Adoption of MDM Features and Capabilities: Excerpt
 
Idge dell server convergence2014 qp #1
Idge dell server convergence2014 qp #1Idge dell server convergence2014 qp #1
Idge dell server convergence2014 qp #1
 
A Review on Software Fault Detection and Prevention Mechanism in Software Dev...
A Review on Software Fault Detection and Prevention Mechanism in Software Dev...A Review on Software Fault Detection and Prevention Mechanism in Software Dev...
A Review on Software Fault Detection and Prevention Mechanism in Software Dev...
 
Ipm executive-summary-vi-federal
Ipm executive-summary-vi-federalIpm executive-summary-vi-federal
Ipm executive-summary-vi-federal
 
L3 Requirements Eng Overview
L3 Requirements Eng OverviewL3 Requirements Eng Overview
L3 Requirements Eng Overview
 
Does Application Security Pay? Measuring the Business Impact of Software Secu...
Does Application Security Pay? Measuring the Business Impact of Software Secu...Does Application Security Pay? Measuring the Business Impact of Software Secu...
Does Application Security Pay? Measuring the Business Impact of Software Secu...
 
Modelling Determinants of Software Development Outsourcing for Nigeria
Modelling Determinants of Software Development Outsourcing for NigeriaModelling Determinants of Software Development Outsourcing for Nigeria
Modelling Determinants of Software Development Outsourcing for Nigeria
 
The prominence of it lifecycle assurance
The prominence of it lifecycle assuranceThe prominence of it lifecycle assurance
The prominence of it lifecycle assurance
 
Software Engineering: Designing a Better Experience for Communications, Media...
Software Engineering: Designing a Better Experience for Communications, Media...Software Engineering: Designing a Better Experience for Communications, Media...
Software Engineering: Designing a Better Experience for Communications, Media...
 
Demystifying Robotic Process Automation (RPA) & Automation Testing
Demystifying Robotic Process Automation (RPA) & Automation TestingDemystifying Robotic Process Automation (RPA) & Automation Testing
Demystifying Robotic Process Automation (RPA) & Automation Testing
 
How Enterprise Architects Can Build Resilient, Reliable Software-Based Health...
How Enterprise Architects Can Build Resilient, Reliable Software-Based Health...How Enterprise Architects Can Build Resilient, Reliable Software-Based Health...
How Enterprise Architects Can Build Resilient, Reliable Software-Based Health...
 
In Automated Controls It’s No Longer the Traditional Build vs. Buy
In Automated Controls It’s No Longer the Traditional Build vs. BuyIn Automated Controls It’s No Longer the Traditional Build vs. Buy
In Automated Controls It’s No Longer the Traditional Build vs. Buy
 
How Domain-Driven Design Can Boost Legacy System Modernization
How Domain-Driven Design Can Boost Legacy System ModernizationHow Domain-Driven Design Can Boost Legacy System Modernization
How Domain-Driven Design Can Boost Legacy System Modernization
 
GRP & IT Vendor Governance in Government
GRP & IT Vendor Governance in GovernmentGRP & IT Vendor Governance in Government
GRP & IT Vendor Governance in Government
 

Similar to CAST Federal Solutions

KJ Ross Whitepaper How CXO's can reduce IT Project risk by improving software...
KJ Ross Whitepaper How CXO's can reduce IT Project risk by improving software...KJ Ross Whitepaper How CXO's can reduce IT Project risk by improving software...
KJ Ross Whitepaper How CXO's can reduce IT Project risk by improving software...KJR
 
Unsustainable Regaining Control of Uncontrollable Apps
Unsustainable Regaining Control of Uncontrollable AppsUnsustainable Regaining Control of Uncontrollable Apps
Unsustainable Regaining Control of Uncontrollable AppsCAST
 
Supplier Base Optimization White Paper
Supplier Base Optimization White PaperSupplier Base Optimization White Paper
Supplier Base Optimization White PaperAnn Rose Myladoor
 
Bots for Quality: Augmenting QA's Scope in the Digital Age
Bots for Quality: Augmenting QA's Scope in the Digital AgeBots for Quality: Augmenting QA's Scope in the Digital Age
Bots for Quality: Augmenting QA's Scope in the Digital AgeCognizant
 
From Data to Insights: How IT Operations Data Can Boost Quality
From Data to Insights: How IT Operations Data Can Boost QualityFrom Data to Insights: How IT Operations Data Can Boost Quality
From Data to Insights: How IT Operations Data Can Boost QualityCognizant
 
Traf testing requirement analysis framework
Traf testing requirement analysis frameworkTraf testing requirement analysis framework
Traf testing requirement analysis frameworkTarun Aarya
 
Software testing
Software testingSoftware testing
Software testingdavidsantro
 
Turkey Software Qualıty Report
Turkey Software Qualıty ReportTurkey Software Qualıty Report
Turkey Software Qualıty ReportSerkan Cura
 
SDT Transformation White Paper
SDT Transformation White PaperSDT Transformation White Paper
SDT Transformation White PaperJamesWright
 
Information hiding based on optimization technique for Encrypted Images
Information hiding based on optimization technique for Encrypted ImagesInformation hiding based on optimization technique for Encrypted Images
Information hiding based on optimization technique for Encrypted ImagesIRJET Journal
 
CAST for PeopleSoft
CAST for PeopleSoftCAST for PeopleSoft
CAST for PeopleSoftCAST
 
The Role of Test Automation in Today's Digital World: WHY?
The Role of Test Automation in Today's Digital World: WHY?The Role of Test Automation in Today's Digital World: WHY?
The Role of Test Automation in Today's Digital World: WHY?Testrig Technologies
 
Improving Speed to Market in E-commerce
Improving Speed to Market in E-commerceImproving Speed to Market in E-commerce
Improving Speed to Market in E-commerceCognizant
 
SII-News Letter - source_3Q15
SII-News Letter - source_3Q15SII-News Letter - source_3Q15
SII-News Letter - source_3Q15THONG DUONG
 
State of the Market - Data Quality in 2023
State of the Market - Data Quality in 2023State of the Market - Data Quality in 2023
State of the Market - Data Quality in 2023RTTS
 
PT Application Inspector SSDL Edition product brief
PT Application Inspector SSDL Edition product briefPT Application Inspector SSDL Edition product brief
PT Application Inspector SSDL Edition product briefValery Boronin
 
CISQ and Software Quality Measurement - Software Assurance Forum (March 2010)
CISQ and Software Quality Measurement - Software Assurance Forum (March 2010)CISQ and Software Quality Measurement - Software Assurance Forum (March 2010)
CISQ and Software Quality Measurement - Software Assurance Forum (March 2010)CISQ - Consortium for IT Software Quality
 

Similar to CAST Federal Solutions (20)

KJ Ross Whitepaper How CXO's can reduce IT Project risk by improving software...
KJ Ross Whitepaper How CXO's can reduce IT Project risk by improving software...KJ Ross Whitepaper How CXO's can reduce IT Project risk by improving software...
KJ Ross Whitepaper How CXO's can reduce IT Project risk by improving software...
 
Unsustainable Regaining Control of Uncontrollable Apps
Unsustainable Regaining Control of Uncontrollable AppsUnsustainable Regaining Control of Uncontrollable Apps
Unsustainable Regaining Control of Uncontrollable Apps
 
Supplier Base Optimization White Paper
Supplier Base Optimization White PaperSupplier Base Optimization White Paper
Supplier Base Optimization White Paper
 
Bots for Quality: Augmenting QA's Scope in the Digital Age
Bots for Quality: Augmenting QA's Scope in the Digital AgeBots for Quality: Augmenting QA's Scope in the Digital Age
Bots for Quality: Augmenting QA's Scope in the Digital Age
 
From Data to Insights: How IT Operations Data Can Boost Quality
From Data to Insights: How IT Operations Data Can Boost QualityFrom Data to Insights: How IT Operations Data Can Boost Quality
From Data to Insights: How IT Operations Data Can Boost Quality
 
Ta3s - Testing Banking and Finance Applications
Ta3s - Testing Banking and Finance ApplicationsTa3s - Testing Banking and Finance Applications
Ta3s - Testing Banking and Finance Applications
 
Traf testing requirement analysis framework
Traf testing requirement analysis frameworkTraf testing requirement analysis framework
Traf testing requirement analysis framework
 
Software testing
Software testingSoftware testing
Software testing
 
Turkey Software Qualıty Report
Turkey Software Qualıty ReportTurkey Software Qualıty Report
Turkey Software Qualıty Report
 
Tsqr16 17-en
Tsqr16 17-enTsqr16 17-en
Tsqr16 17-en
 
SDT Transformation White Paper
SDT Transformation White PaperSDT Transformation White Paper
SDT Transformation White Paper
 
Information hiding based on optimization technique for Encrypted Images
Information hiding based on optimization technique for Encrypted ImagesInformation hiding based on optimization technique for Encrypted Images
Information hiding based on optimization technique for Encrypted Images
 
CAST for PeopleSoft
CAST for PeopleSoftCAST for PeopleSoft
CAST for PeopleSoft
 
The Role of Test Automation in Today's Digital World: WHY?
The Role of Test Automation in Today's Digital World: WHY?The Role of Test Automation in Today's Digital World: WHY?
The Role of Test Automation in Today's Digital World: WHY?
 
Improving Speed to Market in E-commerce
Improving Speed to Market in E-commerceImproving Speed to Market in E-commerce
Improving Speed to Market in E-commerce
 
SII-News Letter - source_3Q15
SII-News Letter - source_3Q15SII-News Letter - source_3Q15
SII-News Letter - source_3Q15
 
69 AGARAM Venkatesh
69 AGARAM Venkatesh69 AGARAM Venkatesh
69 AGARAM Venkatesh
 
State of the Market - Data Quality in 2023
State of the Market - Data Quality in 2023State of the Market - Data Quality in 2023
State of the Market - Data Quality in 2023
 
PT Application Inspector SSDL Edition product brief
PT Application Inspector SSDL Edition product briefPT Application Inspector SSDL Edition product brief
PT Application Inspector SSDL Edition product brief
 
CISQ and Software Quality Measurement - Software Assurance Forum (March 2010)
CISQ and Software Quality Measurement - Software Assurance Forum (March 2010)CISQ and Software Quality Measurement - Software Assurance Forum (March 2010)
CISQ and Software Quality Measurement - Software Assurance Forum (March 2010)
 

More from CAST

Six steps-to-enhance-performance-of-critical-systems
Six steps-to-enhance-performance-of-critical-systemsSix steps-to-enhance-performance-of-critical-systems
Six steps-to-enhance-performance-of-critical-systemsCAST
 
Application Performance: 6 Steps to Enhance Performance of Critical Systems
Application Performance: 6 Steps to Enhance Performance of Critical SystemsApplication Performance: 6 Steps to Enhance Performance of Critical Systems
Application Performance: 6 Steps to Enhance Performance of Critical SystemsCAST
 
Application Assessment - Executive Summary Report
Application Assessment - Executive Summary ReportApplication Assessment - Executive Summary Report
Application Assessment - Executive Summary ReportCAST
 
Cloud Migration: Azure acceleration with CAST Highlight
Cloud Migration: Azure acceleration with CAST HighlightCloud Migration: Azure acceleration with CAST Highlight
Cloud Migration: Azure acceleration with CAST HighlightCAST
 
Cloud Readiness : CAST & Microsoft Azure Partnership Overview
Cloud Readiness : CAST & Microsoft Azure Partnership OverviewCloud Readiness : CAST & Microsoft Azure Partnership Overview
Cloud Readiness : CAST & Microsoft Azure Partnership OverviewCAST
 
Cloud Migration: Cloud Readiness Assessment Case Study
Cloud Migration: Cloud Readiness Assessment Case StudyCloud Migration: Cloud Readiness Assessment Case Study
Cloud Migration: Cloud Readiness Assessment Case StudyCAST
 
Digital Transformation e-book: Taking the 20X20n approach to accelerating Dig...
Digital Transformation e-book: Taking the 20X20n approach to accelerating Dig...Digital Transformation e-book: Taking the 20X20n approach to accelerating Dig...
Digital Transformation e-book: Taking the 20X20n approach to accelerating Dig...CAST
 
Why computers will never be safe
Why computers will never be safeWhy computers will never be safe
Why computers will never be safeCAST
 
Green indexes used in CAST to measure the energy consumption in code
Green indexes used in CAST to measure the energy consumption in codeGreen indexes used in CAST to measure the energy consumption in code
Green indexes used in CAST to measure the energy consumption in codeCAST
 
9 Steps to Creating ADM Budgets
9 Steps to Creating ADM Budgets9 Steps to Creating ADM Budgets
9 Steps to Creating ADM BudgetsCAST
 
Improving ADM Vendor Relationship through Outcome Based Contracts
Improving ADM Vendor Relationship through Outcome Based ContractsImproving ADM Vendor Relationship through Outcome Based Contracts
Improving ADM Vendor Relationship through Outcome Based ContractsCAST
 
Drive Business Excellence with Outcomes-Based Contracting: The OBC Toolkit
Drive Business Excellence with Outcomes-Based Contracting: The OBC ToolkitDrive Business Excellence with Outcomes-Based Contracting: The OBC Toolkit
Drive Business Excellence with Outcomes-Based Contracting: The OBC ToolkitCAST
 
CAST Highlight: Code-level portfolio analysis. FAST.
CAST Highlight: Code-level portfolio analysis. FAST.CAST Highlight: Code-level portfolio analysis. FAST.
CAST Highlight: Code-level portfolio analysis. FAST.CAST
 
Shifting Vendor Management Focus to Risk and Business Outcomes
Shifting Vendor Management Focus to Risk and Business OutcomesShifting Vendor Management Focus to Risk and Business Outcomes
Shifting Vendor Management Focus to Risk and Business OutcomesCAST
 
Applying Software Quality Models to Software Security
Applying Software Quality Models to Software SecurityApplying Software Quality Models to Software Security
Applying Software Quality Models to Software SecurityCAST
 
Cast Highlight Software Maintenance Infographic
Cast Highlight Software Maintenance InfographicCast Highlight Software Maintenance Infographic
Cast Highlight Software Maintenance InfographicCAST
 
What is system level analysis
What is system level analysisWhat is system level analysis
What is system level analysisCAST
 
Deloitte Tech Trends 2014 Technical Debt
Deloitte Tech Trends 2014 Technical DebtDeloitte Tech Trends 2014 Technical Debt
Deloitte Tech Trends 2014 Technical DebtCAST
 
What you should know about software measurement platforms
What you should know about software measurement platformsWhat you should know about software measurement platforms
What you should know about software measurement platformsCAST
 
CRASH Report 2014
CRASH Report 2014CRASH Report 2014
CRASH Report 2014CAST
 

More from CAST (20)

Six steps-to-enhance-performance-of-critical-systems
Six steps-to-enhance-performance-of-critical-systemsSix steps-to-enhance-performance-of-critical-systems
Six steps-to-enhance-performance-of-critical-systems
 
Application Performance: 6 Steps to Enhance Performance of Critical Systems
Application Performance: 6 Steps to Enhance Performance of Critical SystemsApplication Performance: 6 Steps to Enhance Performance of Critical Systems
Application Performance: 6 Steps to Enhance Performance of Critical Systems
 
Application Assessment - Executive Summary Report
Application Assessment - Executive Summary ReportApplication Assessment - Executive Summary Report
Application Assessment - Executive Summary Report
 
Cloud Migration: Azure acceleration with CAST Highlight
Cloud Migration: Azure acceleration with CAST HighlightCloud Migration: Azure acceleration with CAST Highlight
Cloud Migration: Azure acceleration with CAST Highlight
 
Cloud Readiness : CAST & Microsoft Azure Partnership Overview
Cloud Readiness : CAST & Microsoft Azure Partnership OverviewCloud Readiness : CAST & Microsoft Azure Partnership Overview
Cloud Readiness : CAST & Microsoft Azure Partnership Overview
 
Cloud Migration: Cloud Readiness Assessment Case Study
Cloud Migration: Cloud Readiness Assessment Case StudyCloud Migration: Cloud Readiness Assessment Case Study
Cloud Migration: Cloud Readiness Assessment Case Study
 
Digital Transformation e-book: Taking the 20X20n approach to accelerating Dig...
Digital Transformation e-book: Taking the 20X20n approach to accelerating Dig...Digital Transformation e-book: Taking the 20X20n approach to accelerating Dig...
Digital Transformation e-book: Taking the 20X20n approach to accelerating Dig...
 
Why computers will never be safe
Why computers will never be safeWhy computers will never be safe
Why computers will never be safe
 
Green indexes used in CAST to measure the energy consumption in code
Green indexes used in CAST to measure the energy consumption in codeGreen indexes used in CAST to measure the energy consumption in code
Green indexes used in CAST to measure the energy consumption in code
 
9 Steps to Creating ADM Budgets
9 Steps to Creating ADM Budgets9 Steps to Creating ADM Budgets
9 Steps to Creating ADM Budgets
 
Improving ADM Vendor Relationship through Outcome Based Contracts
Improving ADM Vendor Relationship through Outcome Based ContractsImproving ADM Vendor Relationship through Outcome Based Contracts
Improving ADM Vendor Relationship through Outcome Based Contracts
 
Drive Business Excellence with Outcomes-Based Contracting: The OBC Toolkit
Drive Business Excellence with Outcomes-Based Contracting: The OBC ToolkitDrive Business Excellence with Outcomes-Based Contracting: The OBC Toolkit
Drive Business Excellence with Outcomes-Based Contracting: The OBC Toolkit
 
CAST Highlight: Code-level portfolio analysis. FAST.
CAST Highlight: Code-level portfolio analysis. FAST.CAST Highlight: Code-level portfolio analysis. FAST.
CAST Highlight: Code-level portfolio analysis. FAST.
 
Shifting Vendor Management Focus to Risk and Business Outcomes
Shifting Vendor Management Focus to Risk and Business OutcomesShifting Vendor Management Focus to Risk and Business Outcomes
Shifting Vendor Management Focus to Risk and Business Outcomes
 
Applying Software Quality Models to Software Security
Applying Software Quality Models to Software SecurityApplying Software Quality Models to Software Security
Applying Software Quality Models to Software Security
 
Cast Highlight Software Maintenance Infographic
Cast Highlight Software Maintenance InfographicCast Highlight Software Maintenance Infographic
Cast Highlight Software Maintenance Infographic
 
What is system level analysis
What is system level analysisWhat is system level analysis
What is system level analysis
 
Deloitte Tech Trends 2014 Technical Debt
Deloitte Tech Trends 2014 Technical DebtDeloitte Tech Trends 2014 Technical Debt
Deloitte Tech Trends 2014 Technical Debt
 
What you should know about software measurement platforms
What you should know about software measurement platformsWhat you should know about software measurement platforms
What you should know about software measurement platforms
 
CRASH Report 2014
CRASH Report 2014CRASH Report 2014
CRASH Report 2014
 

Recently uploaded

What is DBT - The Ultimate Data Build Tool.pdf
What is DBT - The Ultimate Data Build Tool.pdfWhat is DBT - The Ultimate Data Build Tool.pdf
What is DBT - The Ultimate Data Build Tool.pdfMounikaPolabathina
 
Nell’iperspazio con Rocket: il Framework Web di Rust!
Nell’iperspazio con Rocket: il Framework Web di Rust!Nell’iperspazio con Rocket: il Framework Web di Rust!
Nell’iperspazio con Rocket: il Framework Web di Rust!Commit University
 
Digital Identity is Under Attack: FIDO Paris Seminar.pptx
Digital Identity is Under Attack: FIDO Paris Seminar.pptxDigital Identity is Under Attack: FIDO Paris Seminar.pptx
Digital Identity is Under Attack: FIDO Paris Seminar.pptxLoriGlavin3
 
From Family Reminiscence to Scholarly Archive .
From Family Reminiscence to Scholarly Archive .From Family Reminiscence to Scholarly Archive .
From Family Reminiscence to Scholarly Archive .Alan Dix
 
Moving Beyond Passwords: FIDO Paris Seminar.pdf
Moving Beyond Passwords: FIDO Paris Seminar.pdfMoving Beyond Passwords: FIDO Paris Seminar.pdf
Moving Beyond Passwords: FIDO Paris Seminar.pdfLoriGlavin3
 
What's New in Teams Calling, Meetings and Devices March 2024
What's New in Teams Calling, Meetings and Devices March 2024What's New in Teams Calling, Meetings and Devices March 2024
What's New in Teams Calling, Meetings and Devices March 2024Stephanie Beckett
 
DevEX - reference for building teams, processes, and platforms
DevEX - reference for building teams, processes, and platformsDevEX - reference for building teams, processes, and platforms
DevEX - reference for building teams, processes, and platformsSergiu Bodiu
 
Rise of the Machines: Known As Drones...
Rise of the Machines: Known As Drones...Rise of the Machines: Known As Drones...
Rise of the Machines: Known As Drones...Rick Flair
 
DevoxxFR 2024 Reproducible Builds with Apache Maven
DevoxxFR 2024 Reproducible Builds with Apache MavenDevoxxFR 2024 Reproducible Builds with Apache Maven
DevoxxFR 2024 Reproducible Builds with Apache MavenHervé Boutemy
 
Sample pptx for embedding into website for demo
Sample pptx for embedding into website for demoSample pptx for embedding into website for demo
Sample pptx for embedding into website for demoHarshalMandlekar2
 
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)Mark Simos
 
TrustArc Webinar - How to Build Consumer Trust Through Data Privacy
TrustArc Webinar - How to Build Consumer Trust Through Data PrivacyTrustArc Webinar - How to Build Consumer Trust Through Data Privacy
TrustArc Webinar - How to Build Consumer Trust Through Data PrivacyTrustArc
 
Ensuring Technical Readiness For Copilot in Microsoft 365
Ensuring Technical Readiness For Copilot in Microsoft 365Ensuring Technical Readiness For Copilot in Microsoft 365
Ensuring Technical Readiness For Copilot in Microsoft 3652toLead Limited
 
Gen AI in Business - Global Trends Report 2024.pdf
Gen AI in Business - Global Trends Report 2024.pdfGen AI in Business - Global Trends Report 2024.pdf
Gen AI in Business - Global Trends Report 2024.pdfAddepto
 
Advanced Computer Architecture – An Introduction
Advanced Computer Architecture – An IntroductionAdvanced Computer Architecture – An Introduction
Advanced Computer Architecture – An IntroductionDilum Bandara
 
SALESFORCE EDUCATION CLOUD | FEXLE SERVICES
SALESFORCE EDUCATION CLOUD | FEXLE SERVICESSALESFORCE EDUCATION CLOUD | FEXLE SERVICES
SALESFORCE EDUCATION CLOUD | FEXLE SERVICESmohitsingh558521
 
How AI, OpenAI, and ChatGPT impact business and software.
How AI, OpenAI, and ChatGPT impact business and software.How AI, OpenAI, and ChatGPT impact business and software.
How AI, OpenAI, and ChatGPT impact business and software.Curtis Poe
 
"Debugging python applications inside k8s environment", Andrii Soldatenko
"Debugging python applications inside k8s environment", Andrii Soldatenko"Debugging python applications inside k8s environment", Andrii Soldatenko
"Debugging python applications inside k8s environment", Andrii SoldatenkoFwdays
 
Artificial intelligence in cctv survelliance.pptx
Artificial intelligence in cctv survelliance.pptxArtificial intelligence in cctv survelliance.pptx
Artificial intelligence in cctv survelliance.pptxhariprasad279825
 
Generative AI for Technical Writer or Information Developers
Generative AI for Technical Writer or Information DevelopersGenerative AI for Technical Writer or Information Developers
Generative AI for Technical Writer or Information DevelopersRaghuram Pandurangan
 

Recently uploaded (20)

What is DBT - The Ultimate Data Build Tool.pdf
What is DBT - The Ultimate Data Build Tool.pdfWhat is DBT - The Ultimate Data Build Tool.pdf
What is DBT - The Ultimate Data Build Tool.pdf
 
Nell’iperspazio con Rocket: il Framework Web di Rust!
Nell’iperspazio con Rocket: il Framework Web di Rust!Nell’iperspazio con Rocket: il Framework Web di Rust!
Nell’iperspazio con Rocket: il Framework Web di Rust!
 
Digital Identity is Under Attack: FIDO Paris Seminar.pptx
Digital Identity is Under Attack: FIDO Paris Seminar.pptxDigital Identity is Under Attack: FIDO Paris Seminar.pptx
Digital Identity is Under Attack: FIDO Paris Seminar.pptx
 
From Family Reminiscence to Scholarly Archive .
From Family Reminiscence to Scholarly Archive .From Family Reminiscence to Scholarly Archive .
From Family Reminiscence to Scholarly Archive .
 
Moving Beyond Passwords: FIDO Paris Seminar.pdf
Moving Beyond Passwords: FIDO Paris Seminar.pdfMoving Beyond Passwords: FIDO Paris Seminar.pdf
Moving Beyond Passwords: FIDO Paris Seminar.pdf
 
What's New in Teams Calling, Meetings and Devices March 2024
What's New in Teams Calling, Meetings and Devices March 2024What's New in Teams Calling, Meetings and Devices March 2024
What's New in Teams Calling, Meetings and Devices March 2024
 
DevEX - reference for building teams, processes, and platforms
DevEX - reference for building teams, processes, and platformsDevEX - reference for building teams, processes, and platforms
DevEX - reference for building teams, processes, and platforms
 
Rise of the Machines: Known As Drones...
Rise of the Machines: Known As Drones...Rise of the Machines: Known As Drones...
Rise of the Machines: Known As Drones...
 
DevoxxFR 2024 Reproducible Builds with Apache Maven
DevoxxFR 2024 Reproducible Builds with Apache MavenDevoxxFR 2024 Reproducible Builds with Apache Maven
DevoxxFR 2024 Reproducible Builds with Apache Maven
 
Sample pptx for embedding into website for demo
Sample pptx for embedding into website for demoSample pptx for embedding into website for demo
Sample pptx for embedding into website for demo
 
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
 
TrustArc Webinar - How to Build Consumer Trust Through Data Privacy
TrustArc Webinar - How to Build Consumer Trust Through Data PrivacyTrustArc Webinar - How to Build Consumer Trust Through Data Privacy
TrustArc Webinar - How to Build Consumer Trust Through Data Privacy
 
Ensuring Technical Readiness For Copilot in Microsoft 365
Ensuring Technical Readiness For Copilot in Microsoft 365Ensuring Technical Readiness For Copilot in Microsoft 365
Ensuring Technical Readiness For Copilot in Microsoft 365
 
Gen AI in Business - Global Trends Report 2024.pdf
Gen AI in Business - Global Trends Report 2024.pdfGen AI in Business - Global Trends Report 2024.pdf
Gen AI in Business - Global Trends Report 2024.pdf
 
Advanced Computer Architecture – An Introduction
Advanced Computer Architecture – An IntroductionAdvanced Computer Architecture – An Introduction
Advanced Computer Architecture – An Introduction
 
SALESFORCE EDUCATION CLOUD | FEXLE SERVICES
SALESFORCE EDUCATION CLOUD | FEXLE SERVICESSALESFORCE EDUCATION CLOUD | FEXLE SERVICES
SALESFORCE EDUCATION CLOUD | FEXLE SERVICES
 
How AI, OpenAI, and ChatGPT impact business and software.
How AI, OpenAI, and ChatGPT impact business and software.How AI, OpenAI, and ChatGPT impact business and software.
How AI, OpenAI, and ChatGPT impact business and software.
 
"Debugging python applications inside k8s environment", Andrii Soldatenko
"Debugging python applications inside k8s environment", Andrii Soldatenko"Debugging python applications inside k8s environment", Andrii Soldatenko
"Debugging python applications inside k8s environment", Andrii Soldatenko
 
Artificial intelligence in cctv survelliance.pptx
Artificial intelligence in cctv survelliance.pptxArtificial intelligence in cctv survelliance.pptx
Artificial intelligence in cctv survelliance.pptx
 
Generative AI for Technical Writer or Information Developers
Generative AI for Technical Writer or Information DevelopersGenerative AI for Technical Writer or Information Developers
Generative AI for Technical Writer or Information Developers
 

CAST Federal Solutions

  • 1.
  • 2. There continues to be a major drive for governance around the quality, maintainability, and reliability of applications delivered to the U.S. Federal Government, yet all government departments and agencies are expected to execute their mandates with fewer budget dollars. CAST’s U.S. Federal group helps government agencies maximize IT investments and optimize performance through the use of proven technologies and best practices. IT Vendor Transparency Federal IT programs are increasingly mandating standards to application development and sustainment vendors as part of the acquisition process. However, program offices often face challenges to develop standard contracting language that ensures software code quality checking becomes “business as usual” for every delivery to government. Additionally, programs are challenged to provide unambiguous guidance to their systems integrator partners on the standards that will be used to assess delivered applications. The applied use of application, program, or enterprise-level Software Analysis and Measurement promotes common understanding for government and providers on the current and ongoing delivery quality of the code. This visibility improves outcomes, with a 50% lower likelihood of testing or deployment defects thus reducing production risks and reducing costs for fixes, retesting, and rework. Software Assurance In the report Cyber Security: A Crisis of Prioritization, the President’s Information Technology Advisory Committee summed up the problem of non-secure software as follows: “Vulnerabilities in software that are introduced by mistake or poor practices are a serious problem today.” Applications designed with solid architectural fundamentals emphasizing reliability and resiliency are more difficult to penetrate, despite the fact that software development is typically not managed scientifically or with a rigorous security discipline throughout the development and sustainment program management lifecycle. Poor design results in vulnerabilities that are often replicated and propagated within a complex system. Simply performing late- stage security audits and building firewalls is not enough—security must be designed and built into an application and then rigorously verified multiple times within each and every release. CAST’s Software Assurance solution provides a holistic, system-level assessment that verifies conformance to requirements and industry standards. www.castsoftware.com North America 373 Park Avenue South New York, NY 10016 Phone:+1 212-871-8330 Questions? Email us at contact@castsoftware.com Copyright © 2013 CAST All Rights Reserved CAST U.S. Federal Solutions CAST helps government agencies optimize IT vendor performance and reduce IT system risks.
  • 3. Software Code Quality Checking Software Code Quality Checking (SCQC) is an automated analysis of source code to ensure that the application meets the stated performance, maintainability, and usability requirements within program budget, program schedule, risk, and other constraints. SCQC complements Developmental Test & Evaluation (DT&E) and Operational Test & Evaluation (OT&E) by identifying defects earlier in the system development lifecycle (SDLC). Since SCQC focuses on the structural, and not functional, aspects of the application, government testers can concentrate on the objectives of DT&E and OT&E, as opposed to finding defects overlooked by the developer and having to return the product for resolution and rework. By identifying and correcting defects earlier, end-users will see measurable improvements in the performance of the application and program executives will see a reduction in sustainment/maintenance costs. Program and IT Portfolio Benchmark Benchmarking delivers critical benefits for the enterprise or larger individual Category 1 or 2 programs looking to continuously improve application development governance and transparency. First, benchmarking provides objective current-state assessments that provide insight into cost, quality, and cycle time, external and internal comparison of quality, and identification of meaningful gaps that can be improved. Second, effective benchmarking is a foundation for transformation since it enables an organization to easily identify and prioritize opportunities—by process, vendor, and cost driver—which, in turn, results in relevant improvement targets and a stronger overall business case for the transformation effort. Benchmarking initial quality and state of a portfolio forms the basis for continuous “The CRASH Report shows that Government, more than any other industry, has the most complex and most difficult to maintain IT systems. What’s worse is that, in this highly outsourced ecosystem, the system integrators that develop these systems do not suffer the consequence of these higher sustainment costs – the government does.” -Dr. Bill Curtis SCQC ensures critical systems meet performance, reliability, and security requirements within budget and other program constraints. www.castsoftware.com North America 373 Park Avenue South New York, NY 10016 Phone:+1 212-871-8330 Questions? Email us at contact@castsoftware.com
  • 4. improvement. Ongoing benchmarking encourages continuous application development improvement culture as it is supports regular measurement against an objective baseline. We often hear government executives question how they are performing relative to similar industry or government organiza- tions. To meet this need, CAST introduced Appmarq, the industry’s first software qual- ity benchmarking capability in 2010. We gather data from CAST analyses performed across global industry and public sector IT organizations and provide normalized data in support of external benchmarking. IT Productivity Measurement The largest opportunity for improving quality and productivity during application development is by eliminating the largest source of waste: 30-50% of development effort is devoted to rework of defects. These staggering numbers are driven by the fact that defects become 10 times more expensive to fix for each major phase of the software lifecycle they slip past. Under these circumstances, quality largely determines productivity. One of the most vexing problems in software engineering is measuring the amount of progress made in developing or sustaining a software product. CAST Application Intelligence Platform (AIP) is a platform that gives OCIO and Program executives the visibility and control needed to quantify quality and progress, rather than just time spent, so they can improve business productivity and reduce IT costs. Productivity without quality is a waste and, paradoxically, quality without productivity is expensive! Superior performance is achieved when both quality and productivity increase simultaneously. CAST provides penetrating insight into application structural quality that is critical to improve the overall cost of ownership, business responsiveness, and dependability of applications. www.castsoftware.com North America 373 Park Avenue South New York, NY 10016 Phone:+1 212-871-8330 Questions? Email us at contact@castsoftware.com Copyright © 2013 CAST All Rights Reserved Appmarq provides normalized industry data in support of external benchmarking. “…a failure to satisfy a non-functional requirement can be critical, even catastrophic…non-functional require- ments are sometimes difficult to verify. We cannot write a test case to verify a system’s reliability… The ability to associate code to non-functional properties can be a pow- erful weapon in a software engineer’s arsenal.” -Diomidis Spinellis, Code Quality: The Open Source Perspective
  • 5. www.castsoftware.com North America 373 Park Avenue South New York, NY 10016 Phone:+1 212-871-8330 Questions? Email us at contact@castsoftware.com Copyright © 2013 CAST All Rights Reserved Federal Partnerships CAST has successfully teamed with Boeing, CSC, Northrop Grumman, Accenture, Keane, Ingenium, Booz Allen, Lockheed, Raytheon, and Sybase Corporation, among others. Contract Vehicle GSA Schedule (GS-35F-0649S) For examples of contracts and SLA’s, please contact the CAST Federal Practice: castfed@castsoftware.com CAST prior performance in Federal contracts includes: