Case Study: Unity doubles security tool coverage across its portfolio with Cycode
Key results
The challenge
Growth through acquisition left Unity with a complex, fragmented application security environment spanning over 130 programming languages, four SCM systems, and four different security vendors used just for software composition analysis. Inconsistent tool coverage, cumbersome compliance tracking, and difficult risk prioritization made it hard to ensure testing coverage and guardrails were in place, and a homegrown ASPM tool was difficult to maintain.
The solution
Unity consolidated multiple point solutions onto Cycode's unified platform with native scanning and ASPM capabilities, using its flexible API to integrate with existing automation. The platform standardized coverage across the portfolio's many languages and four SCM systems and improved risk prioritization and developer engagement.
“Cycode was like a breath of fresh air. Suddenly, we had all this information and capabilities we'd only dreamed about, or hadn't even imagined. Cycode enables our engineers to handle findings more efficiently and get things done, rather than just creating a bunch of noise.”
CPChris PetersonChief Information Security Officer, Unity
The results, in context
By replacing multiple point solutions with Cycode, Unity doubled security tool coverage across its application portfolio while streamlining prioritization and compliance. Coverage was extended consistently across more than 130 programming languages and four SCM systems (Plastic SCM, GitHub, GitLab, and Bitbucket), and previously manual integrations were automated.