OpenText home page.
Solutions

Hosted application security

Simplify operations and accelerate secure development

Glowing digital cloud icon over a circuit-like data network

Single-tenant cloud deployment for secure, scalable AppSec

Multiple glowing digital cloud icons connected across a virtual network

Hosted application security is a cloud-based, single-tenant deployment of the OpenText™ application security platform. OpenText provisions and operates the environment in your selected AWS region, providing SAST, DAST, and optional SCA tightly integrated into your software development lifecycle. OpenText handles infrastructure, upgrades, and backups so your teams can focus on AppSec, not servers.

Why choose hosted application security

Deploy enterprise-grade AppSec in a managed, single-tenant cloud environment hosted by OpenText across AWS or OpenText Private Cloud.

  • opentext process cog approved logo

    Enable private AppSec, hosted for you

    Get your own dedicated AppSec environment in the AWS region you choose, fully hosted and operated by OpenText. You maintain control and isolation while offloading all infrastructure and upgrade burdens.

  • opentext connectivity hyperlink logo

    Integrate into your DevSecOps pipelines

    Built for DevSecOps, the hosted AppSec environment plugs into your IDEs, CI/CD pipelines, and build systems using plugins, runners, and a full API. Run SAST, DAST, and optional SCA on every commit or release and manage results and policies in Software Security Center.

  • opentext performance gauge speed logo

    Achieve comprehensive coverage and faster remediation

    Get broader coverage, smarter findings, and faster fixes. Machine-learning-powered auditing cuts through noise, highlights what matters, and gives developers instant, actionable guidance right in their workflow.

  • opentext protection police hat logo

    Centralize risk visibility and governance

    See everything clearly. One dashboard. Full control. Track risk, enforce policy, and manage AppSec across every team and application from a single, unified command center.

Business impacts

  • AppSec modernization

    Launching or modernizing an AppSec program can bog teams down with hardware, setup, and maintenance. Let them focus on securing applications, not running servers, with a fully hosted, single-tenant environment.

  • Governance and compliance

    Shared SaaS models are no match for strict compliance needs. Address regulatory, residency, and internal security requirements with a dedicated, isolated cloud environment.

  • Testing capacity

    As your program grows, so does your need to support more applications, higher scan volumes, and faster release cycles. Add capacity as needed and increase scanning power on demand with flexible SAST and DAST compute options.

  • Unified AppSec for global teams

    How do you keep security aligned across the enterprise when teams are scattered around the globe? Give every development team a single, consistent way to test, triage, and report on risk with centralized policies, dashboards, and workflows.

Get the hosted application security overview

Explore the components of the solution

Products

Solve business challenges with OpenText.

Professional Services

OpenText Consulting Services combines end-to-end solution implementation with comprehensive technology services to help improve systems.

Resources

Service description: Hosted application security

Read the service description

Service description: Hosted application security on OpenText Private Cloud

Read the service description

Service description: Hosted application security

Read the service description

Service description: Hosted application security on OpenText Private Cloud

Read the service description
  • It’s a cloud-based, single-tenant application security environment provisioned and operated by OpenText. The service includes the core components required to run static, dynamic, and optional software composition analysis within your SDLC, without your team having to manage infrastructure, upgrades, or backups.

  • Both options deliver a dedicated, single-tenant application security environment operated by OpenText. The AWS-hosted version runs in a commercial AWS region you select, while the OpenText Private Cloud version is delivered within an OpenText-operated private cloud environment. Both provide similar isolation, management, and support models to meet varying security and residency requirements.

  • The environment supports static application security testing (SAST), dynamic application security testing (DAST), and optional Software Composition Analysis (SCA). These assessments can be triggered through the web interface, CI/CD pipelines, APIs, developer tools, and automated workflows.

  • Users interact through Software Security Center, a web-based management interface used to configure applications, view results, and manage policies. Developer and DevSecOps teams can also use IDE plugins, CI/CD extensions, build tool integrations, and API-driven automation to run assessments and pull results directly into their workflows.

  • OpenText is responsible for provisioning, operating, monitoring, backing up, and upgrading the hosted environment. Maintenance windows, update schedules, and availability targets are defined in the service description, and the environment is operated according to documented service levels.

  • Access is established through secure internet connectivity restricted to approved IP ranges or through a site-to-site VPN, depending on your organization’s networking requirements. All traffic to the hosted environment follows approved connectivity patterns defined during onboarding.

  • Yes. You can adjust the mix and quantity of SAST and DAST scan machines to meet changing demand. Capacity can be increased to support additional applications, larger codebases, or more frequent scan cycles.

  • Yes. Software Security Center provides a unified view of application risk across all projects. It centralizes policies, roles, metrics, dashboards, and reporting to support audits, compliance, and enterprise-wide AppSec governance.

    Hosted application security overview

    Read the product overview

    OpenText Portfolio delivery models data sheet

    Read the data sheet

    Gartner® Magic Quadrant™ for Application Security Testing

    Read the report

    Hosted application security overview

    Read the product overview

    OpenText Portfolio delivery models data sheet

    Read the data sheet

    Gartner® Magic Quadrant™ for Application Security Testing

    Read the report