On May 1, 2025, Harness, known for its innovative AI-Native DevSecOps Platform™, earned high recognition from SecureIQLab, being named a leader in its 2025 Cloud WAAP CyberRisk Validation Report. In this report, 11 enterprise-grade Web Application and API Protection (WAAP) solutions were rigorously evaluated against each other based on their security efficacy and operational efficiency, where Traceable by Harness shone distinctly brighter than its peers. The company not only achieved the pinnacle of security but also garnered acclaim for operational efficiency.
Traceable by Harness recorded an impressive 99.28% Complete Security Score, placing it at the top overall within the evaluation framework. This was complemented by a close second position in the Operational Efficiency Rating, wherein it scored 95.7%. These scores illustrate the platform's exceptional ability to deliver real-world security outcomes across various categories.
David Ellis, the Vice President of Research and Corporate Relations at SecureIQLab, stated that Traceable achieved the highest levels of security efficacy during their independent public WAAP assessment. Ellis emphasized the platform's remarkable scores in several test categories, which validate its leading position in digital security solutions.
Moreover, Traceable by Harness distinguished itself by becoming one of the two vendors to receive recognitions for both Secure by Design and Secure by Default, further confirming its commitment to high standards in application security. The platform achieved perfect scores in critical areas, including design and default configuration settings, underscoring its readiness for immediate deployment in a variety of environments.
Significant achievements highlighted in the report included:
- - A total score of 100% in OWASP WAF testing, successfully validating all 21 test cases.
- - An API Protocol Security Score of 99%, along with an OWASP API Score of 98.33%, significantly exceeding group averages of 57% and 55.01%.
What sets Traceable by Harness apart are its advanced features such as deep API observability and real-time threat detection mechanisms. These innovations utilize distributed tracing and eBPF-based monitoring to not only enhance security measures but also manage the complexities associated with vast API ecosystems. This ensures comprehensive protection across the entire lifecycle of application development without sacrificing performance.
The merger between Harness and Traceable is strategic, offering a fully integrated solution that seamlessly incorporates application security across the software delivery lifecycle. This merger brings forth a unified approach that augments API security, runtime protections, and enhanced observability. As more organizations adopt AI-driven applications and deal with distributed architectures, the vulnerability landscape is rapidly evolving. Therefore, the security provided by Traceable by Harness is timely and crucial in today's tech ecosystem.
Sudhir Patamsetti, Senior Director of Product Management at Harness, encapsulated the vision behind WAAP, which aims to provide an AI-ready application and API security solution that is user-friendly. He expressed that by interweaving Traceable's cutting-edge security features with the Harness platform, businesses can proactively mitigate threats while accelerating innovation and development processes. With SecureIQLab recognizing their efforts and achievements, Traceable by Harness solidifies its position as a top-tier WAAP solution provider in the industry.
As the demand for robust security continues to rise, businesses are encouraged to explore the detailed evaluation from SecureIQLab and discover how Traceable by Harness can propel their security and software development efforts forward. The full report provides nuances on performance metrics and security validation across various categories, elucidating the path taken by Traceable to establish itself as a leader in cyber protection for web applications and APIs.