Platform overview
Checkmarx One
Agentic AI
Checkmarx One Assist
AI-powered Agentic AppSec agents preventing and remediating threats autonomously.
Developer Assist
Developer-first AI agent for instant vulnerability prevention and fix.
Posture
ASPM
Unified visibility, control and prioritization across your entire AppSec posture.
PARTNERSHIPS & INTEGRATIONS
Partner Programs
Building stronger AppSec ecosystems through trusted partnerships.
Find a Partner
Discover certified partners to accelerate your AppSec journey.
SOLUTIONS FOR
Code
Supply Chain
Cloud
Services
Developer assist
Developer-first Al agent preventing and remediating vulnerabilities instantly in IDE.
SAST
Market leading developer friendly statio application security testing and analysis
DAST
Developer tailored dynamic application scanning for efficient security issues remediation.
API Security
Enterprise scale API security scanning for early detection of critical vulnerabilities.
SCA
Identify, prioritize, and remediate open-source vulnerabilities, malicious code, and license risks.
Malicious Package Protection
Reveal and eliminate malicious open-source packages using industry’s largest database.
Repository Health
Enhance security with full visibility into code repository health.
Software Supply Chain Security
Protect your entire software supply chain with industry-leading security across legacy, open source, and Al-generated code.
Container Security
Secure containerized applications across SDLC, from code to cloud runtime.
laC Security
Secure cloud infrastructure via advanced scanning and vulnerability detection.
Premium Support
Enhance security outcomes and ROl with proactive, expert technical support.
Premium Services
Accelerate AppSec program success while maintaining seamless developer experience.
Maturity Assessment
Assess your AppSec maturity and unlock actionable improvement steps.
Why Checkmarx
Customer Stories
Awards
Industry Recognition
Integrations
COMPARE CHECKMARX
vs. Snyk
vs. GitHub
vs. Veracode
vs. Fortify
vs. Black Duck
vs. Semgrep
RESEARCH
Checkmarx Zero
Research Blog
Disclosed Vulnerabilities
Open-Source Tools
Resources
Analyst Reports
Product Demos
Solution Briefs
Videos
Webinars
Whitepapers
LEARN
Blog
Documentation
Glossary
Knowledge Hub
Customer Enablement
The 2025 Gartner® Magic Quadrant™ for Application Security Testing
Watch now
IDC MarketScape for ASPM 2025
The Forrester SAST Wave 2025
Checkmarx One Solution Brief
COMPANY
About Us
Leadership
Press Releases
Newsroom
Events
Careers
PARTNERS
Partner Directory
Become a Partner
GET IN TOUCH
Support Portal
Contact Us
Case Study
Checkmarx One enabled Best Buy to secure one of the most challenging digital ecosystems in retail, reducing false positives by 80%, scanning billions of lines of code monthly, and empowering 3,000 engineers to release software at speed without compromising security.
Industry
Retail & Technology
Location
United States
Checkmarx Solutions & Services
Cut false positives by 80%
27,000 scans/month secured 2.1B LoC across thousands of CI/CD pipelines
Empowered 3,000+ engineers across 300 teams
The Need
Best Buy’s application environment is massive, comprising:
“Our environment is deceptively large,” says Matthew Hurewitz, Director of Application Security, when addressing Best Buy’s complex security posture. “We support nearly every language and framework you can imagine” Mathhew explains further and adds jokingly -“Some of our applications are old enough to drink.”
To secure this scale and complexity, Best Buy needed a modern AppSec platform that could:
The Solution
Best Buy used Checkmarx One to centralize scanning, triage, and remediation across SAST, SCA, and CI/CD pipelines. With strong support from Checkmarx, the Best Buy team was able to:
The Results
Real-Time Risk Reduction and Streamlined Operations at Peak Enterprise Scale
Following its adoption of Checkmarx One, Best Buy cut false positives by 80%, secured 27,000 monthly scans across thousands of CI/CD pipelines, and empowered more than 3,000 engineers across 300 teams to release software quickly and securely.
These improvements streamlined vendor management, reduced technical debt, and gave leadership clear analytics to demonstrate ROI and prioritize risk with confidence.
“Who you do business with is ultimately about relationships. After many years of partnership, Checkmarx is deeply invested in our relationship. They really care about our ability to meet the needs of our engineering organizations and ultimately our customers.”
Matthew Hurewitz
Director of Application Security