DevOps Dozen 2023 – Tools & Services Finalists

Category 13.1 – Best End to End DevOps Tool/Service – A

Consolidation in the DevOps space has led to a greater selection of platforms offering end-to-end solutions. This award honors the platform with the most diverse and robust solution for DevOps teams.

The Netlify Platform: Netlify – “Netlify is a leading platform in modern composable web development, connecting developer tools and workflows to build and run millions of sites, stores & apps.
Netlify includes release management, web operations, network security, CDN provisioning, CI/CD for the web experience layer, observability instrumentation, autoscaling and more. By abstracting away traditional operations, time to market is greatly improved and on average Netlify enterprise clients publish 28 times to production per day.”

Sourcegraph’s Code AI Platform: Sourcegraph – “Sourcegraph is a code AI platform that makes it easy to read, write, and fix code“even in big, complex code bases.

Our code graph powers Cody, the most powerful and accurate code AI for writing, fixing, and maintaining code, and Code Search, helping devs explore their entire codebase and make large-scale migrations and security fixes. Our customers include 4 of the top 10 banks, 4/5 FAANG companies, government orgs, Uber, Plaid, + many others building software that pushes the world forward.”

PagerDuty Process Automation: PagerDuty – “PagerDuty Process Automation, based on the open source project Rundeck, provides a design time and run time environment for orchestrating automated IT and DevOps operational workflows that span across teams, technologies, and environments.

Process Automation is seamlessly connected with the rest of PagerDuty Operations Cloud, so that:

– PagerDuty AIOps can trigger incident diagnostics
– Incident responders can invoke runbook remediations
– Support engineers can validate customer issues”

Morpheus v6.x: Morpheus Data – Morpheus is a unified orchestration platform designed to provide a paved road to Developers and satisfy the needs of IT, Security, and Finance teams. What began as an internal developer platform to modernize apps within a $4B PE portfolio has grown into a leading enterprise software solution used to fully automate the end-to-end lifecycle of millions of applications. It integrates disparate tools and clouds to enable PlatformOps for hundreds of enterprises, system integrators, and MSPs.

Harness Software Delivery Platform: Harness – Harness is a leading end-to-end software delivery platform improving the developer experience and empowering the 30 million software developers worldwide with a comprehensive solution to deliver software to their end-users with velocity, security, reliability, and efficiency. Harness has modules to cover every step of the software delivery lifecycle, including building, testing, securing, deploying, managing reliability, and optimizing cloud costs with AI/ML infused throughout.

Copado: Copado – Over the past decade, DevOps has transformed the way organizations develop, deliver, and maintain software, enabling them to achieve faster time-to-market, improved quality, and increased collaboration. Copado is the leading DevOps platform and they built a market-leading solution that enables enterprises to automate, extend and customize their DevOps processes by offering CI/CD, data deployments, monitoring, agile planning, testing, compliance and omnipresent AI right out of the box.

Bitrise: Bitrise – Bitrise’s Mobile DevOps platform automates the most labor-intensive tasks in the mobile app development lifecycle, including testing, building, troubleshooting, deployment and other critical steps across the release cycle. The platform features more than 400 tools and integrations that, together, make up the complete mobile app development workflow. Its end-to-end solutions enable users to release app updates faster and more frequently, and focus on the product innovation necessary to compete.

Category 13.2 – Best End to End DevOps Tool/Service – B

Consolidation in the DevOps space has led to a greater selection of platforms offering end-to-end solutions. This award honors the platform with the most diverse and robust solution for DevOps teams.

Rootly: Rootly – Rootly offers the best enterprise-grade incident management platform, proven to help accelerate incident resolution times by 80 percent or more. Rootly’s simple and configurable platform can be set up in 10 minutes, and with 50+ integrations automates manual admin work such as paging responders, incident creation, tracking action items and metrics, stakeholder communication, and generating retrospectives.

Reliability Management: Sumo Logic – “Sumo Logic Reliability Management is a new observability capability from Sumo Logic. It helps organizations adopt a more proactive and fundamentally better approach to measure and improve the reliability of their distributed applications.

With Sumo Logic Reliability Management, organizations gain the real-time metrics needed to power data-driven decision-making and balance performance, innovation and service reliability.”

Opsera Unified DevOps Platform: Opsera – The Opsera Unified DevOps Platform offers comprehensive orchestration for automated CI/CD pipeline creation and management, a robust selection of pre-built integrations and actionable unified performance insights from across your software tools and teams. With Opsera, enterprises achieve faster release cycles, maintain and improve quality, and increase efficiency using data-driven insights. Top Fortune 100 companies speed up their time to market by building, testing, deploying, reporting, and m

Nethopper KAOPS: nethopper.io – Nethopper KAOPS is a GitOps-centric platform engineering as a service, which simplifies the ‘Ops’ in DevOps. It integrates a best-of-breed stack of cloud-native/open-source SW for infrastructure automation, CI/CD pipeline for containers, CD, multi-cluster/cloud application networking, secrets management, and observability with AIOps. KAOPS’ single-UI works across any Kubernetes in any cloud to reduce cognitive load and complexity and accelerate time-to-market by 2+ years: a Jr. Dev can use it.

JFrog Software Supply Chain Platform: JFrog – The JFrog Software Supply Chain Platform unifies, accelerates and secures your software delivery, from development to device. The end-to-end platform offers deeper development, security, and operations integration, in a flexible, and expandable platform that delivers increased security, visibility, and control on-premise, in the cloud, and at the edge.

Digital.ai AI-Powered DevSecOps Platform: Digital.ai – Digital.ai’s AI-powered DevSecOps platform unifies, secures, and generates predictive insights across the software delivery lifecycle.

BMC AMI DevX: BMC Software – BMC AMI DevX is the best end-to-end platform for DevOps. This platform includes automation tooling for every step of the SDLC lifecycle from development through to testing, scanning, and deployment capabilities. It provides all this through our BMC AMI DevX Workbench capability, which is a single pane of glass into the platform. BMC AMI DevX provides you a single place to manage end-to-end DevOps capabilities on the mainframe platform where the core of your business takes place.

Category 14 – Best DevOps Repo/GitOps Tool/Service

Git has led to GitOps and it has become an integral part of the DevOps toolbox. This award is presented to the most outstanding Repo/Git/GitOps tool.

gitStream: LinearB – “Code review is an essential part of software development. However, inefficient pull request (PR) processes impact teams’ cycle times and leave developers feeling frustrated.

gitStream by LinearB is a dynamic rule engine that allows users to define PR conditions and results, providing the flexibility needed to adapt to unique team needs. Engineering teams leveraging gitStream shorten PR reviews by 40%.”

Category 15 – Best CI/CD Tool

This award recognizes the best CI/CD tool that helps teams to deliver quality code more quickly.

OpsMx Secure CD: OpsMx – OpsMx Secure CD is the first software delivery and deployment solution specifically designed for enterprise security and compliance. OpsMx Secure CD combines a comprehensive GitOps multi-cloud delivery and deployment platform with DevSecOps capabilities to automatically enforce and audit security compliance. Enterprises use OpsMx Secure CD to manage security posture, accelerate multicloud and Kubernetes deployments, automate approvals, block vulnerabilities, and enforce policy compliance.

Octopus Deploy: Octopus Deploy – Octopus Deploy sets the standard for deployment automation. We help software teams deploy freely when and where they need, in an easy, automated way. More than 3,000 organizations and 350,000 users worldwide use our universal deployment automation solution to make their complex deployments easy. From modern containers and microservices to trusted legacy applications, Octopus orchestrates software delivery in data centers, multi-cloud, and hybrid IT infrastructure.

Copado: Copado – Designed for the new breed of non-technical and technical low-code delivery teams, Copado enables customers to integrate continuous quality into every branch of code deployed by embedding end-to-end testing. One of the first companies to achieve this milestone, Copado ensures quality, security and compliance across every step of the software development lifecycle. Earlier this year, it was the first to natively integrate testing into its low-code CI/CD DevOps platform.

Codefresh CI/CD Solution: Codefresh – Codefresh is a CI/CD solution for modern applications, helping DevOps teams automate from code to cloud with lightning-fast builds and Canary and Blue/Green GitOps deployments powered by Argo. Codefresh gives developers the control and stability to build and release more frequently while enabling smoother deployments to the cloud, on-prem or edge. Codefresh simplifies the management of apps throughout the lifecycle “ dev, staging, and production “ with a drag-and-drop, single screen experience.

CloudBees CI/CDRO: CloudBees – CloudBees CI/CDRO is an integrated solution that can also be used separately or integrated with other tools. It provides highly scalable, resilient, and flexible CI based on Jenkins. CloudBees CI can handle complex challenges in managing and scaling Jenkins across enterprise environments. CloudBees CD/RO provides application release orchestration and deployment automation. Enterprises use CloudBees CD/RO because they need a governed release process with real-time transparency across the SDLC.

CircleCi: CircleCI – CircleCI is the developer CI/CD tool of choice, enabling 2+ million users globally to rapidly build, test, and deploy code they can trust. Through powerful pipeline automation, CircleCI manages limitless complexity at scale through unmatched flexibility and reliability, giving software teams the confidence to innovate faster (+70% time to market) and accelerate release cycles. With a +20% increase in AI/ML orgs building on CircleCI, it is the standard for modern developers pioneering AI.

Buildkite Pipelines: Buildkite – Buildkite Pipelines deploys on any OS, in any language, offering highly flexible DX that grants full control of DevOps workflows to users. Buildkite Pipelines prioritizes speed, scale and security, allowing users to bring their own compute, separate the SaaS control panel and self-hosted runners, and build unlimited parallelisation. Users can choose to control through the CLI, and can visualize all builds, pipelines, metrics and statuses through the industry-leading UI.

BMC AMI DevX Code Pipeline: BMC Software – BMC AMI DevX Code Pipeline is a modern mainframe CI/CD tool that ensures code pipelines are secure, stable, and streamlined throughout the DevOps lifecycle. Developers gain the confidence of knowing they can quickly and safely build, test, and deploy mainframe code.

Bitrise: Bitrise – Bitrise’s CI/CD platform is built specifically for the nuances of mobile app development, which stem from the increased demand for frequent and fast app store updates. By automating the most labor intensive”and historically manual”tasks in the mobile app development lifecycle, Bitrise users like Reddit and Equinox can release to app stores faster and more frequently. This enables developers to focus on the product innovation necessary to compete in today’s rapidly growing mobile market.

Category 16 – Best Value Stream Management Tool

Value stream management has come into its own as an important tool for measuring the business value of DevOps and application development. This award recognizes the value stream management tool that most effectively helps visualize the value stream, track metrics and measure improvement.

ValueOps by Broadcom: Broadcom – “ValueOps by Broadcom is the industry’s only complete solution for end-to-end value stream management capable of driving digital transformation by bringing visibility, alignment, and efficiency to the entire value stream lifecycle.

It’s the first industry solution to add Value to Value Stream Management, by extending the VSM concept beyond DevOps and operational roles to include capabilities and metrics that matter to business leaders “ like demonstrating return on investment across an entire”

Planview Value Stream Management: Planview, Inc. – Planview’s Value Stream Management solution optimizes value stream delivery by connecting software delivery toolchains from end-to-end, providing visibility and traceability into the flow of work across the entire value stream. Flow Metrics and Portfolio Insights are generated so business leaders can make informed, data-driven decisions that reduce operational costs and inefficiencies, and improve work predictability and time-to-market.

LinearB: LinearB – Value stream management is an integral part of DevOps, but without the right platform in place, reducing waste and improving efficiencies is difficult. LinearB offers a purpose-built platform that provides visibility for engineering teams to optimize workflows and improve productivity. Now, engineering leaders can ensure projects and resources are aligned with business priorities and objectives.

Digital.ai’s Value Stream Management Tool: Digital.ai – Digital.ai’s Value Stream Management Tool unifies, secures and generates predictive insights across the software lifecycle, empowering teams, propelling innovation and enhancing business value.

Allstacks Platform: Allstacks – Allstacks has created a platform to make it easier for software development teams and engineering leaders to align their work to the needs of the business, improving visibility across the organization and empowering teams to deliver software both more predictably and efficiently. Sales and marketing teams can get frustrated by unforeseen changes with the production schedule, while engineering teams can feel misunderstood, undervalued, and left out of the decision-making process

Category 17.1 – Best Observability Solution – A

This award recognizes the best observability solution for observing and monitoring to understand the performance of individual components, systems and entire applications.

The New Relic All-In-One Observability Platform: New Relic – The most widely used observability platform New Relic delivers the only unified data platform for all telemetry paired with powerful full-stack analysis tools in one connected experience as part of the existing DevOps workflow. Delivered through intuitive, predictable usage-based pricing, the New Relic all-in-one observability platform offers 30+ capabilities and continuously expands with cutting-edge innovations, like New Relic Grok, so engineers can do their best work with data, not opinions.

StackState: StackState – “Designed to help engineers and developers who build and support Kubernetes applications, StackState’s advanced observability platform helps teams fix problems fast and stop them from reoccurring so they can optimize performance, seamlessly collaborate across teams and deliver more innovation.

Leading enterprises like KPN, Vodafone, Accenture and Danske Bank rely on StackState. In fact, Accenture saw a reduction of 400 incidents per week to less than 2 per week with implementation of StackState”

Observe: Observe.Inc – Observe is a SaaS observability platform reinventing the way telemetry data is stored, managed and analyzed. Observe enables Engineering and DevOps teams to troubleshoot modern distributed applications an order of magnitude faster, improving customer experience and reducing churn. Observe is the only observability platform delivering real-time insights on data volumes exceeding one petabyte per day – eliminating silos of logs, metrics & traces by storing all data in a central, low-cost data lake

Memfault: Memfault – Memfault offers the leading IoT observability platform that gives DevOps teams a more scalable and sustainable cloud-based process to build and operate more reliable IoT devices.Founded by embedded engineers at Fitbit, Oculus, and Pebble, Memfault helps devs accelerate go-to-market, de-risk product launches, cut product costs, and deliver overall superior products. Memfault’s platform works on most IoT devices with cross-platform support for MCU (including RTOS & bare metal), Android, & Linux.

Lightrun Observability Platform: Lightrun – Lightrun is transforming the way developers troubleshoot their remote and distributed workload application. With its Shift Left strategy, Lightrun empowers developers to debug in runtime the most complex applications including cloud-native, servereless, legacy/monolith, feature flags, CI/CD, and more directly from the developers IDEs. With dynamic instrumentation abilities, developers can add conditional and sophisticated logs, snapshots and metrics to apps in runtime without redeployments.

Grafana Cloud Free Tier: Grafana Labs – Grafana Cloud extends observability beyond metrics, logs, & traces with a wide range of solutions for infrastructure monitoring, IRM, load testing, Kubernetes monitoring, continuous profiling, frontend observability, & more. The “actually useful” Cloud Free tier, has now expanded to include access to the entire catalog of Enterprise plugins and other features previously only available in Grafana Labs’ paid offerings, helping meet users where they are, without a high barrier to entry.

Cribl Stream: Cribl, Inc. – Cribl offers an observability pipeline for DevOps and SREs to collect and receive observability data from multiple sources, shape and reformat the data, and route it to the right destination. Cribl integrates with popular observability tools and frameworks like OTEL, Datadog, Dynatrace, Grafana, Honeycomb, and New Relic. With choice and control over observability data, Cribl users can observe more and spend less.

BMC Helix Operations Management with AIOps: BMC Software – Harness the power of complexity with BMC Helix Operations Management with AIOps observability. Turn the modern flood of data into a competitive advantage. 1.3M metrics are ingested EVERY second. The ONLY AIOps solution with topology reconciliation, it is designed to empower organizations using advanced AIOps capabilities. This provides a holistic view of IT infrastructure health and performance, enabling teams to proactively identify and resolve issues before they impact business operations.

Apica: Apica – Apica is a leading data management and active observability company that gives customers limitless data, 100% control over their own data, and contextualized insights for any device, authentication service, or application. The Ascent platform delivers active observability, automated root cause analysis, and advanced data management to quickly find and resolve complex digital performance issues before they negatively impact the bottom line. Apica keeps enterprises operating.

Category 17.2 – Best Observability Solution – B

This award recognizes the best observability solution for observing and monitoring to understand the performance of individual components, systems and entire applications.

vFunction Architectural Observability Manager: vFunction – vFunction, the continuous modernization platform, introduced Architectural Observability Manager (AO) in 2023. It’s the first application modernization solution to continuously manage and remediate architectural technical debt and automate refactoring. Architectural Observability Manager (AO) empowers software architects to deeply understand their software architecture and manage, find, and fix architectural technical drift and debt in their applications.

SolarWinds Observability: SolarWinds – SolarWinds® Observability is a fully integrated, cloud-native software as a service (SaaS) solution offering unified and comprehensive visibility across the entire technology stack. By utilizing AI/ML powered Health Scores, it supports modern and custom web applications to help ensure key service-level objectives are met and optimal user experiences are delivered. SolarWinds Observability enables DevOps teams to accelerate innovation and deliver better applications faster.

Nobl9 Reliability Center: Nobl9 – Nobl9 Reliability Center aggregates system reliability data across platforms and applications, sitting on top of customers’ current monitoring and observability systems and empowering them to set service level objectives and track error budgets, no matter which tools are used. This granular view allows users to quickly understand the reliability of their software and operations allowing them to make key business decisions in real-time about the resiliency of their system.

Mezmo Telemetry Pipeline: Mezmo – Mezmo is transforming DevOps, arming teams with actionable insights to more efficiently develop and debug their applications. Mezmo’s Telemetry Pipeline makes it easy for DevOps teams to deliver outcomes faster by unlocking telemetry data stuck in system silos to provide a complete view into applications, deployments, and more. It gathers the data, helps DevOps teams understand it, transforms it, and then delivers the right data to the right people and tools for faster dev cycles, accelerated de

Logz.io Open 360™ Platform: Logz.io – Open 360 is Logz.io’s observability platform that unifies log, metric, and trace analytics. Effortless to deploy, scale, and manage, the cloud-native SaaS platform integrates with an existing stack and handles the entire data pipeline, seamlessly scaling up and down as data volumes change. Open 360 unifies and enhances the world’s most familiar open source observability technologies that millions of engineers already rely on, reducing total cost of ownership of observability and reducing MTTR.

Honeycomb.io: Honeycomb.io – Honeycomb is the leading observability platform that enables engineering teams to find and solve problems they couldn’t before. It enables engineers to answer novel questions about their ever-evolving cloud applications, so they can deploy confidently, resolve incidents faster, and focus on high-value work that drives innovation.

Edge Delta: Edge Delta – Edge Delta is a new way to do observability. We are the only provider that processes your data as it’s created and give DevOps and SRE teams the freedom to route it anywhere. As a result, customers can make observability costs predictable, surface the most useful insights, and shape your data however they need.

Cisco Observability Platform: Cisco – “The Cisco Observability Platform is a vendor-agnostic solution that harnesses the power of Cisco’s portfolio. It delivers contextual, correlated, and predictive insights that allow customers to:

-resolve issues more quickly

-optimize experiences

-minimize business risk

This industry-leading offering enables a new observability ecosystem that brings data together from multiple domains including application, networking, infrastructure, security, cloud, sustainability, and business sources.”

BMC AMI zAdviser Enterprise: BMC Software – BMC AMI zAdviser Enterprise harnesses data from the BMC AMI DevX toolset to empower organizations with precise insights into the software development lifecycle (SDLC) on the mainframe. With application development KPIs, artificial intelligence and machine learning (AI/ML)-driven anomaly detection, and prescriptive analytics, the solution further optimizes development processes for everyone on the software delivery team to improve decision-making and enhance code quality to minimize technical deb

Category 18.1 – Best DevSecOps Solution – A

This award honors the best DevSecOps solution, which enables security to be included earlier and continuously throughout the SDLC.

Progress Chef: Progress – “Progress® Chef® is an industry-leading portfolio that addresses the full spectrum of DevOps and DevSecOps, using a single ˜as code’ framework to configure, deploy and manage virtually any asset on any cloud to any edge, including support for any infrastructure or application including cloud-native assets like Kubernetes and public cloud services.

Chef is being used by 1000+ customers worldwide across technology, financial services, retail, healthcare, travel, manufacturing, government,”

Mend Application Security Platform: Mend.io – Mend Application Security Platform is the industry’s first-ever solution for automated remediation of custom source code security issues and the first platform to automatically find and fix application security holes involving both open source and custom code. The platform delivers automated and reduced remediation time (80%) for SCA and SAST directly in the developer’s repository. Organizations such as IBM and Microsoft leverage the platform to reduce security risk and increase productivity.

GitLab: GitLab – GitLab helps customers accelerate their digital transformation initiatives through every step of the software development lifecycle, and supports all functions responsible for delivering software, including development, security, and operations. GitLab’s AI-powered DevSecOps platform helps organizations build better, more secure, software faster, while increasing operational efficiency and reducing security and compliance risk.

Digital.ai AI-Powered DevSecOps Platform: Digital.ai – Digital.ai provides a DevSecOps solution that delivers better, more secure software by not only integrating security early in the development cycle, but also monitoring apps in production for attacks.

Dazz Remediation Cloud: Dazz – Dazz stands for DevSecOps A 2 Z and in true form was created to help security teams and engineers solve one of the biggest pain points in cloud development ” remediation. The company’s SaaS platform, called the Dazz Remediation Cloud, uses AI, root cause analysis, and data correlation to automate complex processes and allow development teams to rapidly prioritize efforts, maximize efficiency, and eliminate risk.

CodeSonar: CodeSecure – CodeSecure CodeSonar is a SAST solution that enables organizations to create and release high quality, secure software even in embedded software development pipelines. Using CodeSonar, developers can implement security early and throughout the Software Development Life Cycle (SDLC), without impacting innovation or slowing time-to-market. CodeSonar saves time and money by detecting problems as they are introduced so they can be fixed before a product reaches testing or customers.

CodeSentry: CodeSecure – CodeSecure CodeSentry addresses software supply chain security by detecting open source security vulnerabilities under the hood in third party code. Specifically, CodeSentry uses binary software composition analysis (BSCA) to identify known threats (CVEs) and common weakness enumeration (CWE) errors in externally developed software components without the need for access to source code. Developers use CodeSentry to verify the contents, security and safety of third-party software components they

Broadcom SBOMz: Broadcom – Broadcom SBOMz is a mainframe native tool for generating Software Bills of Material. SBOMs are a key component in evolving software supply chain security and policy automation best practices. Using SBOMs, organizations can easily verify what makes up the software being consumed and ensure it has not been compromised and is safe to use. Applying supply chain security practices to mainframe ensures a single standard for security is met across the enterprise.

Category 18.2 – Best DevSecOps Solution – B

This award honors the best DevSecOps solution, which enables security to be included earlier and continuously throughout the SDLC.

Xygeni Software Supply Chain Security Solution: Xygeni Security – Xygeni solution safeguards the SDLC from the earliest stages. Unparalleled observability enables every asset to be automatically accounted for and secure. Continuous scanning for vulnerabilities ensures OSS components are risk-free. Automated CI/CD testing protects the DevOps infra and pipelines from misconfigurations, leaked secrets, tampering and malicious code. For unresolved issues, our anomalous activity detection identifies threats in real time to enable immediate response and security.

Tanzu Application Platform: VMware – VMware Tanzu Application Platform is a single, end-to-end integrated platform solution that provides development teams a ‘golden path,’ a pre-paved path to production to get code running on any compliant public cloud or on-premises Kubernetes cluster, enabling security and scale.

ReversingLabs Software Supply Chain Security platform: ReversingLabs – Gartner reports that 45% of organizations will suffer from software supply chain attacks by 2025. ReversingLabs helps customers address software build security with its proprietary, differentiated static binary analysis technology. This technology conducts the final build exam of fully compiled and signed software packages – a complex mix of internally developed code, open source code and packaged binaries – to ID potential software supply chain breaches and ensure final build integrity.

Moderne: Moderne, Inc. – Security vulnerabilities are outpacing remediation efforts, overwhelming developers. The Moderne platform provides rich insights into security issues in a codebase and can auto-remediate code weaknesses and vulnerabilities at scale. By automating the shift left of security, Moderne enables development teams to put security concerns at the top of their lists and close them out fast, while still meeting the needs of the business.

Lineage AI with BOMbots: Lineaje – BOMbots, powered by Lineaje AI, are AI-based automation bots that analyze deep software bill of materials (SBOMs) to deliver optimized remediations across the entire supply chain. BOMbots create intelligent recommendations, enabling developers and security analysts to make better decisions ” resulting in software that is more secure and delivered with efficiency. Using BOMbots, software producers can reduce effort spent on software by up to 40% and cut software upgrade costs by the same amount.

JFrog Curation: JFrog – JFrog Curation blocks the use of risky open source software packages without compromising development speed or the developer experience. JFrog Curation uses binary metadata for identifying malicious packages with higher-severity CVEs, operational, or license compliance issues. This removes the need to download each package for scanning before use, thus preserving developer ease and speed.

DuploCloud DevOps Automation Platform: DuploCloud – “DuploCloud is a revolutionary no-code/low-code software automation and compliance platform designed to meet all your cloud infrastructure needs. Designed for organizations building cloud-native applications or
migrating to the cloud, DuploCloud acts as a digital subject matter expert across hundreds of services in AWS, Azure, GCP, Kubernetes, Security, and IoT, among others.”

API Security: Graylog, Inc – “Graylog: Redefining DevSecOps Excellence

Graylog excels as the Best DevSecOps Solution by prioritizing the analyst experience, offering an open, integrative platform, embracing open-source principles, and enabling data exploration. Our innovative approach empowers users to uncover insights, not just structured search queries. Graylog revolutionizes API security and is the choice for forward-thinking organizations.”

Category 19 – Best Testing Service/Tool

Testing is a mainstay in the DevOps toolchain, and this award recognizes the best testing tool for ensuring the quality of code.

Tricentis Mobile: Tricentis – Tricentis Mobile is a cutting-edge solution that empowers organizations to streamline mobile app testing processes. It integrates low-code authoring and real/virtual device testing, accelerates app delivery, resolves performance issues, and ensures superior quality cementing Tricentis as the most comprehensive end-to-end mobile testing solution on the market. Tricentis Mobile offers unmatched flexibility, coverage, and insights across the development cycle, making mobile testing seamless.

Telepresence: Ambassador Labs – Telepresence is a Kubernetes native tool created to bridge the gap between local and remote development environments- accelerating collaborative development, debugging, and testing for Kubernetes users. Utilizing Telepresence, developers working on Kubernetes can code as if their laptop is in the cluster. With increased feedback loops, faster app dev and delivery, and reduced cloud infrastructure cost, Telepresence is simplifying your Kubernetes journey.

SonarQube: Sonar – “SonarQube provides value to development teams and enterprises with their Clean Code delivery from development to production.
SonarQube is an open-source based product used for continuous inspection of code quality that also has a commercial offering that includes additional capabilities for enterprises. It automatically reviews code to detect bugs, code smells, and security vulnerabilities. SonarQube integrates into a Continuous Integration/Continuous Deployment (CI/CD) pipeline of most DevOps”

Sauce Labs / Sauce Orchestrate: Sauce Labs – Sauce Labs is a leader in providing cutting-edge continuous testing and error-reporting solutions that streamline the creation, delivery, and enhancement of high-quality code. Sauce Labs provides a complete solution to optimize testing speed, efficiency, and scalability. In 2023 Sauce Labs launched Sauce Orchestrate, the all-in-one, purpose-built solution for both browser and mobile testing which enables their customers to complete comprehensive testing 70% faster.

Digital.ai Continuous Testing: Digital.ai – Digital.ai Continuous Testing is a scaleable web and mobile app testing solution that helps teams increase test coverage and make data-driven decisions so they can deliver high-quality, error-free web and mobile apps on time and at scale.

Copado: Copado – Designed for the new breed of non-technical and technical low-code delivery teams, Copado enables customers to integrate continuous quality into every branch of code deployed by embedding end-to-end testing. One of the first companies to achieve this milestone, Copado ensures quality, security and compliance across every step of the software development lifecycle. Earlier this year, it was the first to natively integrate testing into its low-code CI/CD DevOps platform.

Buildkite Test Analytics: Buildkite – Buildkite Test Analytics empowers developers to monitor various testing phases within their pipelines, identifying wasted compute, improving reliability and deploying code with confidence. Compatible with all Continuous Integration platforms, developers can accelerate code deployment to production through test suite optimization. Buildkite Test Analytics can also detect, resolve, and oversee test performance issues as well as monitor and enhance the reliability of test suites.

BMC AMI DevX Total Test: BMC Software – BMC AMI DevX Total Test enables developers to automate all aspects of both virtualized and non-virtualized testing, including unit, functional, system, integration, and regression testing. By creating and executing virtualized and non-virtualized tests, developers can create a comprehensive regression test suite that covers all potential failure scenarios, ultimately saving time and resources.

Applitools: Applitools – Applitools is the pioneer in leveraging AI for testing, offers the next-generation test automation platform powered by Visual AI and has products that add AI into every step of the testing pipeline. Applitools Eyes replicates the human eye to automatically spot functional and visual bugs in every release. With Applitools’ Ultrafast Test Cloud, Native Mobile Grid, Ultrafast Grid, Centra and Execution Cloud, design, dev, QA, Ops, marketing and product teams are integrated into the testing process.

Category 20 – Best Kubernetes Platform/Service

The adoption of containers has paved the way for an entire solutions ecosystem supporting and enhancing the container technology. Kubernetes is perhaps the most widely recognized and utilized tool in the space. There are many platforms and services that offer Kubernetes based solutions. This award honors the best Kubernetes platform/service available.

Rafay Systems: Rafay Systems – Rafay offers a Cloud Automation Platform purpose-built for platform teams. It streamlines processes, providing automation and governance features to standardize Kubernetes toolsets and workflows. Moneygram, GuardantHealth and Verizon utilize Rafay to seamlessly manage Kubernetes across various environments ensuring centralized control and automated capabilities that enhance the overall experience for developer and operation teams.

Kalix: Lightbend – Kalix is a PaaS developed by Lightbend that enables organizations to quickly build and deploy event-driven microservices and APIs at the lowest possible cost. It provides an out of the box cloud native stack that delivers a 200% increase in developer velocity with minimal operations required. It provides a unifying app layer that integrates the necessary pieces”including databases, message brokers, caches, service meshes, API gateways ”and exposes them into one single unified model.

Edge Delta: Edge Delta – Edge Delta helps teams monitor Kubernetes resources and troubleshoot issues “ without compromising scale or going over budget. Using a distributed architecture, Edge Delta helps teams support growing data volumes as they adopt Kubernetes. More specifically, Edge Delta processes logs and metrics as they’re created at the source, enabling teams to reduce costs without sacrificing visibility. Additionally, they can surface insights and trigger alerts before data leaves their environment.

BMC Helix Operations Management with AIOps: BMC Software – “BMC Helix is instrumental in driving transformative change within the DevOps community, with an innovative platform that fosters collaboration, automation, and continuous improvement.
The cutting-edge, cloud-native operations and service management platform is designed to accelerate digital transformation. Robust features and capabilities are tailored to meet the evolving needs of modern DevOps teams, with seamless integration and collaboration across the entire software development lifecycle.”

Category 21 – Best Cloud Native Security Solution/Service

The cloud-native movement has taken the IT world by storm due to the depth and breath of the solutions available and the benefits of building applications and services specifically for cloud-native environments. This award recognizes the best tools, solutions and services considered cloud-native.

The Orca Cloud Security Platform: Orca Security – Orca is the pioneer of agentless cloud security that deploys in minutes and is trusted by hundreds of enterprises globally. Its patented SideScanningâ„- technology provides 100% visibility into risks and compliance issues across cloud workloads, configurations, and identities, and covers the entire SDLC. Orca’s AI-driven platform enhances risk detection, simplifies investigations and speeds up remediation for cloud security, DevOps and development teams.

The Aqua Platform: Aqua Security – Aqua stops cloud native attacks with the industry’s first unified cloud native application protection platform (CNAPP), featuring intelligence-driven cloud native detection and response capabilities. Aqua secures customers’ cloud native assets from day one, from code to cloud and back, and protects them in real time. Aqua ensures that prevention is automated and response is immediate, and it guarantees that protection with a $1M warranty.

Tetrate Istio Subscription (TIS): Tetrate – Tetrate Istio Subscription (TIS) is the industry’s only fully upstream service based on open source Istio, delivering training, architectural workshops, expert enterprise production support, best practices and, critically, extended CVE support. FIPS verified and fully compliant with NIST 207A and FedRAMP, TIS speeds application development, reduces security risks, and streamlines operations for increased MTTI & MTTR for critical apps.

Tenable Cloud Security: Tenable – With Tenable Cloud Security CNAPP you can easily ramp up security across all your AWS, Azure and GCP environments. From full asset discovery and deep risk analysis to runtime threat detection and compliance, you can reduce complexity, minimize your cloud exposure and enforce least privilege at scale. Tenable’s comprehensive approach accurately visualizes and prioritizes security gaps, and gives you the built-in expertise and tools you need to remediate the risks that matter most.

Sysdig Secure: Sysdig – In the cloud, every second counts. Attacks move at warp speed, and security teams must protect the business without slowing it down. Sysdig stops cloud attacks in real time, instantly detecting changes in risk with runtime insights and open source Falco. Sysdig correlates signals across cloud workloads, identities, and services to uncover hidden attack paths and prioritize real risk. From prevention to defense, Sysdig helps you focus on what matters: innovation.

Sumo Logic SaaS Log Analytics Platform: Sumo Logic – The Sumo Logic SaaS Log Analytics Platform is a leading cloud-native solution that allows customers to ingest data from across their ecosystems and transform cloud complexity into insights for developers and security operations. DevOps teams can proactively monitor applications in production environments for bugs, quickly detect security threats with the latest threat intelligence, and capture application and infrastructure performance metrics that improve business decision making.

JumpCloud Directory Platform: JumpCloud – Organizations running cloud-native technologies and SaaS models of virtualized compute, storage, analytics and more need solutions that reduce complexity and package functions in disparate stacks into more-easily-deployable solutions. JumpCloud offers an open directory platform that unifies and secures user access across an entire employee base’s workflow, irrespective of protocol, platform, provider, device type, or location.

Fleet Endpoint Security Platform: Fleet Device Management, Inc. – Fleet is a platform for IT and security teams with thousands of endpoints. Based on osquery, the leading open-source security agent, Fleet is dedicated to opening up IT and security through a living, breathing API, while maintaining scope transparency through open-source software. Organizations like Fastly and Gusto use Fleet for vulnerability management, endpoint operations, device trust, HIDS, FIM, posture assessment, device management, and more.

Dazz Remediation Cloud: Dazz – Dazz revolutionizes how security and development teams work together to rapidly fix cloud native application and infrastructure issues and reduce risk. The company’s flagship solution, the Dazz Remediation Cloud, analyzes data from development and cloud environments and cloud security tools to automate how teams cut alert noise, prioritize issues, identify root causes, and streamline fixes ” all in a developer-friend workflow.

Cyera: Cyera – Cyera’s unified data security platform is AI-powered and agentless, delivering a cloud-native solution to stop data breaches and assure compliance for the cloud era. The platform automatically develops deep knowledge of all of an enterprise’s sensitive data everywhere – across IaaS, DBaaS, SaaS and on-prem datastores – and automates the remediation of security and compliance exposures. With Cyera, security teams have the foundational platform to know their data and keep it secure.

Britive Identity Security Platform: Britive Inc. – Britive empowers organizations to secure identities and simplify access so they can accelerate the adoption of cloud infrastructure, apps and data while preventing identity-based security breaches and operational disruptions. Britive’s cloud-native Identity Security Platform is API-based and deploys in hours, not months like legacy PAM offerings. Our patented solution enables CloudOps, DevOps and Security teams to manage account permissions to eliminate the risk posed by over-privileged accounts

Axiomatics’ Orchestrated Authorization Solution: Axiomatics – Axiomatics’ Orchestrated Authorization solution delivers a cloud-native secure and dynamic application experience. This attribute-based and policy-driven authorization solution avoids the pitfall of over-privileged users, role explosion, and access token bloat. It enables policy-as-code authorization, drives policy definition through a drag & drop GUI, tests your policies and audits your access logs to prove compliance with legal and business requirements.

Category 22 – Best DevOps for Mainframe Solution

Mainframes are far from being the dinosaur of the IT world, and a variety of solutions are available for enabling DevOps practices in mainframe environments and hybrid environments. This award recognizes the best of them.

Wazi Deploy: IBM – Wazi Deploy is a brand new innovation that drives z/OS application deployment with a base of open source & standardized scripting using Redhat Ansible. It also allows customizations, a key requirement for z/OS clients, and integrates seamlessly into an enterprise pipeline, helping clients automate continuous deployment for z/OS applications. Wazi Deploy enables GitOps for z/OS customers, thus being the main ingredient required to be able to help z/OS clients transform to new DevOps practices.

Rocket DevOps 10.2.2: Rocket Software – Rocket DevOps 10.2.2 enables IBM i developers to integrate AI and popular open-source and third-party tools into mission critical mainframe applications. This includes Git, JIRA, Jenkins, and VS Code. The new integration allows fresh talent to experiment with new technology without compromising agility or causing disruptions to core operations. Rocket DevOps 10.2.2 is the premiere tool for organizations looking to adopt new technology at their own pace.

PopUp Mainframe: PopUp Mainframe – “PopUp Mainframe is a cutting-edge mainframe modernisation product.

PopUp enables customers to take mainframe on their DevOps journey by creating fully functioning z/OS instances on-demand, on-prem or in the cloud, and controlling them through pipelines. This overcomes dev and test mainframe unavailability – the number one blocker to mainframe DevOps.

PopUp liberates mainframe teams, enabling automation, DevOps innovation and continuous improvement with no risk to the physical mainframe.”

Code4z: Broadcom – It’s hard to shift left when you’re using green screens. DevOps is built on developer empowerment, yet those responsible for mission-critical mainframe apps are limited to pre-DevOps tooling and enterprises struggle to reap the full benefit as a result. Enter Code4z, a free and open extension pack for the phenomenally popular VS Code. Built on the DevOps Dozen-winning Zowe open-source framework, Code4z unlocks shift left practices for mainframe developers by delivering a modern agile experience.

BMC AMI DevX tool suite: BMC Software – BMC empowers the next generation of developers to make the mainframe as adaptive as any other platform. With unparalleled agile application development, testing, and delivery, BMC AMI DevX provides a mainframe-inclusive DevOps toolchain that accelerates innovation and resiliency. BMC AMI DevX enables organizations to automate mainframe application development with a cross-platform DevOps toolchain and integrations that improve velocity, quality, and efficiency to power innovation.

Category 23 – Best DevOps for DataOps/Database Solution

Databases often have been left out of the DevOps conversation, but that is changing. This award recognizes the best database related solution for DevOps and DataOps.

TDengine: TDengine – TDengine™ is the popular open-source data platform purpose-built for time-series data. TDengine is designed to ingest, process, and analyze internet of things (IoT), industrial internet of things (IIoT) and time-series data at scale and is used in more than 50 countries worldwide. TDengine breaks down data silos, brings the benefits of AI to the IoT and IIoT sectors, and enables centralization, advanced analytics, and sharing of data.

Percona: Percona – Percona offers a unique combination of enterprise-grade open source software, support, managed services, and automated insights that, together, enable users to better monitor, manage, secure and optimize databases on any infrastructure. Percona supports all deployment configurations, improves developer velocity and self-service, and empowers organizations to scale, innovate, and improve efficiency.

Flyway: Redgate Software – The database has joined the DevOps conversation, with developers, IT teams and enterprises recognizing that including the database in the development process enables value to be released to customers faster, while minimizing deployment errors. The popular open source database migration tool, Flyway, is proving to be key to this, giving users an easy way to automate database migrations across over 30 different databases. By integrating the database into existing continuous integration and continu

Coalesce Data Transformation Platform: Coalesce – Coalesce helps data experts transform data as efficiently as possible and manage incremental changes to data pipelines “ laying the foundation for safer and more predictable DataOps when building data warehouses through automation, version control, and data lineage. With Coalesce, data teams can build and manage data pipelines at least 10x faster and focus on what matters most: quickly generating value from data without sacrificing confidence, speed, or efficiency across their organization.

BMC AMI DevOps for Db2® – BMC Software and BMC AMI SQL Performance for Db2® – BMC Software: BMC Software – Organizations adopting DevOps and DataOps face the challenges of siloed teams, delays in implementing database schema changes, unfamiliar tooling, and an inability to diagnose, track, and tune SQL-related performance problems. BMC bridges the gap between developers and DBAs, replacing manual tasks with automation, reducing risk, providing visibility, shift-left database change management, and SQL performance tooling to accelerate application delivery and performance.

Category 24 – Best New DevOps Tool/Service Provider

This award recognizes the best new service provider or tool that has brought innovation to the DevOps space in the past year. (less than 24 months old)

Vercel: Vercel – Vercel is the Frontend Cloud platform for major global companies, such as Sonos, eBay, Nintendo and Under Armour. With its Frontend Cloud, Vercel has reshaped the landscape of frontend software development in 2023 by offering purpose-built tools to craft dynamic websites, enhance AI web applications and eliminate the complexities, costs and time associated with custom infrastructure management. Vercel’s AI tools streamline code optimization, performance enhancement, and workflow simplification.

Tabnine Chat: Tabnine – Tabnine Chat is an enterprise-grade, code-centric chat application that combines the latest large language models (LLMs) with codebase familiarity to transform organizations’ entire software development experience aimed at supporting the workflows of professional developers. Tabnine Chat runs inside any IDE and is contextualized on whatever code the developer is working on in a secure and managed solution.

Sourcegraph’s AI coding assistant, Cody: Sourcegraph – Cody is an AI coding assistant that answers technical questions and writes code directly in the IDE. Using your code graph for context and accuracy, Cody empowers devs to code faster with autocompletions (single lines, whole functions, any programming language, config file, or doc) as well as a chat interface that helps unblock you when jumping into a new project or when trying to understand legacy code. Think of Cody as an always-available senior engineer that knows your codebase.

Recommended Learning Paths: Security Journey – Recommended Learning Paths, launched in October 2023, is a new offering from Security Journey comprising collections of specially chosen lessons designed to elevate security training for individual roles within development teams. The group of lessons have been carefully curated by application security experts to improve knowledge, optimize training time, help meet compliance regulations, and respond to post-breach audit recommendations.

PrefectScale Platfrom: PerfectScale – PerfectScale offers an innovative solution to enhance the performance and resilience of Kubernetes clusters, all while ensuring operational efficiency and cost-effectiveness. By seamlessly integrating into the application delivery processes, it streamlines optimization via intuitive single-click actions or autonomous adjustments. A user-friendly dashboard offers a holistic view of all active applications within clusters, detailing the cost, efficiency, resource wastage, and resilience metrics.

PopUp Mainframe: PopUp Mainframe – “PopUp Mainframe is a cutting-edge mainframe modernisation product.

PopUp enables customers to take mainframe on their DevOps journey by creating fully functioning z/OS instances on-demand, on-prem or in the cloud, and controlling them through pipelines. This overcomes dev and test mainframe unavailability – the number one blocker to mainframe DevOps.

PopUp liberates mainframe teams, enabling automation, DevOps innovation and continuous improvement with no risk to the physical mainframe.”

New Relic Grok: New Relic – New Relic Grok, the first generative AI assistant for observability, eliminates the need for engineers to manually sift through large volumes of data, so any engineer can adopt observability, regardless of prior experience. Powered by OpenAI’s GPT-4, engineers can unlock untapped insights from any telemetry data source and use natural language prompts”in more than 50 languages”like why is my service not working? to perform most tasks, like troubleshooting software issues across their stack.

Firefly Cloud Asset Management: Firefly – The Firefly Cloud Asset Management solution helps DevOps, SRE and platform engineers manage the cloud infrastructure upon which they depend. It creates infrastructure as code (such as Terraform, CloudFormation, etc) directly from existing cloud resources, then uses policies and code and continuous drift detection to keep your cloud configurations aligned to your desired state. It saves time, reduces cloud costs, and improves reliability and security through better cloud management.

Devtron: Devtron – Devtron is a cloud-native, open-source application delivery platform designed to enhance the productivity and well-being of developers and DevOps engineers. It addresses the challenges of dealing with Kubernetes complexity, performing repetitive tasks (toil), and DevOps tooling sprawl. Devtron enables DevOps teams to provide a Developer self-service platform that uses templates and guardrails to accelerate software delivery while ensuring security and compliance.

BMC Helix ServiceOps, BMC Helix Operations Management with AIOps, BMC Helix ITSM: BMC Software – BMC continues its long-standing innovation in the marketplace by being the first to embed GPT across AI-driven service and operations. The BMC HelixGPT solution connects and distills data sources across the enterprise to deliver plain-language, actionable insights for autonomous resolution by connecting AIOps, DevOps, and ServiceOps. By embedding generative AI across the BMC Helix portfolio, our customers can simplify complexity and fuel productivity intelligently.

BMC AMI DevX Code Insights: BMC Software – Working with outdated mainframe systems is an issue for modern developers, with poor documentation, high complexity, and unfamiliar interfaces creating significant roadblocks. BMC AMI DevX Code Insights clears the way for progress by offering intuitive visualizations of mainframe code, helping developers of all experience levels understand interactions, dependencies, and relationships between programs. Developers can make changes to even the oldest and most complex mainframe code with confidence

Applause Crowdtesting Solution for DevOps Teams: Applause – “Crowdtesting is a managed solution model that leverages the expertise of a community of testers from around the world. It offers nuanced insights and advantages that other forms of testing “in-house, lab-based or offshoring“ can’t provide to the same extent.

As bugs progress through the SDLC, they become increasingly more expensive to fix. Applause helps development teams discover bugs sooner in the software development life cycle, significantly improving time to release with fewer flaws.”