AquilaX Docs
Service StatusFeature RequestLogin
  • Documentation
  • Products and Services
    • Demo
      • Security Engineer - Assistant
      • Security Engineer - Chat
      • Scan code Snippet
    • Products
    • Services
      • Vulnerability Triaging
      • AppSec Training
      • DevSecOps Consultation
      • Deployment Options
      • Security Consultation
      • Integrations
    • Company Principles
      • Engineering Principles
      • AI Principles
      • AquilaX Mission
    • Proof of Value (PoV)
    • SLO/SLA/SLI
    • Security Scanners
    • Supported Languages
    • What is AquilaX
    • Success Cases
      • RemoteEngine
    • AquilaX License Model
  • User Manual
    • Access Tokens
    • Scanners
      • Secret Scanning
      • PII Scanner
      • SAST
      • SCA
      • Container Scanning
      • IaC Scanning
      • API Security
      • Malware Scanning
      • AI Generated Code
      • License Scanning
    • DevTools
      • AquilaX CLI
      • CI/CD
        • GitHub Integration
        • GitLab Integration
      • Vulnerability Tickets
        • GitHub Issues
        • GitLab Issues
        • JIRA Tickets
      • IDE
        • VS Code
    • Frameworks
    • Roles
    • Security Policy
    • Comparison
      • ArmorCode vs AquilaX
      • Black Duck vs AquilaX
      • AquilaX vs other Vendors
    • Press and Logo
    • Install AquilaX
    • Public Scan
    • Scanning Setup Guide
    • AI Chat Prompts
  • API Docs
  • Tech Articles
    • Proprietary AI Models
    • AquilaX Securitron
    • Securitron AI Service
    • Secure SDLC (DevSecOps)
    • Bending the technology
    • SecuriTron In Action
    • Future
      • The Future of Code Review
      • Building Superhumans
    • Blog
      • Breaking the Code: AquilaX
      • Rethinking Authentication in 2024
      • Software Supply Chain Security
      • OneFirewall - Network Security
      • The Art of Doing Source Code Review
      • Our Cloud Infrastracture
    • AppSec
      • 10 ‘must’ controls
      • OWASP Top 10
      • MITRE ATT&CK Framework
      • SQL Injection
      • DevSecOps
      • Insider Threats in Application Security
      • Secure API Development
      • RBAC in Applications
      • Security in CI/CD Pipelines
      • Audits in DevSecOps
      • Security Policies
      • S SDLC
      • Multi-Factor Authentication (MFA)
      • API Gateway Security
      • RESTful APIs
      • Microservices
      • Secure API Development
      • API Security Best Practices
    • AI
      • AI part of AppSec
      • NL-JSON Model
      • Findings Review (AquilaX AI)
      • AI-Driven Vulnerability Triage
      • SAST and AI Intersection
    • Tech Events
      • Web Summit 2024
    • ASPM
    • State of Art Secure SDLC
      • Validating Runtime Security
    • Announcements
      • 10 Billion
      • AquilaX Joins NVIDIA Inception
      • AquilaX and Digitense SRL
    • Webinars
      • Unlock the Future of Code Security with AI
  • AI Models
    • AI Scanner
    • Query
    • QnA
    • Security Assistant
    • Review
Powered by GitBook
On this page
  • Proposal
  • Deployment Options
  • Multi tenant
  • Single tenant
  • Private Cloud (On-Prem)
  • Scanning Capabilities
  • Integration
  • Triaging and fine tuning
  • Start a PoV
  • Book a Call with AquilaX

Was this helpful?

  1. Products and Services

Proof of Value (PoV)

Tests your organization code base for vulnerabilites

Proposal

To demonstrate the impact AquilaX can have on identifying and eliminating software security vulnerabilities, we offer a Proof of Value (PoV). This allows your organization to test AquilaX’s capabilities before fully integrating it into your development and CI pipelines. Unlike a standard installation, the PoV focuses on showcasing core features with minimal disruption. It runs transparently in your existing development environment, enabling quick and easy testing without complex setup or deep DevOps integration. This streamlined approach helps developers and leadership assess its value without altering workflows.

Deployment Options

During both the PoV and regular operation, AquilaX offers three deployment modes to suit the specific needs of your organization:

Multi tenant

A shared deployment, hosted and maintained by AquilaX (via https://app.aquilax.ai), where data separation is handled at the permission level. This option provides a quick, easy setup and offloads maintenance to the AquilaX team, offering a hassle-free solution.

Single tenant

A dedicated, isolated instance of AquilaX services is deployed exclusively for your organization. This setup ensures full control and isolation while leveraging AquilaX’s capabilities.

Private Cloud (On-Prem)

Similar to the Single-Tenant option, but deployed within your organization’s infrastructure, whether on-premises or in your own cloud environment. This setup allows for complete internal control and maintenance.

In case of Private or On-prem installation, there is requirements for these VMs

Components
Value
Reasons

VMs

4

Server (x1) + Worker (x2) + GenAI (x1)

CPU

v16

GenAI and multi-scanning

RAM

v32

AI Models required enough RAM

Inbound

HTTPS/443

Access for internal the organization

Outbound / Internet

Via Proxy https

For installation and updates

Intercommunication

Yes (VLAN)

For communication between the servers

Access to Internal Git

Via HTTPS

For accessing the code

Scanning Capabilities

AquilaX integrates a suite of software scanners within its core engine, including:

Integration

We offer multiple scanning integrations, including periodic scans, CICD pipelines, and CLI-based scans. However, for the PoV, we recommend starting with a straightforward approach: granting AquilaX access to your source code environment (e.g., GitHub, GitLab, BitBucket). AquilaX will perform a one-time scan of all repositories, without limitations, and the results will be available on the dashboard for review. This method allows you to quickly assess the value of AquilaX before moving on to deeper integrations with CICD tools like GitHub Actions or CircleCI.

Triaging and fine tuning

After the scans are completed, AquilaX security engineers will conduct triaging and fine-tuning at no cost to remove irrelevant findings that don't align with your context. This service is complimentary during both the PoV and throughout the duration of your contract. It ensures that you get the most value from the product by allowing your engineering team to focus on critical issues that truly matter, while we handle the noise. This service is customized for your organization, enabling the AI models to become organization-specific by learning from your unique environment. Over time, the engine continuously improves, making future scans more intelligent, accurate, and actionable.

Start a PoV

If you're interested in conducting a PoV for your organization and have the budget allocated for Application Security improvements, we will need to schedule a 30-minute meeting to gather the following information:

  1. Preferred deployment option

  2. Codebase and main tech stack in use

  3. Success criteria for the PoV

  4. Start and end dates for the PoV, along with any required paperwork

  5. Primary decision-maker and technical point of contact

Book a Call with AquilaX

PreviousAquilaX MissionNextSLO/SLA/SLI

Last updated 5 months ago

Was this helpful?

AquilaX Scanners
AquilaX DevOps / DevSecOps
AquilaX - Secure SDLC Full Flow