Skip to content
  • +55 (11) 3375 0133
  • contato@nova8.com.br
Linkedin-in Facebook-square Instagram Youtube
  • EN-US
  • PT-BR
  • ES-MX
Nova8
  • About us
  • Portfolio

    Snyk

    Security for Developers

    Upwind

    Cloud Security platform

    Cequence

    API security platform

    CORO

    Simplified Cybersecurity

    IRONSCALES

    Application security testing for companies

    Checkmarx

    Application security testing solution

    Inviciti

    Web Security Tool for Vulnerability Detection

    See all solutions
  • Services

    VAD

    The only Value-Added Distributor (VAD) in Latin America mentioned in the Gartner Market Guide

    Center of Excellence Nova8 in Cybersecurity

    Accelerate your technical and strategic training with Nova8's innovation hub.

    Nova8 Consulting in Cybersecurity

    Strategy, efficiency and real protection for critical applications and data.

  • Cases
  • Blog
Contact us
Nova8
  • Home
  • Blog
  • Structuring Application Security: Iguatemi’s Journey with Nova8 Support

Specialized knowledge

Structuring Application Security: Iguatemi’s Journey with Nova8 Support

  • Nova8 Security Research Team
  • July 28, 2025
  • Blog, Cases, Checkmarx, Cybersecurity Distribution, Market Strategy, Nova8 Ecosystem, value-added distributor

By the end of 2023, Iguatemi faced a silent but urgent challenge: although they had an AppSec solution already implemented by a previous team, effective vulnerability management was still nascent. Applications were connected to the platform, but usage was superficial and lacked strategic direction.

There was a lack of visibility, alignment with technical leadership, and, most importantly, a structured process to transform data into real risk mitigation actions. The absence of governance over vulnerabilities, coupled with internal restructuring, indicated the need for external support to reclaim the value of the already contracted solution.

Unlocking the potential of the solution

The first meeting between Iguatemi and Nova8 took place at the end of December 2023. From then on, a joint journey began to recover, organize, and optimize the use of the AppSec solution. The work focused on adapting it to the business’s reality, building a DevSecOps model connected to the company’s strategy.

With technical advisory support — especially from the specialized team at Nova8 — it was possible to structure customized scan presets, based on frameworks like OWASP and adapted to the internal applications’ specificities. In about five months, the progress was already tangible.

From visibility to governance

With configurations aligned and the team properly oriented, the major gain became visibility. For the first time, the technical area could clearly understand the risk scenario and present this overview to other organizational areas — including business leadership.

With technical understanding and demonstrations of operational impacts, Iguatemi obtained support to restructure critical applications and implement direct mitigation actions. The maturity achieved elevated the security team’s role within the organization’s digital ecosystem.

Consolidated results

With the restructuring work, the number of monitored applications jumped from 3 to 11. The expanded visibility enabled a coordinated action to address hundreds of critical vulnerabilities. What was once just a contracted solution became a living process integrated into the company’s development cycle.

Next steps

With application security governance established, Iguatemi is advancing on expansion and continuity initiatives. The perspective is to include new applications within the scope and continue improving workflows and integrations, with the ongoing support of Nova8 as a technical partner.

By transforming visibility into Governance and technology into Process, Iguatemi overcame the challenge of implementing an AppSec culture and was able to boost its security maturity, even in challenging and constantly evolving contexts. The experience reinforces that security maturity goes beyond choosing a solution — it requires strategic alignment, technical partnership, and long-term commitment.

  • nova8

Browse by topic

  • Blog
  • Cases
  • Security
  • Audit
  • Security management
  • Nova8 Ecosystem
  • Cybersecurity Distribution
  • Market Strategy
  • value-added distributor
  • Coro

Browse by solutio

  • Cequence
  • Checkmarx
  • Coro
  • Ironscales
  • Snyk
  • Upwind

Stay ahead of cyber threats

Explore our Insights section and stay up to date with the latest trends in cybersecurity.

Learn more
Brief CX
  • January 2, 2026
  • Blog

Checkmarx One: Unified Enterprise Application Security Platform

Read more
O futuro agentic do AppSec como medir impacto e proteger o SDLC impulsionado por IA
  • December 19, 2025
  • Blog

The agentic future of AppSec: how to measure impact and protect the AI-driven SDLC

Read more
CORO Case Study - ECKO (Apresentação)
  • September 19, 2025
  • Coro

ECKOmining strengthens its cybersecurity strategy with Coro and gains operational efficiency with a lean team

Read more
Linkedin-in Facebook-square Instagram Youtube

Al. Rio Negro, 585 - Torre Jaçarí - 13º andar
Conjunto 134 - Alphaville, Barueri - SP, 06454-000

  • +55 (11) 3375 0133
  • contato@nova8.com.br

Company

  • About us
  • Events
  • VAD
  • Center of Excellence
  • Consulting
  • Work at Nova8
  • Privacy Policy
  • Code of Ethics

Portfolio

  • Snyk
  • Upwind
  • Cequence
  • CORO
  • IRONSCALES
  • Checkmarx
  • Invicti
  • Bright
  • Riskified
  • MazeBolt
  • Mend
  • Request a quote

Content

  • Clients and Cases

Copyright © Nova 8 Cybersecurity - 2025 - Todos os direitos reservados

Desenvolvido por Tech4Biz

Search
Nova8
  • EN-US
  • PT-BR
  • ES-MX
  • About Us
  • Portfolio
    • CORO
    • Upwind
    • Cequence
    • CORO
    • IRONSCALES
    • Checkmarx
    • Invicti
    • Bright
    • Riskified
    • MazeBolt
    • Mend
  • Services
    • Center of Excellence in Cybersecurity for Resellers and Technical Teams
    • Cybersecurity Consulting with a Focus on AppSec
    • Services – Value-Added Cybersecurity Distributor
  • Cases
  • Contact us
  • About Us
  • Portfolio
    • CORO
    • Upwind
    • Cequence
    • CORO
    • IRONSCALES
    • Checkmarx
    • Invicti
    • Bright
    • Riskified
    • MazeBolt
    • Mend
  • Services
    • Center of Excellence in Cybersecurity for Resellers and Technical Teams
    • Cybersecurity Consulting with a Focus on AppSec
    • Services – Value-Added Cybersecurity Distributor
  • Cases
  • Contact us
  • +55 (11) 3375 0133
  • contato@nova8.com.br
Linkedin-in Facebook-square Instagram Youtube
Saiba mais
Search

SOLUÇÕES NOVA8

  • Checkmarx
  • Acunetix
  • Bright
  • Whitesource
  • Riskified
  • MazeBolt
  • Ironscales
  • +55 (11) 3375 0133
  • contato@nova8.com.br
Linkedin-in Facebook-square Instagram Youtube