1. Home
  2. Companies
  3. Black Duck Software, Inc.
Black Duck Software, Inc. logoBD

Black Duck Software, Inc.

About

Black Duck Software, Inc. is an application security company headquartered near Boston, Massachusetts, founded in 2002 by Doug Levin. The company is credited with pioneering the Software Composition Analysis (SCA) market, having started with open-source license and component tracking before expanding into a broader security offering. It serves over 4,000 organisations worldwide.

The company's platform integrates multiple application security disciplines across the software development lifecycle, including:

  • Software Composition Analysis (SCA) - tracking open-source components and managing licence compliance
  • Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST)
  • AI-powered security testing and software supply chain security
  • DevSecOps tooling to embed security into development workflows

Black Duck was acquired by Synopsys in 2014. In 2024, the business transitioned to independent ownership under private equity firms Clearlake Capital and Francisco Partners, and has since rebranded from "Black Duck Software" to "Black Duck." The company positions its platform as a response to increasing regulatory requirements around software security and the growing complexity introduced by AI-driven development practices.

Similar companies

Lansweeper logoLA

Lansweeper

Lansweeper builds software that discovers and inventories all technology assets in an organisation, from devices to software to cloud infrastructure.

1 job
Socket logoSO

Socket

Socket provides a platform that detects and blocks malicious open source packages in real time, protecting software supply chains across technology, media, healthcare, and finance.

Obsidian Security logoOS

Obsidian Security

Obsidian Security delivers a complete SaaS security platform that provides visibility, threat detection, and response for business-critical SaaS applications.

Sysdig (Sysdig, Inc.) logoS(

Sysdig (Sysdig, Inc.)

Sysdig is the leader in real-time cloud security, delivering a CNAPP platform that combines runtime insights, open innovation, and agentic AI to help organizations prevent, detect, and respond to cloud threats instantly.

Cyberhaven logoCY

Cyberhaven

Cyberhaven provides an AI-powered data security platform covering DLP, DSPM, insider risk, and AI security, tracing data lineage across cloud, endpoint, SaaS, and AI tools.

GitLab logoGI

GitLab

GitLab is the most comprehensive AI-powered DevSecOps platform, enabling teams and their AI agents to ship secure software faster from planning to production.