Compliance with U.S. CERT's Build-Security-In (BSI)
CodeSonar's advanced static analysis engine automatically detects over 100 types of security vulnerabilities in your code, allowing you to accurately and efficiently eliminate risks of security breaches. CodeSonar provides checks that support most of BSI's rules. BSI is a software assurance initiative of the U.S. Department of Homeland Security. Among other things, they provide a set of C/C++ coding rules, with a focus on security.
BSI in CodeSonar
Click on the PDF to the left for a full view of the BSI rules and how they correspond with CodeSonar checks. Some are BSI-specific checkers, and others are standard CodeSonar warning classes.