FYI - does anyone see merit in trying to pursue this NOW ? Mark Veksler and I discussed and thought it prudent to wait for the Security Audit to see what they find/recommend… but some of these tools/prices are pretty low.

Let me know your thoughts.

-mdg


Begin forwarded message:

From: John DeSangro <jdesangro@Veracode.com>
Subject: RE: [EXTERNAL] Re: Veracode Follow Up - Content/Proposal.
Date: March 20, 2019 at 11:12:42 AM EDT
To: Mike Gorrell <mdg@indexdata.com>

Mike,
 
Thank you for your feedback. As you know the end of our fiscal year is just 8 days away and as a company we’re extremely close to hitting our annual goal.
 
With this being said, My VP of Sales is being ultra-aggressive and let me sharpen my pencil on the pricing even more! Please scroll down to find the Updated End Of Year Pricing below.
 
As we have the 5X industry leading platform and services, this type of pricing may not come around again. Please let me know if these discounts might help move the needle and allow us to get a deal in place prior to the end of next week. 
 
I look forward to your feedback.
 
-Thank You!!
 

John DeSangro  |  Senior Account Executive 
O 339-674-2676  |  M 508-250-3221

veracode-email-logo
The Most Powerful Application Security Platform on the Planet
65 Network Drive | Burlington, MA 01803 | United States
 
 
 
From: Mike Gorrell <mdg@indexdata.com> 
Sent: Tuesday, March 19, 2019 10:57 AM
To: John DeSangro <jdesangro@Veracode.com>
Subject: Re: [EXTERNAL] Re: Veracode Follow Up - Content/Proposal.
Importance: High
 

This email originated from outside of Veracode.

 

Hi John.
 
No questions at this point. We are reviewing options, and will keep the end of year deals in mind.
 
Thanks.
 
-mdg
 


 
 
 
From: John DeSangro 
Sent: Friday, March 8, 2019 3:54 PM
To: 'mdg@indexdata.com' <mdg@indexdata.com>
Subject: Veracode Follow Up - Content/Proposal. 
Importance: High
 
Hello Mike,
 
Thank you for taking the time to speak with me this morning, I really enjoyed our conversation! Attached are a few pieces of content that I believe you will find helpful:
 
  1. Veracode Static Analysis Data Sheet.
  2. Veracode Web Application Scanning Data Sheet.
  3. SourceClear (SCA) Intro.
  4. Veracode eLearning Course Guide.
  5. Veracode Support Data Sheet.
  6. Veracode Product Descriptions.
  7. Veracode Assessment and Testing Methodology.
  8. VerAfied By Veracode.
  9. Veracode Security Cryptography Primer.
  10. High Cost of ignoring App Sec.
  11. Veracode End User Assessment Agreement.
12.   Java Detailed Sample Report.
13.   Java Summary Sample Report. 
14.   Dynamic Scan Sample Report. 
 
Below you will find our pricing model. I included pricing for all of the products and services we discussed on our call. I have included LIST pricing and our End Of Year Pricing at this time. As I mentioned we are 3 weeks away from the end of our fiscal year and I can provide EXCELLENT pricing from now until the end of March. All we would need to lock in the End Of Year Pricing is a signed Sales Order Form. I can provide NET45 Payment Terms allowing payment to be made 45 days from time of signature. I can also push out the Subscription Start Date out up to 60 days, allowing you to take advantage of the End Of Year savings but not have to get started right away. Once we start our new fiscal year, I won’t be able to offer costs this low. Please find the pricing here:
 
1 Veracode Static Licenses (Per Application Pricing Model):
-Unlimited Static Scans.
-Unlimited Users. 
-Unlimited Reporting. 
-Full Integrations. 
-Veracode Customer Success Manager. 
Price: $10,000.00.
End Of Year Discounted Price: $6,500.00 (3,500.00 Discount!!).
Updated End Of Year Price: $5,000.00 (50% Discount!!) 
 
1 Veracode Dynamic License (Automated Web Scanning):
-Unlimited Dynamic Scans.
-Unlimited Users.
-Unlimited Reporting.
-Full Integrations.
Price: $3,000.00 Per URL.
End Of Year Discounted Price: $1,500.00 Per URL (50% Discount!!).
Updated End Of Year Price: $1,000.00 ($2,000.00 Discount!!
 
Veracode – SourceClear License (Third Party/Open Source Scanning):
-Unlimited Users – Entire team can have log in credentials to the platform.
-CVE Data (public disclosers) – National Vulnerability Database.
-SVE Data (non-public disclosers). 
-Non-CVE Data – From SourceClear proprietary database sourced via Machine Learning.
-Vulnerability Library Analysis.
-Vulnerable Methods Analysis. 
-Open-Source License Risk Analysis.
-Full integrations (GitHub, JIRA , ETC).
-Access to NORAD Big Data system – over 800,000 unique libraries.
-Data Export to CSV and JASON.
-SAML availability.
-Advanced User Management.
-Custom Policies.
-Support : 24/7 technical support. 
List Price (100 Scans Per Month) - $4,000.00.
End Of Year Discounted Price: $2,000.00 ($50% Discount!!). (This is the Max Discount for this product).
 
Veracode eLearning Tool (Per Developer Pricing):
-Cloud Based Developer Training.
-Over 40 Custom Courses Updated Monthly. 
-Custom Assessments. 
-Flaw Matching.
List Price: $250.00 Per Developer.
End Of Year Discounted Price: $150.00 Per Developer ($100.00 Discount!!).
Updated End Of Year Discount: $100.00 Per Developer ($150.00 Discount!!).
 
Veracode Standard Service Package:
-5 Hours of Calls with Veracode Service Program Managers to assist in creating Program with Developers.
-4 Hours of Read Out Calls (Remediation/Mitigation Support with Veracode ASC’s).
-2 Hours of Full integration & API assistance.
-2 Hours of Platform Training.
Price: $3,000.00.
End Of Year Discounted Price: $2,500.00 ($500.00 Discount!).
 Updated End Of Year Discount: $2,400.00 (20% Discount!!).
 
Mike, Please let me know if you have any questions. I would love to connect next week and discuss the proposal and to answer any questions you might have. Have an excellent weekend!
 
-Thank You!
 

John DeSangro  |  Senior Account Executive 
O 339-674-2676  |  M 508-250-3221

<image001.png>
The Most Powerful Application Security Platform on the Planet
65 Network Drive | Burlington, MA 01803 | United States