Extend Application Security Visibility from Code to Runtime

Sandra Murphy

Written by

Sandra Murphy

Sandra Murphy is a Product Marketing Manager on the Infrastructure Marketing Team who helps promote Akamai’s portfolio of security solutions. Her previous experience includes marketing and product management roles in the telecommunications industry.

Danielle Walter

Written by

Danielle Walter

Danielle Walter is an active advocate of IT professionals worldwide, leading their organizations’ growth through innovative IT transformation. She was a subject matter expert on messaging/branding for cloud providers before specializing in security. She enjoys collaborating on thought leadership within the industry and speaking at events. As a certified sommelier, Danielle savors her free time by exploring new wine, food, and destinations.

John Leon

Written by

John Leon

John Leon is Vice President of Partnerships and Business Development at Apiiro where he leads partner and ecosystem strategy across channel management, GTM alignment, and technology alliances. He brings more than two decades of enterprise technology experience, having held senior BD and alliances roles at GitHub, Puppet, Extrahop Networks, and VMware.

Share

We’re excited to expand our collaboration with Apiiro by connecting Akamai APP & API Protector with Apiiro’s Application Security Posture Management platform to deliver a single, correlated view of application attack surface from code to runtime.

Akamai and Apiiro bring together posture intelligence and runtime protection 

Modern organizations build and deploy applications faster than ever. Microservices architectures, cloud native development, and the rapid growth of APIs have enabled innovation — but they have also expanded the application attack surface.

In fact, Akamai data shows web attacks reached 113.03 billion in Q4 2025, a 43% year-over-year increase, highlighting the scale and speed at which threats that target modern applications and APIs continue to grow.

To stay ahead of these threats, organizations must combine two critical security capabilities:

  1. Runtime protection that effectively defends applications and APIs from live attacks

  2. Application posture intelligence that helps teams understand how applications are built, exposed, and owned

 

Akamai App & API Protector delivers industry-leading runtime protection. Through a collaboration with Apiiro, organizations can now extend that protection with deeper insight into application architecture, ownership, and development posture.

Together, Akamai and Apiiro provide security teams with greater visibility and context across the application lifecycle — from code to runtime.

Industry-leading runtime protection for applications and APIs

Applications today operate in highly distributed environments across cloud platforms, APIs, and global user bases. Protecting these experiences requires security that is both powerful and adaptive.

Akamai App & API Protector provides comprehensive web application and API protection (WAAP) built on the Akamai platform. It protects applications wherever they are delivered with multiple layers of automated defense, including:

 

At the core of Akamai’s WAAP is the Adaptive Security Engine, which uses machine learning, automation, and threat intelligence to continuously adapt to evolving attacks.

This adaptive approach enables organizations to defend applications against exploits, automated threats, CVE-based attacks, and emerging vulnerabilities, all while maintaining performance and reliability.

The need for context across the application lifecycle

While runtime protection is essential, modern application environments also require visibility into how applications are built and exposed.

Security teams often need to answer questions such as:

  • Which applications and APIs are exposed to the internet?

  • Who owns them within the organization?

  • Which vulnerabilities are most critical based on real-world exposure?

  • How do development changes affect security posture?

 

Application Security Posture Management solutions address these questions by analyzing development pipelines, code repositories, and architecture to identify risk earlier in the software lifecycle.

By combining runtime protection with posture intelligence, organizations gain a more comprehensive understanding of application risk.

Extend visibility with Apiiro Application Security Posture Management

Apiiro provides Application Security Posture Management capabilities that are designed to help organizations understand the structure and security posture of their software environments.

The Apiiro platform analyzes development environments to:

  • Discover applications, APIs, and domains across the organization

  • Map software architecture and service relationships

  • Identify ownership and development context

  • Prioritize vulnerabilities based on exposure and business impact

 

This posture intelligence helps security and development teams focus remediation efforts on where they matter most.

Better together: Contextualizing runtime protection

The collaboration between Akamai and Apiiro connects Apiiro’s posture intelligence with the runtime protections provided by Akamai App & API Protector. Through this integration, organizations can correlate application posture insights with application security protections — creating a broader understanding of both application exposure and defensive coverage.

This approach helps security teams:

  • Gain visibility across the application landscape

  • Understand protection coverage in context

  • Prioritize risks based on exposure and business impact

  • Improve collaboration between teams

Gain visibility across the application landscape

Apiiro identifies applications, APIs, and domains across development environments and maps them to ownership and architecture.

Understand protection coverage in context

Apiiro identifies applications, APIs, and domains across development environments and maps them to ownership and architecture.

Prioritize risks based on exposure and business impact

By understanding which applications are internet facing or business critical, organizations can focus remediation on the security vulnerabilities that matter most. 

Improve collaboration between teams

Development, application security, and runtime security teams can work from shared insights that connect code-level context with operational protection.

A continuous security perspective

Modern application security is no longer limited to a single stage of the lifecycle. 

Instead, modern application security requires coordination across development, deployment, and runtime environments. By combining Akamai’s industry-leading WAAP security, and Apiiro’s application posture intelligence from development environments, organizations can establish a continuous view of application security from code to runtime.

This broader perspective helps security leaders better understand exposure, prioritize remediation, and maintain confidence that their applications and APIs remain protected in a rapidly evolving threat landscape.

Help organizations stay ahead of application threats

As applications and APIs continue to evolve, the need for both strong runtime defenses and deeper visibility across the software development lifecycle will only grow.

Akamai App & API Protector delivers the runtime protection organizations trust to defend their digital experiences. By extending those protections with Apiiro’s Application Security Posture Management insights, organizations gain richer context that helps them prioritize risk and strengthen collaboration across development and security teams.

Together, Akamai and Apiiro help organizations secure modern applications with greater clarity, context, and confidence.

Sandra Murphy

Written by

Sandra Murphy

Sandra Murphy is a Product Marketing Manager on the Infrastructure Marketing Team who helps promote Akamai’s portfolio of security solutions. Her previous experience includes marketing and product management roles in the telecommunications industry.

Danielle Walter

Written by

Danielle Walter

Danielle Walter is an active advocate of IT professionals worldwide, leading their organizations’ growth through innovative IT transformation. She was a subject matter expert on messaging/branding for cloud providers before specializing in security. She enjoys collaborating on thought leadership within the industry and speaking at events. As a certified sommelier, Danielle savors her free time by exploring new wine, food, and destinations.

John Leon

Written by

John Leon

John Leon is Vice President of Partnerships and Business Development at Apiiro where he leads partner and ecosystem strategy across channel management, GTM alignment, and technology alliances. He brings more than two decades of enterprise technology experience, having held senior BD and alliances roles at GitHub, Puppet, Extrahop Networks, and VMware.

Tags

Share

Related Blog Posts

Security
Advancing Collective Defense with Project Glasswing
May 11, 2026
Explore how Akamai and Anthropic are advancing cybersecurity with Project Glasswing. Learn how AI-driven insights from Claude Mythos help harden global systems.
Security
How Akamai's Zero Trust Framework Meets Critical U.S. Government Mandates
May 05, 2026
Learn how Akamai operationalizes Zero Trust to meet stringent federal mandates while strengthening resilience across users, devices, applications, and data.
Security
The Other Side of the MCP Threat Conversation
Learn how threat actors can directly exploit an exposed MCP server and its attack surface.