The move to DevOps, high-frequency deployments and containerization has introduced two new asset classes along with opportunities to significantly improve the security posture of applications throughout the CI/CD pipeline.
The first asset class incorporates templates for deploying infrastructure and applications, defined as code. The second includes the container images that contain the packages, code and binaries for a specific application. Still, despite these improvements, security is often overlooked and addressed only at runtime.
It’s time to prioritize comprehensive security in the CI/CD pipeline.
In this on-demand webinar, Cloud CTO Vinay Venkataraghavan from Palo Alto Networks and Senior Solutions Architect Dustin Van Buskirk from Codefresh discuss and demonstrate:
- How security teams can empower DevOps teams with the tools and capabilities to inject security into the CI/CD pipeline
- The benefits of scanning Infrastructure as Code templates, such as Terraform® and AWS CloudFormation™
- Container images and registries in the build-and-deploy phase to greatly improve the security posture of cloud native apps