openPR Logo
Press release

Accurics Redefines Secure GitOps with Argo Integration for Open Source Terrascan

05-06-2021 08:01 AM CET | IT, New Media & Software

Press release from: Contos Dunne Communications

/ PR Agency: Contos Dunne Communications
From KubeCon + CloudNativeCon Europe Virtual – May 5, 2021 – Accurics, the cloud cyber resilience specialist, today announced that its open source project Terrascan, which enables teams to detect compliance and security violations across Infrastructure as Code (IaC), now integrates with the Argo Project. This integration, coupled with the new Terrascan admission controller feature to enforce CNCF’s Open Policy Agent policies across the software development lifecycle, significantly enhances cloud security as developers adopt a GitOps approach.

Argo, an open source GitOps engine for Kubernetes, synchronizes Kubernetes clusters, making it easier to specify, schedule and coordinate the running of complex workflows and applications on Kubernetes. Terrascan can scan repositories for violations, and its integration with Argo brings these capabilities to the cluster through automated processes that extend from the source code to the controller. The automatic process ensures that the full pipeline, from development to end-user machine, is secure and fully aligned.

“Optimal security in cloud native infrastructure requires constant innovation at different levels of the architecture, with seamless integration, revitalized support, and ongoing deployments,” said Om Moolchandani, co-founder, CTO & CISO at Accurics. “As the Kubernetes ecosystem expands and developers adopt GitOps with Infrastructure as Code and Deployment as Code, they need security tools that fit into these automated, codified workflows where experts cannot review every finding. Kubernetes clusters need advances such as Terrascan, and Accurics is proud to be at the forefront of this vital movement with regular advances in security to harness the full potential of this technology and enable self-healing cloud-native infrastructure.”

This follows the release of Terrascan's admission controller, a new capability to apply Policy as Code (PaC) uniformly across the software development lifecycle. PaC has gained popularity for establishing guardrails in the development process, enabling the detection of misconfigurations in Kubernetes manifests ahead of production. It’s critical for these policies to also govern deployments in runtime, since the production environment can be modified directly through the CSP or Kubernetes controller. However, PaC tools used in pipelines and in production are typically quite distinct, with different implementations, policy libraries, and control/reporting architectures. Leveraging Terrascan as an IaC scanner alongside Terrascan’s admission controller, on the other hand, consistently enforces the same policies across build and deployment of the application.

Additionally, Accurics recently released Terrascan integration with Atlantis, a popular open source Terraform automation platform that leverages an organization’s code repository, such as Git, to streamline and automate Terraform workflows. With integration directly into Atlantis, Terrascan ensures that scan results are reported as part of the same pull request workflow, providing a welcome level of security for this powerful approach to managing complex cloud infrastructure across multiple teams. Building on advanced automation, Terrascan can also fail the automated build if a particularly severe vulnerability is identified.

For more information about Terrascan: https://www.accurics.com/products/terrascan/, or learn more in the GitHub repo: https://github.com/accurics/terrascan

Learn more at www.accurics.com, on the Accurics blog, and on Twitter.

PRESS CONTACT:
CONTOS DUNNE COMMUNICATIONS
+1 408-776-1400 (o)
Paula Dunne +1 408-893-8750 (m)
paula@contosdunne.com

At Accurics™, we envision a world where organizations can innovate in the cloud with confidence. Our mission is to enable organizations to achieve cloud cyber resilience with developer-first security that self-heals the cloud. The Accurics platform programmatically detects infrastructure misconfigurations and contextualizes the findings with application risks to identify breach paths throughout the development lifecycle. It automatically generates code to remediate issues and applies the fix in the development pipeline. Accurics enables organizations of all sizes to achieve developer-driven cloud cyber resilience through cloud-based and open source tools such as Terrascan™.

This release was published on openPR.

Permanent link to this press release:

Copy
Please set a link in the press area of your homepage to this press release on openPR. openPR disclaims liability for any content contained in this release.

You can edit or delete your press release Accurics Redefines Secure GitOps with Argo Integration for Open Source Terrascan here

News-ID: 2280561 • Views:

More Releases for Terrascan

Terrasolid maps the world in 3D - 3D PluraView monitors from Schneider Digital v …
Over the last 20 years, the capabilities of available LiDAR hardware have developed rapidly and with it the capabilities of processing software, spearheaded by Terrasolid applications. For consistent, precise and digital data workflows in GIS and photogrammetry environments, raw data must first be converted into integrable and thus valuable information components that meet the requirements of the respective applications. The 3D point cloud processing modules from the Finnish provider Terrasolid,
Accurics Unveils GitLab Static Analysis Integration To Contextualize Risk Across …
Integration supports misconfiguration and vulnerability correlation, reducing noise and empowering developers to fix riskiest threats first PLEASANTON, Calif. – June 14, 2021 – Accurics, the cloud cyber resilience specialist, today announced a technology partnership with GitLab, a single application for the DevOps lifecycle, as well as the general availability of its integration with GitLab's Static Application Security Testing (SAST) solution. Accurics leverages the integration with GitLab to provide DevSecOps teams with
Evolving Risks, Insecure Defaults, Watering Hole Threats: New Research from Accu …
Pleasanton, CA, February 22, 2021 – Accurics, the cloud cyber resilience specialist, today unveiled its latest research, “Accurics Cloud Cyber Resilience Report,” which highlights security risks identified in cloud native environments. The findings reveal an increased adoption of managed infrastructure services and the emergence of new cloud watering hole attacks. Of all violations identified, 23 percent correspond to poorly configured managed service offerings – largely the result of default security
Accurics updates open source Terrascan to help orgs detect and fix risks in Kube …
Terrascan extends Policy as Code to Kubernetes September 16, 2020 Accurics is excited to announce Terrascan v1.1.0, with Kubernetes (k8s) support! Cloud native apps and infrastructure are notoriously complex and difficult to secure with traditional tools, and kubernetes adds automation and orchestration that escalate those problems to another level. Practically speaking, security automation is mandatory because it’s not realistic to expect humans to comprehend such complex, dynamic environments. Terrascan is an