Palo Alto Networks has introduced the continuous integration (CI)/ continuous deliver (CD) module to provide integrated software delivery pipeline security as part of their code-to-cloud capabilities in Prisma Cloud’s cloud native application protection platform (CNAPP) platform. By securing the CI/CD environment and protecting against open source vulnerabilities with software composition analysis, Prisma Cloud is the most complete security platform for seamlessly protecting the entire engineering ecosystem.
According to Gartner, securing the software delivery pipeline is as important as securing the software that is delivered. The CI/CD security module enables DevOps and security teams to better collaborate and improve security outcomes throughout the application life cycle. By adding CI/CD security into the Prisma Cloud platform which already includes — secrets scanning, software composition analysis, and infrastructure as code security — organisations are able to optimise security and risk prevention throughout the entire software delivery pipeline, achieving a holistic and comprehensive security oversight which cannot be achieved with individual, siloed solutions.
Commenting on the launch, Ankur Shah, senior vice president, Prisma Cloud, Palo Alto Networks, said, “A major challenge in securing CI/CD pipelines is visibility. The myriad of third-party tools and applications running in development environments makes it almost impossible for security teams to determine if they are correctly configured. The integration of Cider’s capabilities secures the CI/CD environment and gives Prisma Cloud customers the ability to analyse individual tools, visualise how they interact with applications and each other, and identify and remediate risks.”
Meanwhile, Daniel Krivelevich, chief technology officer, Application Security, Prisma Cloud, Palo Alto Networks, said, “The only way to prevent insecure code from reaching production is to scan every code artifact, dependency, and ensure the delivery pipeline is effectively protected. Integrating Cider’s technology with Prisma Cloud strengthens the platform’s ability to help secure organizations’ entire engineering ecosystem, ensuring only what is intended is pushed to production.”
CI/CD Security is the 11th module integrated into the robust Palo Alto Networks cloud security platform, making Prisma Cloud the most comprehensive CNAPP platform to seamlessly protect the entire application lifecycle — from code through deployment to runtime. The new module is derived from Cider Security’s cutting-edge capabilities that helps organisations “shift security left” to prevent threats and vulnerabilities before applications are deployed into production environments.
Further, Nir Rothenberg, chief information security officer, Rapyd, said, “Since implementing Prisma Cloud’s CI/CD Security module, we now have complete visibility into all the third party tools we leverage to build and deploy applications to the cloud. This ultimately gives us the confidence that we are eliminating threats and vulnerabilities in code from reaching production environments.”