Aqua Security Partners with VMware
April 18, 2018

Aqua Security announced a collaboration with VMware that will enable customers to protect applications deployed across both virtual machines and containers.

The combination of Aqua Container Security Platform with VMware AppDefense will provide enterprise security teams with a security solution that delivers a single-pane-of-glass to secure applications that include both containerized and non-containerized components.

VMware AppDefense protects applications running in virtualized environments by monitoring applications against their intended state – what they're supposed to do – and automatically responding when they deviate from that intended state, indicating a potential threat. This dramatically shrinks the attack surface, enables a much more agile/DevOps approach to security, and provides an interface into the software defined datacenter for the security operations team. VMware AppDefense uses its integration with DevOps systems, artificial intelligence and machine learning applied to massive data sets, and hypervisor-based visibility to understand the intended state of a distributed application to help customers achieve Cyber hygiene at scale.

The Aqua Container Security Platform (CSP) is a full-lifecycle security solution for containers and cloud-native applications that deeply integrates into the build pipeline to detect issues early in the DevOps cycle and minimize the attack surface. It then monitors the runtime environment and is able to prevent malicious activity using a whitelisting policy based on both declarative information and machine-learned behavior, an approach that is designed to ensure applications are only doing what they are supposed to do.

Key features of this combined security solution will enable:

- Visibility across VMs and containers: Shows security posture of running containers within the AppDefense console, including vulnerability status, approved and unapproved running containers, and policy violation alerts.

- Container Image Assurance: Prevents images that don't meet the security requirements or were not vetted from being deployed and enforces drift prevention that is designed to ensure running containers are derived from approved images.

- Monitoring and enforcement: Detection and automated response to container-level policy violations within AppDefense

- Auditing and compliance: Unified event logging within AppDefense for container-level processes and policy violations

Dror Davidoff, co-founder and CEO, Aqua Security, said: "VMware AppDefense utilizes the same principles used by the Aqua platform, namely, that good application behavior should be learned and understood, then applied to enforce least privileges in runtime. This fit will enable our teams to deliver a solution that gives security teams an easy, unified approach to modern application security."

"As organizations deploy applications across increasingly diverse data center endpoints and hybrid cloud environments, security must address the application layer in an efficient and scalable way that supports those modalities," said Tom Corn, SVP and GM, Security Products at VMware. "Aqua Security's in-depth visibility and control in containerized applications offers customers a valuable extension and enhancement to VMware AppDefense that will enable security teams to secure applications at a more granular level, regardless of how they are deployed."

The combined Aqua Security and VMware security solution will be generally available in VMware's Q2 Fiscal 2019 ending on July 3, 2018.

Share this

Industry News

April 18, 2024

SmartBear announced a new version of its API design and documentation tool, SwaggerHub, integrating Stoplight’s API open source tools.

April 18, 2024

Red Hat announced updates to Red Hat Trusted Software Supply Chain.

April 18, 2024

Tricentis announced the latest update to the company’s AI offerings with the launch of Tricentis Copilot, a suite of solutions leveraging generative AI to enhance productivity throughout the entire testing lifecycle.

April 17, 2024

CIQ launched fully supported, upstream stable kernels for Rocky Linux via the CIQ Enterprise Linux Platform, providing enhanced performance, hardware compatibility and security.

April 17, 2024

Redgate launched an enterprise version of its database monitoring tool, providing a range of new features to address the challenges of scale and complexity faced by larger organizations.

April 17, 2024

Snyk announced the expansion of its current partnership with Google Cloud to advance secure code generated by Google Cloud’s generative-AI-powered collaborator service, Gemini Code Assist.

April 16, 2024

Kong announced the commercial availability of Kong Konnect Dedicated Cloud Gateways on Amazon Web Services (AWS).

April 16, 2024

Pegasystems announced the general availability of Pega Infinity ’24.1™.

April 16, 2024

Sylabs announces the launch of a new certification focusing on the Singularity container platform.

April 15, 2024

OpenText™ announced Cloud Editions (CE) 24.2, including OpenText DevOps Cloud and OpenText™ DevOps Aviator.

April 15, 2024

Postman announced its acquisition of Orbit, the community growth platform for developer companies.

April 11, 2024

Check Point® Software Technologies Ltd. announced new email security features that enhance its Check Point Harmony Email & Collaboration portfolio: Patented unified quarantine, DMARC monitoring, archiving, and Smart Banners.

April 11, 2024

Automation Anywhere announced an expanded partnership with Google Cloud to leverage the combined power of generative AI and its own specialized, generative AI automation models to give companies a powerful solution to optimize and transform their business.

April 11, 2024

Jetic announced the release of Jetlets, a low-code and no-code block template, that allows users to easily build any technically advanced integration use case, typically not covered by alternative integration platforms.

April 10, 2024

Progress announced new powerful capabilities and enhancements in the latest release of Progress® Sitefinity®.