Contrast Security Partners With Red Hat
April 04, 2022

Contrast Security announced its partnership with Red Hat to enable OpenShift users to deploy secure, containerized applications by integrating within native continuous integration and continuous delivery (CI/CD) pipelines.

These integrations empower OpenShift users to retain the scalability of the OpenShift Container Platform, while adding automated security testing as a routine part of the software delivery process with no manual configuration or additional overhead costs.

These integrations were a joint effort between Contrast and Red Hat to ensure security is embedded as a core component of the software delivery value stream. Contrast continuously monitors customers' OpenShift applications at runtime to deliver the most actionable results without requiring AppSec teams to waste hundreds of hours validating results and causing delays for developers.

"Unfortunately many organizations lack the means to implement scalable security gates within their CI/CD pipelines which translates to insecure code being shipped across distributed cloud environments. Our partnership with Red Hat OpenShift ensures that these teams can now drive their DevSecOps transformation with automation at scale," said Sanjay Ramnath, VP of Product Management at Contrast Security. "This partnership is another component to Contrast's overall mission of ensuring developers are empowered to embed security within their environments without imposing additional work on them. We want to make security a value-add for everyone."

Contrast and Red Hat OpenShift integrations enable users to benefit from the following capabilities:

- Source-to-Image Deployment: Cloud developers can embed Contrast's Assess and Protect agents into their source code image to ensure continuous vulnerability detection with runtime context and ensure their apps are protected from targeted attacks in production.

- CI/CD Jenkins Pipelines: AppSec teams can trigger automated security tests within native Jenkins pipelines and ensure security policy gates are established to ensure no vulnerabilities are shipped to production.

- OpenShift Pipelines via Tekton: Contrast provides OpenShift users with automated tasks that can be used to create repeatable pipeline templates within the OpenShift Pipeline environment. APIs provided by the Contrast Secure Coding Platform help initiate automated vulnerability scanning at build time and instrument security telemetry within the application prior to deployment.

The Contrast Secure Code Platform is available to users leveraging the OpenShift Platform with support for Java, .NET, and Node.js applications.

Share this

Industry News

May 14, 2024

IBM announced IBM Test Accelerator for Z, a solution designed to revolutionize testing on IBM Z, a tool that expedites the shift-left approach, fostering smooth collaboration between z/OS developers and testers.

May 14, 2024

StreamNative launched Ursa, a Kafka-compatible data streaming engine built on top of lakehouse storage.

May 14, 2024

GitKraken acquired code health innovator, CodeSee.

May 13, 2024

ServiceNow introduced a new no‑code development studio and new automation capabilities to accelerate and scale digital transformation across the enterprise.

May 13, 2024

Security Innovation has added new skills assessments to its Base Camp training platform for software security training.

May 13, 2024

CAST introduced CAST Highlight Extensions Marketplace — an integrated marketplace for the software intelligence product where users can effortlessly browse and download a diverse range of extensions and plugins.

May 09, 2024

Red Hat and Elastic announced an expanded collaboration to deliver next-generation search experiences supporting retrieval augmented generation (RAG) patterns using Elasticsearch as a preferred vector database solution integrated on Red Hat OpenShift AI.

May 09, 2024

Traceable AI announced an Early Access Program for its new Generative AI API Security capabilities.

May 09, 2024

StackHawk announced a new integration with Microsoft Defender for Cloud to help organizations build software more securely.

May 08, 2024

MacStadium announced that it has obtained Cloud Security Alliance (CSA) Security, Trust & Assurance Registry (STAR) Level 1, meaning that MacStadium has publicly documented its compliance with CSA’s Cloud Controls Matrix (CCM), and that it joined the Cloud Security Alliance (CSA), the world’s leading organization dedicated to defining and raising awareness of best practices to help ensure a secure cloud computing environment.

May 08, 2024

The Cloud Native Computing Foundation® (CNCF®) released the two-day schedule for CloudNativeSecurityCon North America 2024 happening in Seattle, Washington from June 26-27, 2024.

May 08, 2024

Sumo Logic announced new AI and security analytics capabilities that allow security and development teams to align around a single source of truth and collect and act on data insights more quickly.

May 08, 2024

Red Hat is announcing an optional additional 12-month EUS term for OpenShift 4.14 and subsequent even-numbered Red Hat OpenShift releases in the 4.x series.

May 08, 2024

HAProxy Technologies announced the launch of HAProxy Enterprise 2.9.

May 08, 2024

ArmorCode announced the general availability of AI Correlation in the ArmorCode ASPM Platform.