Contrast Security Partners With Red Hat
April 04, 2022

Contrast Security announced its partnership with Red Hat to enable OpenShift users to deploy secure, containerized applications by integrating within native continuous integration and continuous delivery (CI/CD) pipelines.

These integrations empower OpenShift users to retain the scalability of the OpenShift Container Platform, while adding automated security testing as a routine part of the software delivery process with no manual configuration or additional overhead costs.

These integrations were a joint effort between Contrast and Red Hat to ensure security is embedded as a core component of the software delivery value stream. Contrast continuously monitors customers' OpenShift applications at runtime to deliver the most actionable results without requiring AppSec teams to waste hundreds of hours validating results and causing delays for developers.

"Unfortunately many organizations lack the means to implement scalable security gates within their CI/CD pipelines which translates to insecure code being shipped across distributed cloud environments. Our partnership with Red Hat OpenShift ensures that these teams can now drive their DevSecOps transformation with automation at scale," said Sanjay Ramnath, VP of Product Management at Contrast Security. "This partnership is another component to Contrast's overall mission of ensuring developers are empowered to embed security within their environments without imposing additional work on them. We want to make security a value-add for everyone."

Contrast and Red Hat OpenShift integrations enable users to benefit from the following capabilities:

- Source-to-Image Deployment: Cloud developers can embed Contrast's Assess and Protect agents into their source code image to ensure continuous vulnerability detection with runtime context and ensure their apps are protected from targeted attacks in production.

- CI/CD Jenkins Pipelines: AppSec teams can trigger automated security tests within native Jenkins pipelines and ensure security policy gates are established to ensure no vulnerabilities are shipped to production.

- OpenShift Pipelines via Tekton: Contrast provides OpenShift users with automated tasks that can be used to create repeatable pipeline templates within the OpenShift Pipeline environment. APIs provided by the Contrast Secure Coding Platform help initiate automated vulnerability scanning at build time and instrument security telemetry within the application prior to deployment.

The Contrast Secure Code Platform is available to users leveraging the OpenShift Platform with support for Java, .NET, and Node.js applications.

Share this

Industry News

April 16, 2024

Kong announced the commercial availability of Kong Konnect Dedicated Cloud Gateways on Amazon Web Services (AWS).

April 16, 2024

Pegasystems announced the general availability of Pega Infinity ’24.1™.

April 16, 2024

Sylabs announces the launch of a new certification focusing on the Singularity container platform.

April 15, 2024

OpenText™ announced Cloud Editions (CE) 24.2, including OpenText DevOps Cloud and OpenText™ DevOps Aviator.

April 15, 2024

Postman announced its acquisition of Orbit, the community growth platform for developer companies.

April 11, 2024

Check Point® Software Technologies Ltd. announced new email security features that enhance its Check Point Harmony Email & Collaboration portfolio: Patented unified quarantine, DMARC monitoring, archiving, and Smart Banners.

April 11, 2024

Automation Anywhere announced an expanded partnership with Google Cloud to leverage the combined power of generative AI and its own specialized, generative AI automation models to give companies a powerful solution to optimize and transform their business.

April 11, 2024

Jetic announced the release of Jetlets, a low-code and no-code block template, that allows users to easily build any technically advanced integration use case, typically not covered by alternative integration platforms.

April 10, 2024

Progress announced new powerful capabilities and enhancements in the latest release of Progress® Sitefinity®.

April 10, 2024

Buildkite signed a multi-year strategic collaboration agreement (SCA) with Amazon Web Services (AWS), the world's most comprehensive and broadly adopted cloud, to accelerate delivery of cloud-native applications across multiple industries, including digital native, financial services, retail or any enterprise undergoing digital transformation.

April 10, 2024

AppViewX announced new functionality in the AppViewX CERT+ certificate lifecycle management automation product that helps organizations prepare for Google’s proposed 90-day TLS certificate validity policy.

April 09, 2024

Rocket Software is addressing the growing demand for integrated security, compliance, and automation in software development with its latest release of Rocket® DevOps, formerly known as Aldon®.

April 09, 2024

Wind River announced the latest release of Wind River Studio Developer, an edge-to-cloud DevSecOps platform that accelerates development, deployment, and operation of mission-critical systems.

April 09, 2024

appCD announced its generative infrastructure from code solution now supports Azure Kubernetes Service (AKS).

April 09, 2024

Synopsys announced the availability of Black Duck® Supply Chain Edition, a new software composition analysis (SCA) offering that enables organizations to mitigate upstream risk in their software supply chains.