CyberArk Integrates with Jenkins
August 31, 2017

CyberArk announced the integration of the CyberArk Privileged Account Security Solution with Jenkins, an open source automation server.

With this integration, organizations gain an automated orchestration process with built-in secrets management and protection for their DevOps pipeline without unnecessary trade-offs between security and velocity.

The CyberArk Privileged Account Security Solution integration with Jenkins enables CIOs, CISOs, operations personnel and developers to deploy solutions that provide security and support compliance goals without impeding the agility and speed of the DevOps pipeline.

Organizations can now:

- Secure and Manage Secrets Used by Jenkins Jobs: The joint solution automates nearly all security and management tasks related to secrets use by the Jenkins solution across every environment and platform. Each time a job is run, the Jenkins agent retrieves a secret from CyberArk-Conjur – keeping secrets safe. CyberArk-Conjur rotates secrets automatically based on an organization’s security policy, making them available to developers on-demand in any environment, while protecting them from potential compromise.

- Secure and Monitor Privileged User Access to the Jenkins Console: As the Jenkins console provides access to almost every asset throughout the DevOps pipeline from development to deployment, user activity should be carefully monitored and controlled. Using CyberArk Privileged Session Manager, organizations can isolate, control and monitor user access and activity on the Jenkins console to prevent against insider threats or external attacks. All privileged user sessions are recorded in the background for audit and compliance purposes.

“Focusing on secrets protection, and ensuring that privileged access to Jenkins is secured and managed, will enable security practitioners/experts to enforce security polices and support compliance goals while giving DevOps teams the tools they need to remain productive,” said Kohsuke Kawaguchi, CTO, CloudBees and founder of the Jenkins project. “CyberArk is setting a standard for how organizations can secure privileged accounts and manage secrets without impacting the DevOps workflow.”

The enterprise-grade CyberArk Privileged Account Security Solution enables DevOps and security practitioners to automatically secure and manage secrets – used by both users and machines such as CI/CD and configuration management tools, applications, hosts and microservices. This enables organizations to accelerate the rate of software deployment without compromising on security, while maintaining a comprehensive audit trail for compliance initiatives.

“The DevOps process has had a dramatic impact on organizations and the speed with which software can be delivered. Despite these gains, DevOps was fundamentally not designed with security in mind, representing a growing attack surface that malicious attackers target and exploit,” said Adam Bosnian, EVP, Global Business Development, CyberArk. “The integration of the CyberArk Privileged Account Security Solution with Jenkins provides organizations with an enterprise-class solution for privileged account security and automated secrets management. This empowers organizations to create secure DevOps environments without slowing down productivity.”

As part of this integration, Jenkins is also joining CyberArk’s global technology partner program that brings together enterprise software, IT security and service providers to build on the power of privileged account security to better protect customers from cyber threats across multi-platform environments.

Share this

Industry News

March 26, 2020

Redgate’s new SQL Monitor now ensures that DevOps teams can monitor and track deployments at all times.

March 26, 2020

Split Software announced a two-way data integration with Google Analytics that can instantly detect performance issues caused by new features.

March 26, 2020

Cloudreach earned the Kubernetes on Microsoft Azure advanced specialization.

March 25, 2020

Informatica updated its Intelligent Data Platform, powered by Informatica's AI-powered CLAIRE engine, with advanced intelligence and automation capabilities, enabling enterprises to accelerate cloud analytics modernization, drive better customer experiences, and properly govern and manage all their data.

March 25, 2020

Datical released Targeted Rollback capabilities for Liquibase, the rapidly growing open-source tool that helps application developers track, version and deploy database schema changes quickly and safely.

March 25, 2020

HashiCorp raised $175 million in Series E funding, at a company valuation of $5.1 billion.

March 24, 2020

Sysdig launched PromCat.io.

March 24, 2020

Sonatype announced expanded language coverage within Nexus Lifecycle to include Conan (C/C++), Composer (PHP), and RubyGems (Ruby), including the ability to create and contextually enforce policies.

March 24, 2020

Swimlane joined the Chronicle Index Partner program as part of a broader industry effort to help customers improve visibility of and response to cyber threats.

March 23, 2020

Portshift introduced Kubei Open Source container scanning software.

March 23, 2020

Perspecta achieved Amazon Web Services (AWS) DevOps Competency status.

March 23, 2020

Talend announced the availability of Talend Cloud in Microsoft Azure Marketplace, an online store providing applications and services for use on Azure.

March 19, 2020

DevOps Institute, a global member-based association for advancing the human elements of DevOps, announced eight Virtual SKILup Day micro-conferences starting April 30, 2020.

March 19, 2020

Oteemo, an enterprise DevSecOps and Cloud Native Transformation consultancy, launched an enterprise kubernetes and cloud native learning program.

March 19, 2020

Spectro Cloud, an enterprise cloud-native infrastructure company, emerged from stealth and unveiled its first product: Spectro Cloud.