Weaveworks Acquires Magalix
January 26, 2022

Weaveworks announced the acquisition of Magalix.

With this acquisition, Weaveworks is raising the bar on secure DevOps. By bringing Magalix’s powerful policy as code to Weave GitOps, Weaveworks will further its vision of automating Kubernetes application and infrastructure operations. Secure GitOps pipelines throughout the entire software life cycle are imperative for resilient cloud native service delivery that accelerates innovation, speed and agility. Terms of the deal were not disclosed.

The transformative trend of GitOps continues to gain broad mindshare with cloud platform teams as they automate continuous delivery and operations of applications and infrastructure. Trusted delivery adds policy as code to GitOps, enforcing security within the DevOps workflow.

GitOps Trusted Delivery will benefit Weaveworks’ customers:

- Policy as code enforces security and compliance from source to production: Magalix’s policy engine enables DevOps teams to apply consistent policies and best practices across multiple Kubernetes environments. Customers can now bridge the gap between developers, DevOps and security teams by introducing developer guardrails.

- Runtime policy and drift management guards protect production deployments: Magalix’s KubeGuard agent ensures any runtime drift is detected and automatically remediated. Customers are assured that policies are being enforced across all deployments and are immediately aware of any violations.

- Embedding security in GitOps workflows: Magalix simplifies DevSecOps and enables cloud-native environments to be more intrinsically secure, by integrating directly into source, build and deployment stages of the software lifecycle.

“Enterprise customers have made it clear that trusted application delivery is critical to the success of their increasingly complex cloud native platforms,” said Alexis Richardson, CEO of Weaveworks. “With the acquisition of Magalix, Weaveworks introduces customizable policies, compliance capabilities and comprehensive risk visibility into GitOps workflows, ensuring only authorized applications are deployed and there are no nefarious activities.”

Magalix was founded in 2017, focusing on security-as-code for teams running cloud-native applications. Magalix specializes in applying the DevOps mindset with codified security through policy lifecycle management, enforcement, and actionable insights. With Magalix’s security capabilities customers can easily control and enforce policies, using the same declarative approach as Kubernetes, to scale their applications while maintaining regulatory requirements and security best practices.

“We are seeing an increase in customers who run a zero-trust security model turning to GitOps to bring DevOps to cloud-native application development and IT operations,” said Mohamed Ahmed, Founder, and CEO of Magalix. “Similar to how DevOps disrupted infrastructure management, we believe that integrating security into GitOps pipelines brings considerable agility and speed, preventing errors and protecting against attacks that could shut down the entire platform. Imagine securing your platforms 100 times faster with very high confidence while evolving them. Weaveworks and Magalix share that joint mission to make it easy to innovate fast without jeopardizing security and stability.”

Weaveworks intends to fully integrate Magalix into Weave GitOps Enterprise, delivering end-to-end Kubernetes security, enhanced visibility and resilience across the entire cloud native life cycle in hybrid cloud, multi-cloud and edge environments.

Share this

Industry News

May 02, 2024

Parasoft announces the opening of its new office in Northeast Ohio.

May 02, 2024

Postman released v11, a significant update that speeds up development by reducing collaboration friction on APIs.

May 02, 2024

Sysdig announced the launch of the company’s Runtime Insights Partner Ecosystem, recognizing the leading security solutions that combine with Sysdig to help customers prioritize and respond to critical security risks.

May 02, 2024

Nokod Security announced the general availability of the Nokod Security Platform.

May 02, 2024

Drata has acquired oak9, a cloud native security platform, and released a new capability in beta to seamlessly bring continuous compliance into the software development lifecycle.

May 01, 2024

Amazon Web Services (AWS) announced the general availability of Amazon Q, a generative artificial intelligence (AI)-powered assistant for accelerating software development and leveraging companies’ internal data.

May 01, 2024

Red Hat announced the general availability of Red Hat Enterprise Linux 9.4, the latest version of the enterprise Linux platform.

May 01, 2024

ActiveState unveiled Get Current, Stay Current (GCSC) – a continuous code refactoring service that deals with breaking changes so enterprises can stay current with the pace of open source.

May 01, 2024

Lineaje released Open-Source Manager (OSM), a solution to bring transparency to open-source software components in applications and proactively manage and mitigate associated risks.

May 01, 2024

Synopsys announced the availability of Polaris Assist, an AI-powered application security assistant on the Synopsys Polaris Software Integrity Platform®.

April 30, 2024

Backslash Security announced the findings of its GPT-4 developer simulation exercise, designed and conducted by the Backslash Research Team, to identify security issues associated with LLM-generated code. The Backslash platform offers several core capabilities that address growing security concerns around AI-generated code, including open source code reachability analysis and phantom package visibility capabilities.

April 30, 2024

Azul announced that Azul Intelligence Cloud, Azul’s cloud analytics solution -- which provides actionable intelligence from production Java runtime data to dramatically boost developer productivity -- now supports Oracle JDK and any OpenJDK-based JVM (Java Virtual Machine) from any vendor or distribution.

April 30, 2024

F5 announced new security offerings: F5 Distributed Cloud Services Web Application Scanning, BIG-IP Next Web Application Firewall (WAF), and NGINX App Protect for open source deployments.

April 29, 2024

Code Intelligence announced a new feature to CI Sense, a scalable fuzzing platform for continuous testing.

April 29, 2024

WSO2 is adding new capabilities for WSO2 API Manager, WSO2 API Platform for Kubernetes (WSO2 APK), and WSO2 Micro Integrator.