Rancher Government Solutions Launches Carbide
March 01, 2023

Rancher Government Solutions launched Rancher Government Carbide, a supply chain security solution, in response to increasing threats to the nation’s software supply chain.

Carbide simplifies Kubernetes security management by providing a better, more standardized way for users to verify and validate that their software is safe and secure.

Rancher Government Carbide secures the software supply chain by verifying provenance back to a trusted entity using a centralized secure container registry for end users, validated by a secured signing key. In addition, Carbide’s pipeline utilizes tools for vulnerability scanning and generating software bills of materials (SBOMs). Furthermore, Carbide supports a Kubernetes management platform and distribution with Security Technical Implementation Guides (STIGs) validated and published by DISA (Rancher MCM 2.6 & RKE2).

“At Rancher Government Solutions, we know securing the software supply chain is mission critical to our federal customers, particularly given the increased frequency of attacks,” said Brandon Gulla, Vice President and Chief Technology Officer at Rancher Government Solutions. “We built Carbide to provide security validation capabilities directly to our customers and give them a clear, easy way to confidently answer difficult questions about the security posture of their Kubernetes environments.”

STIGATRON is a tool within Carbide built to validate that downstream clusters are secure. By automatically scanning downstream clusters from the centralized Rancher Manager and comparing them to the STIG cluster, STIGATRON alleviates the obstacles system administrators face in the validation process, enabling automated compliance with the security standards of the federal government.

“Given that software is critical to daily operations, the need to balance security with innovation is essential,” said Lynne Chamberlain, President and CEO of Rancher Government Solutions. "This is why our team developed Rancher Government Carbide: to simplify Kubernetes management by providing a more standardized way for users to verify and validate software and support federal security compliance requirements.”

Rancher Government Carbide also includes airgap documentation and edge capabilities. Carbide is an add-on support service to the existing Rancher products suite, designed to assist supported customers with overcoming the security challenges associated with application modernization, containers, and Kubernetes.

Carbide is included at no extra cost and can be easily accessed by all current RGS support customers. Rancher users interested in optimizing their experience using Rancher software and ensuring security can reach out to the RGS team at https://ranchergovernment.com/carbide. In addition, U.S. government and DoD IT teams seeking to address the operational and security challenges of managing multiple Kubernetes clusters at scale can visit www.ranchergovernment.com for more information.

Share this

Industry News

April 15, 2024

OpenText™ announced Cloud Editions (CE) 24.2, including OpenText DevOps Cloud and OpenText™ DevOps Aviator.

April 15, 2024

Postman announced its acquisition of Orbit, the community growth platform for developer companies.

April 11, 2024

Check Point® Software Technologies Ltd. announced new email security features that enhance its Check Point Harmony Email & Collaboration portfolio: Patented unified quarantine, DMARC monitoring, archiving, and Smart Banners.

April 11, 2024

Automation Anywhere announced an expanded partnership with Google Cloud to leverage the combined power of generative AI and its own specialized, generative AI automation models to give companies a powerful solution to optimize and transform their business.

April 11, 2024

Jetic announced the release of Jetlets, a low-code and no-code block template, that allows users to easily build any technically advanced integration use case, typically not covered by alternative integration platforms.

April 10, 2024

Progress announced new powerful capabilities and enhancements in the latest release of Progress® Sitefinity®.

April 10, 2024

Buildkite signed a multi-year strategic collaboration agreement (SCA) with Amazon Web Services (AWS), the world's most comprehensive and broadly adopted cloud, to accelerate delivery of cloud-native applications across multiple industries, including digital native, financial services, retail or any enterprise undergoing digital transformation.

April 10, 2024

AppViewX announced new functionality in the AppViewX CERT+ certificate lifecycle management automation product that helps organizations prepare for Google’s proposed 90-day TLS certificate validity policy.

April 09, 2024

Rocket Software is addressing the growing demand for integrated security, compliance, and automation in software development with its latest release of Rocket® DevOps, formerly known as Aldon®.

April 09, 2024

Wind River announced the latest release of Wind River Studio Developer, an edge-to-cloud DevSecOps platform that accelerates development, deployment, and operation of mission-critical systems.

April 09, 2024

appCD announced its generative infrastructure from code solution now supports Azure Kubernetes Service (AKS).

April 09, 2024

Synopsys announced the availability of Black Duck® Supply Chain Edition, a new software composition analysis (SCA) offering that enables organizations to mitigate upstream risk in their software supply chains.

April 09, 2024

DataStax announced innovative integrations with API extensions to Google Cloud’s Vertex AI Extension and Vertex AI Search, offering developers an easier time leveraging their own data.

April 08, 2024

Parasoft introduced C/C++test CT, a comprehensive solution tailored for large teams engaged in the development of safety- and security-critical C and C++ products.

April 08, 2024

Endor Labs announced a strategic partnership with GuidePoint Security.