Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

Optimizing AppSec by Enhancing Integration with Jira

If there’s one thing we learned in our years of building AppSec technology, it’s that the best tools in the world are useless if they don’t get used. We know from speaking with our customers and industry research that developers won’t use AppSec tools that make their lives harder. Forcing them into cumbersome processes, or making them switch tools and learn a new user interface, will likely lead to AppSec neglect in favor of hitting development deadlines.

A SaaS Multi-Cluster Manager for Velero

Welcome to another video on CloudCasa for Velero: A SaaS Multi-Cluster Manager for Velero backups. In this video, Martin Phan, Field CTO for CloudCasa, will show you the first-hand look of the integration that CloudCasa has with Velero and its centralized GUI that helps users manage and monitor their Velero-based backups. You will find out how CloudCasa for Velero is able to aggregate data across multiple Kubernetes clusters across all hybrid and cloud environments. If you are using Velero today, please check this demo on CloudCasa for Velero and learn more about its multi-cluster management functionality and full stack recovery capabilities using the intuitive GUI.

Ad-Hoc Job Runs and Creating backup and Restore Custom Resources for Velero

Welcome to another video on CloudCasa for Velero, in which Martin Phan, Field CTO for CloudCasa, will show you how you can easily form Ad hoc job runs for Velero in CloudCasa. He will also demonstrate how you can create backup and restore Custom Resources in CloudCasa for Velero and get notifications directly from the CloudCasa service that is running within Velero. Through functionality already native to CloudCasa such as full stack recovery, email alerting and role-based access control, CloudCasa for Velero can be that single pane of glass to manage and report on all your Velero installations throughout your enterprise. So do give CloudCasa for Velero a try and do let us know what you think.

Mend.io Achieves AWS Security Competency Status

We’re delighted to announce that Mend.io has achieved Amazon Web Services (AWS) Security Competency status. This designation recognizes that Mend.io has demonstrated proven technology and deep expertise to help customers achieve cloud security goals. It reinforces Mend.io’s position as a trusted member of the AWS Partner Network (APN), which has already been established since we achieved AWS DevOps Competency status.

Deceptive 'Vibranced' npm Package Discovered Masquerading as Popular 'Colors' Package

A new malicious package has been detected on the Node Package Manager (npm) repository that poses a significant threat to users who may unknowingly install it. Named ‘Vibranced,’ the package has been carefully crafted to mimic the popular ‘colors’ package, which has over 20 million weekly downloads.

The Lemontech story - GitGuardian customer stories

A few weeks ago, we had the pleasure of exchanging with Ezequiel Rabinovich, Lemontech's CTO, about how his teams use GitGuardian to protect their repositories. Lemontech is a company developing software for the legal industry based in Santiago, Chile. It serves more than 1,300 customers in Latin America. Ezequiel supervises a team of about 30 developers and 4 DevOps engineers for approximately 150 employees. They use GitHub for source control management, and their organization has 350 repos, 130 of which are active.

New Service Offering to Manage and Run Velero Backups at Enterprise Scale

It’s spring again, and as the weather warms, the birds sing, and the flowers bloom, our thoughts here at Catalogic have turned to yet another major CloudCasa feature update! Our engineering team has (as they like to frequently point out) exceeded all reasonable expectations once again by delivering a veritable cornucopia of new features.

The importance of platform engineers in a security program

Platform engineers need to be empowered in an organization’s security program. Their work has huge leverage over a product's security posture, arguably as great an impact (some would even say greater) than application vulnerabilities. Despite the significance of the impact of their work, their role in security programs remain ill-defined.