Fidelis Security > 实例探究 > CloudPassage Enables Security for the Centrify DevOps Team with Vulnerability Assessment and Reporting, While Providing Compliance Reporting

CloudPassage Enables Security for the Centrify DevOps Team with Vulnerability Assessment and Reporting, While Providing Compliance Reporting

Fidelis Security Logo
公司规模
1,000+
地区
  • America
国家
  • United States
产品
  • CloudPassage Halo
  • Jenkins
  • SaltStack
技术栈
  • CI/CD workflow
  • API Integration
实施规模
  • Enterprise-wide Deployment
影响指标
  • Cost Savings
  • Digital Expertise
  • Productivity Improvements
技术
  • 应用基础设施与中间件 - API 集成与管理
  • 网络安全和隐私 - 云安全
  • 网络安全和隐私 - 安全合规
适用行业
  • Software
适用功能
  • 离散制造
  • 质量保证
用例
  • 网络安全
  • 监管合规监控
服务
  • 云规划/设计/实施服务
  • 网络安全服务
关于客户
Centrify is a company that delivers Zero Trust Security through the power of Next-Gen Access. They verify every user, validate their devices, and limit the amount of access and privilege to resources while continually learning and adapting. Centrify's Next-Gen Access is the only industry-recognized solution that uniquely converges Identity-as-a Service (IDaaS), enterprise mobility management (EMM) and privileged access management (PAM.) The company serves over 5,000 worldwide organizations, including over half the Fortune 100. They are trusted by these businesses to proactively secure their operations.
挑战
Centrify, a company that delivers Zero Trust Security through the power of Next-Gen Access, needed to integrate security into their DevOps process. They wanted to evaluate vulnerability assessments before placing upgrades into production. Additionally, they needed to prepare for the Federal Risk and Authorization Management Program (FedRAMP) and the Service Organization Control (SOC 2) compliance audits. Centrify was searching for a product that could integrate into the organization’s CI/CD workflow – which includes the Jenkins and SaltStack toolsets – so assessments could take place prior to updates being pushed into production. They also needed a solution that provided detailed vulnerability management and reporting tools.
解决方案
Centrify deployed CloudPassage Halo and employed Halo’s vulnerability management and reporting in order to prepare for the FedRAMP and Soc2 compliance audits. They integrated the Halo API into Jenkins and SaltStack, integrating Halo directly with their DevOps processing. Centrify immediately began employing all CloudPassage Halo modules including: software vulnerability assessment, configuration security monitoring, server account monitoring, file integrity monitoring, and log-based intrusion detection. The team used Halo’s API to integrate Halo with Jenkins and SaltStack, working with the CloudPassage customer success team to customize the Halo platform to their specific security policies. The lightweight Halo agent was chosen because it would not interrupt the processes that had been already established, but rather would integrate with and monitor his DevOps team’s CI/CD workflow.
运营影响
  • Security has been integrated into Centrify’s CI/CD pipeline.
  • Centrify has full visibility into all workloads and is able to ensure that their work is within compliance, well before any audits take place.
  • The CloudPassage Halo platform has been customized in order to prepare Centrify for the FedRAMP and SOC 2 compliance audits.
  • Centrify has used the Halo API to integrate with Jenkins and SaltStack, ensuring that the platform is fully integrated into all workloads and the work of their DevOps team.
数量效益
  • Centrify is currently deploying CloudPassage Halo across hundreds of workloads.

Case Study missing?

Start adding your own!

Register with your work email and create a new case study profile for your business.

Add New Record

相关案例.

联系我们

欢迎与我们交流!
* Required
* Required
* Required
* Invalid email address
提交此表单,即表示您同意 IoT ONE 可以与您联系并分享洞察和营销信息。
不,谢谢,我不想收到来自 IoT ONE 的任何营销电子邮件。
提交

感谢您的信息!
我们会很快与你取得联系。