12. 12
Red Hat Enterprise Linux (7.2 or later)
CentOS (7.2 or later)
Ubuntu (14.04 LTS or later)
Amazon Linux (2015.03 or later)
Microsoft Windows (2012, 2008 R2) - Preview
エージェントのサポートOS
15. 15
Common Vulnerabilities & Exposures
Center for Internet Security – Secure Configuration Benchmarks
Security Best Practices
Runtime Behavior Analysis
ルールパッケージ
18. 18
Version
Control
CI Server
Package
Builder
Deploy
ServerCommit to
Git/masterDev
Pull
Code
AMIs
Send Build Report to Dev
Stop everything if build failed
Staging Env
Test Env
Code
Config
Tests
Prod Env
Push
Config Install
Create
Repo
CloudFormation
Templates for Env
Generate
DevSecOpsの世界へ
Security
Repository
Security
Vulnerability
and pen
testing
•Security
Infrastructure tests
•Security unit tests in
app
継続的デプロイにセキュリティ評価を