Clear filters 22 of 585 tools shown

DevSecOps & Pipeline Security

Tools for integrating security into the development pipeline and DevOps processes.

Checkov

Checkov

DevSecOps & Pipeline Security

Checkov is a static code analysis tool for infrastructure-as-code (IaC) configurations, ensuring security and compliance across various cloud platforms.

Multi-Cloud
Open Source
Self Hosted + Cloud Options
DefectDojo

DefectDojo

DevSecOps & Pipeline Security

A unified DevSecOps platform for managing vulnerabilities and security posture across multiple tools and projects.

Multi-Cloud
Open Source
Self Hosted + Cloud Options
tfsec

tfsec

DevSecOps & Pipeline Security

A security scanner for Terraform configurations that identifies potential vulnerabilities through static analysis.

Multi-Cloud
Open Source
Self Hosted + Cloud Options
Terrascan

Terrascan

DevSecOps & Pipeline Security

Detect compliance and security violations across Infrastructure as Code to mitigate risk before provisioning cloud native infrastructure.

Multi-Cloud
Open Source
Self Hosted + Cloud Options
KICS

KICS

DevSecOps & Pipeline Security

Find security vulnerabilities, compliance issues, and infrastructure misconfigurations early in the development cycle of your infrastructure-as-code with KICS by Checkmarx.

Multi-Cloud
Open Source
Self Hosted + Cloud Options
PagerDuty Full Service Ownership Documentation

PagerDuty Full Service Ownership Documentation

DevSecOps & Pipeline Security

guide to help teams transition to a full-service ownership model.

Multi-Cloud
Open Source
Self Hosted Only
TerraGoat

TerraGoat

DevSecOps & Pipeline Security

TerraGoat is a Terraform repository designed to demonstrate common configuration errors in cloud environments.

Multi-Cloud
Open Source
Self Hosted Only
Hammer

Hammer

DevSecOps & Pipeline Security

Dow Jones Hammer : Protect the cloud with the power of the cloud(AWS)

AWS
Open Source
Cloud Service Only
PagerDuty DevSecOps Documentation

PagerDuty DevSecOps Documentation

DevSecOps & Pipeline Security

A guide for integrating security into the development and operations lifecycle, emphasizing the importance of early security checks and cross-team collaboration.

Multi-Cloud
Open Source
Self Hosted + Cloud Options
Pulumi

Pulumi

DevSecOps & Pipeline Security

Pulumi is an Infrastructure as Code (IaC) platform that allows developers to manage cloud resources using familiar programming languages.

Multi-Cloud
Open Source
Self Hosted + Cloud Options
SecHub

SecHub

DevSecOps & Pipeline Security

A unified integration mechanism for managing multiple security tools and scanners through a simple API/client interface.

Multi-Cloud
Open Source
Self Hosted + Cloud Options
SonarQube

SonarQube

DevSecOps & Pipeline Security

A robust static code analysis tool for maintaining high code quality and security in software projects.

Multi-Cloud
Open Source + Commercial
Self Hosted + Cloud Options