DSP AppSec Infrastructure Apps

DSP AppSec Infrastructure Apps

  • Docs

›CIS Scan Automation

Cluster Deployed Applications

  • Cluster Deployed Security Apps

Kubernetes Cluster

  • AppSec Infrastructure

Sdarq

  • Sdarq

ZAP Scan Automation

  • Zap Scan Automation

CIS Scan Automation

  • CIS Scan Automation

How we use DefectDojo & CodeDx

  • How we use DefectDojo & CodeDx

Secret Deployment

  • Secret deployment for each app

Configurations

  • Configurations

CIS Scan Automation

CIS scanner is an internal scanner developed by DSP AppSec team to assess the security posture of our GCP projects. This scanner scans a GCP project with Inspec GCP CIS Benchmark. Profiles listed below:

  • inspec-gcp-cis-benchmark
  • inspec-gke-cis-gcp
  • inspec-gke-cis-k8s

CIS scanner runs:

  • independent (weekly scanner)
  • on-demand (integrated to Sdarq)
← Zap Scan AutomationHow we use DefectDojo & CodeDx →
Copyright © 2024 DSP AppSec - Broad Institute