Aqua Security Partners with VMware
April 18, 2018

Aqua Security announced a collaboration with VMware that will enable customers to protect applications deployed across both virtual machines and containers.

The combination of Aqua Container Security Platform with VMware AppDefense will provide enterprise security teams with a security solution that delivers a single-pane-of-glass to secure applications that include both containerized and non-containerized components.

VMware AppDefense protects applications running in virtualized environments by monitoring applications against their intended state – what they're supposed to do – and automatically responding when they deviate from that intended state, indicating a potential threat. This dramatically shrinks the attack surface, enables a much more agile/DevOps approach to security, and provides an interface into the software defined datacenter for the security operations team. VMware AppDefense uses its integration with DevOps systems, artificial intelligence and machine learning applied to massive data sets, and hypervisor-based visibility to understand the intended state of a distributed application to help customers achieve Cyber hygiene at scale.

The Aqua Container Security Platform (CSP) is a full-lifecycle security solution for containers and cloud-native applications that deeply integrates into the build pipeline to detect issues early in the DevOps cycle and minimize the attack surface. It then monitors the runtime environment and is able to prevent malicious activity using a whitelisting policy based on both declarative information and machine-learned behavior, an approach that is designed to ensure applications are only doing what they are supposed to do.

Key features of this combined security solution will enable:

- Visibility across VMs and containers: Shows security posture of running containers within the AppDefense console, including vulnerability status, approved and unapproved running containers, and policy violation alerts.

- Container Image Assurance: Prevents images that don't meet the security requirements or were not vetted from being deployed and enforces drift prevention that is designed to ensure running containers are derived from approved images.

- Monitoring and enforcement: Detection and automated response to container-level policy violations within AppDefense

- Auditing and compliance: Unified event logging within AppDefense for container-level processes and policy violations

Dror Davidoff, co-founder and CEO, Aqua Security, said: "VMware AppDefense utilizes the same principles used by the Aqua platform, namely, that good application behavior should be learned and understood, then applied to enforce least privileges in runtime. This fit will enable our teams to deliver a solution that gives security teams an easy, unified approach to modern application security."

"As organizations deploy applications across increasingly diverse data center endpoints and hybrid cloud environments, security must address the application layer in an efficient and scalable way that supports those modalities," said Tom Corn, SVP and GM, Security Products at VMware. "Aqua Security's in-depth visibility and control in containerized applications offers customers a valuable extension and enhancement to VMware AppDefense that will enable security teams to secure applications at a more granular level, regardless of how they are deployed."

The combined Aqua Security and VMware security solution will be generally available in VMware's Q2 Fiscal 2019 ending on July 3, 2018.

Share this

Industry News

February 27, 2025

IBM has completed its acquisition of HashiCorp, whose products automate and secure the infrastructure that underpins hybrid cloud applications and generative AI.

February 27, 2025

Veeam® Software announces Veeam Kasten for Kubernetes v7.5, designed to deliver Kubernetes-native data resilience for enterprises.

February 27, 2025

DeepSource released Globstar, an open-source project bringing code security tooling to the AppSec community, with no restrictions on commercial usage.

February 26, 2025

Google Cloud announced the public preview of Gemini Code Assist for individuals, a free version of Gemini Code Assist that will give students an easy-to-use free AI coding assistant with the highest usage limits available

February 26, 2025

BrowserStack announced the launch of its comprehensive Test Platform, designed to revolutionize how engineering teams approach software testing in an AI-driven world.

February 26, 2025

Snyk announced the launch of the Snyk Secure Developer Program, a new initiative designed to empower open source software maintainers with developer-friendly security solutions.

February 25, 2025

Red Hat announced the general availability of Red Hat OpenShift 4.18, the latest version of the hybrid cloud application platform powered by Kubernetes.

February 25, 2025

Akamai Technologies announced a Managed Container Service designed for companies that want to deliver better experiences by running workloads closer to users, devices, and sources of data.

February 24, 2025

Couchbase announced that its Capella AI Model Services have integrated NVIDIA NIM microservices, part of the NVIDIA AI Enterprise software platform, to streamline deployment of AI-powered applications, providing enterprises a powerful solution for privately running generative (GenAI) models.

February 20, 2025

GitLab announced the general availability of GitLab Duo Self-Hosted.

February 20, 2025

Tigera announced the introduction of several new innovations to Calico, including a new Ingress Gateway capability for Calico Cloud and Calico Enterprise, and the launch of Calico Dashboards.

February 20, 2025

Copado introduced three AI-powered DevOps apps for Slack.

February 20, 2025

Gearset announced that it now supports Salesforce's Agentforce.

February 19, 2025

Sonar announced the acquisition of AutoCodeRover, an autonomous AI agent platform for software development.

February 19, 2025

Faros AI announced a collaboration with Microsoft to deliver its AI-powered platform for optimizing engineering workflows on Azure.