Check Point® Software Technologies Ltd. announced new Infinity Platform capabilities to accelerate zero trust, strengthen threat prevention, reduce complexity, and simplify security operations.
Puppet by Perforce announced Puppet Comply 2.14.0 and key updates to its Windows and Linux Compliance Enforcement Modules (CEM) — both extensions of Puppet Enterprise’s secured infrastructure capabilities.
Key features of the update include greater visibility into a company’s complete multi-cloud infrastructure footprint, updated alignment with the latest CIS Benchmarks, and role-based access controls.
“With cybersecurity expertise in high demand and a lack of professionals to fill this space, everyone from developers to operations needs to make security and compliance a priority. It’s not just a nice-to-have for Day 1 and Day 2 operations – it’s a must,” said Claire McDyre, Product Manager, Puppet by Perforce. “Puppet compliance assessment and remediation automates and simplifies alignment with consensus regulatory standards and security processes by breaking down silos between teams. The solution allows teams to define their safest configurations against expert-declared security standards, empowering them to enforce those configurations continuously and stay ready to share proof of compliance when audit time comes.”
How Puppet Comply and CEM Fit Into Day 1 and Day 2 Operations:
- Provides compliance verification through policy as code during Day 1 operations to ensure servers are initially provisioned with a secure configuration.
- Enforces servers desired state using popular security standards like CIS Benchmarks and DISA STIGs as a baseline to achieve compliance with compliance regulations and frameworks.
- Frequently reevaluates and remediates configuration drift during Day 2 operations, guaranteeing continual adherence to mandated baselines.
Puppet’s compliance products are a continued investment to help streamline the process of bringing infrastructure into compliance to help operators:
- Decrease the financial and security risks associated with non-compliance.
- Increase organization-wide visibility into infrastructure compliance and security status and predictability of resolution.
- Reduce the time and resources needed to interpret scans, remediate compliance failures, and prepare for audits.
- Eliminate effort associated with keeping up with evolving standards.
- Increase the percentage of infrastructure that is fully compliant.
Puppet Comply offers continuous compliance monitoring with a holistic status view across hybrid infrastructure. Puppet’s Compliance Enforcement Modules (CEM) provide turnkey compliance remediation and enforcement of policy-as-code aligned with the latest CIS Benchmarks and DISA STIGs. Puppet Comply and CEM are extensions of Puppet Enterprise.
Industry News
WaveMaker announced the release of WaveMaker AutoCode, an AI-powered plugin for the Figma universe that produces pixel-perfect front-end components with lightning fast accuracy.
DoiT announced the acquisition of PerfectScale, an automated Kubernetes (K8s) optimization and governance platform.
Parasoft earned a top spot as a Leader and Fast Mover in the latest GigaOm Radar Report on API Functional Automated Testing.
Linux Foundation Europe and OpenSSF announced a global joint-initiative to help prepare maintainers, manufacturers, and open source stewards for the implementation of the EU Cyber Resilience Act (CRA) and future cybersecurity legislation targeting jurisdictions around the world.
OutSystems announced the general availability (GA) of Mentor on OutSystems Developer Cloud (ODC).
Kurrent announced availability of public internet access on its managed service, Kurrent Cloud, streamlining the connectivity process and empowering developers with ease of use.
MacStadium highlighted its major enterprise partnerships and technical innovations over the past year. This momentum underscores MacStadium’s commitment to innovation, customer success and leadership in the Apple enterprise ecosystem as the company prepares for continued expansion in the coming months.
Traefik Labs announced the integration of its Traefik Proxy with the Nutanix Kubernetes Platform® (NKP) solution.
Perforce Software announced the launch of AI Validation, a new capability within its Perfecto continuous testing platform for web and mobile applications.
Mirantis announced the launch of Rockoon, an open-source project that simplifies OpenStack management on Kubernetes.
Endor Labs announced a new feature, AI Model Discovery, enabling organizations to discover the AI models already in use across their applications, and to set and enforce security policies over which models are permitted.
Qt Group is launching Qt AI Assistant, an experimental tool for streamlining cross-platform user interface (UI) development.
Sonatype announced its integration with Buy with AWS, a new feature now available through AWS Marketplace.
Endor Labs, Aikido Security, Arnica, Amplify, Kodem, Legit, Mobb and Orca Security have launched Opengrep to ensure static code analysis remains truly open, accessible and innovative for everyone: