Secure DevOps for VMware Tanzu

Confidently secure containers, Kubernetes, and cloud services


Read 5 Keys to a Secure DevOps Workflow

VMware Cloud Solutions

Security and Visibility for VMware Tanzu

The Sysdig Secure DevOps Platform provides security built on an open source foundation and deep visibility to confidently run apps on VMware Tanzu. Scale simply with SaaS and DevOps integrations that help you keep pace with the dynamic nature of Kubernetes and cloud.

Secure the
build pipeline

Scan images for vulnerabilities and misconfigurations directly within CI/CD pipelines and registries, including Harbor.

Detect and respond to runtime threats

Accurately detect threats to your VMware Tanzu infrastructure with Falco, the open-source standard for runtime security.

Continuously validate compliance

Streamline compliance controls for NIST, PCI-DSS, etc. and enable File Integrity Monitoring (FIM) for containers.

Monitor and troubleshoot

Scale Prometheus monitoring for VMware Tanzu and see performance metrics enriched with Kubernetes and cloud context.

Secure DevOps for VMware Tanzu

Image scanning

Deploy securely using a single workflow to detect container image vulnerabilities and misconfigurations. Scan images and view results directly within Harbor registry. Automate local image scanning for Tanzu containers. Integrate directly into your CI/CD tooling to secure the build pipeline.

Runtime security

Secure applications and infrastructure at runtime without impacting performance, leveraging Falco, the open-source, cloud native runtime security project. Implement real-time threat detection for Tanzu containers. Save time with out-of-the-box rules to detect anomalous behavior.

Network security

Implement a Zero Trust approach to container security by allowing only required communication. Visualize network traffic between pods, services, and applications inside VMware Tanzu. Quickly identify anomalous network activity by auditing connections to or from any process.

Kubernetes & container monitoring

Maximize the performance and availability of your containers on VMware Tanzu. Get deep visibility into clusters, deployments, namespaces, pods, and workloads. Monitor Kubernetes orchestration state and operational status. Reduce cost by optimizing cloud capacity and resource usage.

Cloud service monitoring with full Prometheus compatibility

Scale Prometheus monitoring for Tanzu infrastructure and containers. Improve application performance and rapidly solve issues with deep visibility and granular metrics enriched with Kubernetes and cloud context.

Continuous compliance

Continuously validate compliance with industry standards, like PCI and NIST, for Tanzu and containers during build and runtime. Automatically run benchmarks and measure progress against CIS best practices. Audit Kubernetes, container, and cloud activity. Enable File Integrity Monitoring (FIM) to detect data tampering.

Incident response & forensics

Understand and contain the impact of any security breach. Correlate system, user, and container activity over time with a forensics workflow. Conduct post-mortem analysis and determine root cause even after containers are gone. Accelerate incident response and recover quickly.

Troubleshooting

Reduce mean-time-to-resolution (MTTR) by examining granular, system-level capture data and detailed topology maps to resolve hard-to-diagnose issues. Get kernel-level observability to troubleshoot host, network, application, container, and process issues. Correlate Kubernetes and container events to see the entire picture.

VMware Integrations

Start Free Trial

Sign-Up for a Sysdig Platform, Sysdig Secure or Sysdig Monitor free 30-day trial, no credit card required.