Download as pdf or txt
Download as pdf or txt
You are on page 1of 2

Solution Sheet

The Comprehensive Security Platform for


Containers and Cloud-Native Applications
Software containers represent unique security challenges, due to the scale, agility and open
nature of container environments. Aqua’s platform is natively architected for containers,
providing IT security with full visibility and control over container activity across the lifecycle,
while remaining transparent and unintrusive to DevOps.

Full Visibility and Control


Gain visibility into container activity and
enforce security policies

Integrated & Non-Intrusive


Automated security for the entire
development-to-production lifecycle

Enabling DevSecOps
"Shift left" security with automated tests
and controls within the CI/CD pipeline

Continuous Image Runtime Protection Intelligent


Assurance Security Policy
Scan images for known vulnerabilities, Advanced threat detection and mitigation, Automated policy creation using machine
detect malicious code, and enforce image with container activity controls, network learning that understands contextual
integrity throughout the lifecycle. segmentation, and host integrity controls. container behavior.

Security Automation Fine-Grained User Cross-Platform


at Scale Access Control
Zero-touch deployment and management, Role-based permissions per specific Supports Docker and Kubernetes
with APIs and integrations with container, image, host, cluster, namespace, environments, Linux and Windows
orchestration tools. network and storage volume. Containers, on-prem or on public cloud.

www.aquasec.com Copyright ©2018 Aqua Security Software Ltd., All Rights Reserved
Solution Sheet

The End-to-End Platform for Container Security


Continuous Image Assurance Auditing & Compliance Identity Mgmt: Active Directory / LDAP,
SAML Single Sign-On
Scan for known vulnerabilities, CIS Benchmark tests for Kubernetes
malware, hard-coded secrets, based on and Docker Supported Environments
a continuous feed correlated across
multiple source Scan hosts for vulnerabilities and Linux and Windows Containers
malware
Scans OS packages (RPM and Deb) and Registries: DockerHub, Amazon ECR,
language packages: Java, NodeJS, Granular event logging and report Google GCR, CoreOS Quay, JFrog
Ruby, PHP, Python, C/C++ Artifactory, Azure ACR or any v1/v2
Integrations registries
Integrates with CI/CD to automate
CI/CD tools: Jenkins, GoCD, TeamCity, Orchestrators: Kubernetes, Mesos,
security testing in the pipeline, and with
Bamboo, GitLab and Microsoft VSTS Docker Swarm, Red Hat OpenShift,
Jira for developer feedback
SIEM, Analytics and Alerts: Sumologic, Amazon ECS, Rancher
User Access Control Syslog, ArcSight, Loggly, Logentries, Cloud Deployment: AWS, Google Cloud,
Role-based privilege definition per Microsoft OMS, ElasticSearch IBM Cloud, Microsoft Azure
container/host/application/network/
storage volume
Aqua Deployment Architecture
Allow/disallow specific user
actions, e.g. start/stop, log access, Build Ship Run
read/write access, volume access

Secrets Management Platforms


Aqua Enforcer
Securely inject secrets into
containers with no downtime Container

Integrates with HashiCorp Vault,


Container
CyberArk Password Vault, AWS
CI/CD
KMS and Azure Vaults Registry

Runtime Protection Container

Real-time monitoring of container

CaaS
Container
activity against security policies
Block specific activities and Container

attacks without killing the


container
Image Scanning RBAC Secrets Image Assurance Runtime Protection Container Firewall Compliance

Microservices Firewall
Visualize container networking Aqua LDAP / AD Secrets Vaults Collaboration SIEM & Analytics
Cyber Intelligence SAML SSO
Nano-segment container
networking based on application

About Aqua Contact


Aqua Security enables enterprises to secure their container-based contact@aquasec.com
applications from development to production, accelerating
www.aquasec.com
container adoption and bridging the gap between DevOps and IT
security. @aquasecteam
Aqua’s Container Security Platform provides full visibility into linkedin.com/company/aquasecteam
container activity, allowing organizations to detect and prevent
suspicious activity and attacks, providing transparent, automated US HQ: Intl. HQ:
security while helping to enforce policy and simplify regulatory 800 District Avenue, Suite 310, 2 Ze’ev Jabotinsky Rd.,
compliance. Burlington, MA 01803 Ramat Gan, Israel 52520

www.aquasec.com Copyright ©2018 Aqua Security Software Ltd., All Rights Reserved

You might also like