paint-brush
Static Code Analysis  for Infrastructure as Code Using Azure DevOps Pipelinesby@asgr
1,316 reads
1,316 reads

Static Code Analysis  for Infrastructure as Code Using Azure DevOps Pipelines

by Sai Gunaranjan3mJuly 11th, 2021
Read on Terminal Reader
Read this story w/o Javascript
tldt arrow

Too Long; Didn't Read

Static code analysis is performed as part of the security development lifecycle, where tools are used to find vulnerabilities such as buffer overflow, SQL injection within application code. This article explains how to set up static code analysis for infrastructure as code using Azure DevOps pipelines and Prisma cloud. An example of pipeline execution with Prisma Warning that we have one medium issue. This violation blocks the merge of “faulty code” into our deployment branch. If the job fails, the PR is blocked from being merged unless open issues are resolved.

Coin Mentioned

Mention Thumbnail
featured image - Static Code Analysis  for Infrastructure as Code Using Azure DevOps Pipelines
Sai Gunaranjan HackerNoon profile picture
Sai Gunaranjan

Sai Gunaranjan

@asgr

IT Architect in Healthcare industry

About @asgr
LEARN MORE ABOUT @ASGR'S
EXPERTISE AND PLACE ON THE INTERNET.
L O A D I N G
. . . comments & more!

About Author

Sai Gunaranjan HackerNoon profile picture
Sai Gunaranjan@asgr
IT Architect in Healthcare industry

TOPICS

THIS ARTICLE WAS FEATURED IN...

Permanent on Arweave
Read on Terminal Reader
Read this story in a terminal
 Terminal
Read this story w/o Javascript
Read this story w/o Javascript
 Lite