Static Code Analysis  for Infrastructure as Code Using Azure DevOps Pipelinesby@asgr
1,004 reads

Static Code Analysis  for Infrastructure as Code Using Azure DevOps Pipelines

July 11th 2021
3 min
by @asgr 1,004 reads
tldt arrow
Read on Terminal Reader🖨️
JS🚫

Too Long; Didn't Read

Static code analysis is performed as part of the security development lifecycle, where tools are used to find vulnerabilities such as buffer overflow, SQL injection within application code. This article explains how to set up static code analysis for infrastructure as code using Azure DevOps pipelines and Prisma cloud. An example of pipeline execution with Prisma Warning that we have one medium issue. This violation blocks the merge of “faulty code” into our deployment branch. If the job fails, the PR is blocked from being merged unless open issues are resolved.

Coin Mentioned

Mention Thumbnail
featured image - Static Code Analysis  for Infrastructure as Code Using Azure DevOps Pipelines
Sai Gunaranjan HackerNoon profile picture

@asgr

Sai Gunaranjan

About @asgr
LEARN MORE ABOUT @ASGR'S EXPERTISE AND PLACE ON THE INTERNET.
react to story with heart

RELATED STORIES

L O A D I N G
. . . comments & more!
Hackernoon hq - po box 2206, edwards, colorado 81632, usa