Introducing the infrastructure bill of materials
Blog post from GitLab
Software supply chain security has become a major focus, with organizations generating software bills of materials (SBOMs) but often neglecting the critical aspect of cloud infrastructure management. GitLab and Firefly have teamed up to address this gap by creating bills of materials for cloud infrastructure, known as infrastructure bills of materials (IBoM), which are essential for understanding and securing an organization's entire cloud footprint. As cloud computing and cloud-native applications grow, managing infrastructure through infrastructure-as-code (IaC) becomes vital for maintaining stability, consistency, and security. Tools like Terraform, Pulumi, and Helm aid in codifying cloud assets, allowing them to be managed with the same rigor as application software within a DevOps framework, a practice known as GitOps. Firefly's Cloud Asset Management solution enhances GitLab's GitOps capabilities by providing governance, drift detection, and remediation across an organization's cloud services, automating the codification of cloud assets into IaC, and ensuring that changes are monitored and managed through GitLab's CI/CD processes. This integration helps organizations better secure their software supply chains by providing comprehensive visibility and control over both application and infrastructure software.
| Trend | Post Mentions | Total Month Mentions | Posts | Companies | MoM |
|---|---|---|---|---|---|
| Kubernetes | 5 | 1,209 | 158 | 68 | +20% |
Use this post, company, and trend context to find content marketing opportunities, perform competitive analysis, or address product feature gaps via the Plushcap MCP server or the Plushcap API.