Home / Companies / GitLab / Blog / Post Details
Content Deep Dive

Introducing the infrastructure bill of materials

Blog post from GitLab

Post Details
Company
Date Published
Author
Cindy Blake
Word Count
839
Company Posts That Month
20
Language
English
Hacker News Points
-
Post removed?
No
Summary

Software supply chain security has become a major focus, with organizations generating software bills of materials (SBOMs) but often neglecting the critical aspect of cloud infrastructure management. GitLab and Firefly have teamed up to address this gap by creating bills of materials for cloud infrastructure, known as infrastructure bills of materials (IBoM), which are essential for understanding and securing an organization's entire cloud footprint. As cloud computing and cloud-native applications grow, managing infrastructure through infrastructure-as-code (IaC) becomes vital for maintaining stability, consistency, and security. Tools like Terraform, Pulumi, and Helm aid in codifying cloud assets, allowing them to be managed with the same rigor as application software within a DevOps framework, a practice known as GitOps. Firefly's Cloud Asset Management solution enhances GitLab's GitOps capabilities by providing governance, drift detection, and remediation across an organization's cloud services, automating the codification of cloud assets into IaC, and ensuring that changes are monitored and managed through GitLab's CI/CD processes. This integration helps organizations better secure their software supply chains by providing comprehensive visibility and control over both application and infrastructure software.

Trends Found in this Post
Trend Post Mentions Total Month Mentions Posts Companies MoM
Kubernetes 5 1,209 158 68 +20%
Use This Data

Use this post, company, and trend context to find content marketing opportunities, perform competitive analysis, or address product feature gaps via the Plushcap MCP server or the Plushcap API.