Company
Date Published
Author
Eric Smalling
Word count
769
Language
English
Hacker News points
None

Summary

The company Snyk has enhanced its Infrastructure as Code (IaC) scanning tool with new features, including support for Azure, GCP, and AWS infrastructure as code. The updates expand the breadth of the tool's policies to better protect platforms from vulnerabilities and issues. Snyk's IaC scanning can help catch issues in templates before they reach provisioning, providing an automated review that compares existing templates against curated policies and best practices. This allows for compliance with security and architecture teams' standards, as well as testing changes as code is updated. The tool now supports Terraform AWS resources, logging best practices on Azure, and various checks related to sensitive data in Lambda, EC2, and EKS resources. Snyk's IaC scanning can be used by developers to actively make a difference in squashing vulnerabilities and security issues at the source.