
Container Signing with AWS Signer
This project for a Fortune 500 company strengthened the security of deployed applications by implementing notarization for container artifacts, that can be used to established a chain of trust.
The data lake infrastructure was a critical asset in the company’s analytics and data-driven decision-making, with the Databricks platform as a central component. However, the code pipelines delivering to Databricks required a security overhaul to protect sensitive data and ensure compliance. The existing infrastructure exhibited vulnerabilities from outdated security practices, weak access controls, and limited monitoring, creating risks of unauthorized access, data breaches, and compromised development integrity. The challenge was to establish a secure, compliant pipeline environment that minimized these risks and ensured development integrity.
The project began with a detailed evaluation of current security practices and protocols within the code pipelines. This assessment included code analysis to identify security vulnerabilities and targeted vulnerability scanning for third-party dependencies, ensuring no risky libraries or modules were incorporated into the codebase.
The team implemented several key measures:
By embedding these controls directly into the development workflow, the team ensured that all code delivered to the Databricks platform met robust security standards.
Read more about the latest and greatest work Rearc has been up to.
This project for a Fortune 500 company strengthened the security of deployed applications by implementing notarization for container artifacts, that can be used to established a chain of trust.
This project for a Fortune 500 company strengthened the security of deployed applications by implementing automated cryptographic cipher scanning, analysis, and reporting, ensuring security compliance while maintaining development velocity.
Rearc performed an application portfolio assessment and designed a migration strategy for Avesis as they moved to a new AWS Organization. Post planning, Rearc leveraged infrastructure as code to deliver a new cloud landing zone in AWS and created an account factory for future growth. Rearc integrated Avesis's new AWS environment with their new Azure environment.
This project for a Fortune 500 company strengthened the security of Databricks-integrated data lake pipelines by implementing automated vulnerability detection, secure credential management, and third-party dependency scanning, resulting in a compliant and resilient infrastructure.
Tell us more about your custom needs.
We’ll get back to you, really fast
Kick-off meeting