heart Posts from the community...
@dkatara_pandit123 shared a post, 3 months ago
Devops Team Leader, EPAM

Fortify Static Code Analysis in Pipelines


Fortify SCA executes it vulnerability test by looking at the JAVA pom.xml file which contains all the dependencies. As the scanning is performed at the code level, the best practice is that it is performed as early as possible. This is achieved by running the scan after the code checkout, as to stop further processing of the build in case vulnerabilities are detected.

@dkatara_pandit123 started using tool Terraform , 3 months, 3 weeks ago.