Deploy Bravely — Secure your AI transformation with Prisma AIRS
  • Sign In
    • Customer
    • Partner
    • Employee
    • Login to download
    • Join us to become a member
  • EN
  • magnifying glass search icon to open search field
  • Contact Us
  • What's New
  • Get Support
  • Under Attack?
Palo Alto Networks logo
  • Products
  • Solutions
  • Services
  • Partners
  • Company
  • More
  • Sign In
    Sign In
    • Customer
    • Partner
    • Employee
    • Login to download
    • Join us to become a member
  • EN
    Language
  • Contact Us
  • What's New
  • Get support
  • Under Attack?
  • Demos and Trials

asset thumbnail
Datasheet
Jun 02, 2023

CI/CD Security Checklist

CI/CD Security Checklist

English
Preview PDF Download
Preview PDF Download
Learn Six Best Practices to Proactively Address CI/CD Pipeline Weaknesses

CI/CD pipelines are a critical component of cloud-native software development, but CI/CD security is often overlooked. And because bad actors see CI/CD pipeline weaknesses as low-hanging fruit, they’ll frequently leverage those weaknesses to instigate attacks that corrupt both the CI/CD pipeline and the software supply chain. 

But with the right approach — one that proactively implements some best practices — you can get ahead of CI/CD security risks and harden your pipelines over time. 

This checklist will give you practical tips to help protect your CI/CD pipeline from attacks like pipeline poisoning, secrets exfiltration and dependency chain abuse. 

Download the checklist to learn how to: 

  • Apply a policy-as-code approach to your CI/CD pipeline configuration files.

  • Implement a secrets scanning strategy that minimizes noisy alerts and helps you quickly remove exposed credentials from your CI/CD pipeline. 

  • Adopt least-privileged access by implementing governance controls and auditing procedures. 

  • Establish a robust logging and monitoring program to give you proper visibility into your CI/CD pipeline.

  • And more!

Share page on facebook Share page on linkedin Share page by an email
Create an account Sign In

Already have an account? Sign in to continue reading.

Sign in here if you are a customer, partner or an employee.

Sign in with SSO
OR
Continue with Google Continue with LinkedIn
OR
Sign In

For unlimited access to ebooks and other resources, create an account today.

Join us to become a Member

Continue with Google Continue with LinkedIn
OR

Please complete reCAPTCHA to enable form submission.

I'd like to speak with a specialist
Email me exclusive invites, research, offers, and news

By clicking on "Join us to become a member", you agree to our Terms of Use and acknowledge our Privacy Statement.

Almost Done!

I'd like to speak with a specialist
Email me exclusive invites, research, offers, and news

By clicking on "Create Account", you agree to our Terms of Use and acknowledge our Privacy Statement.

Thank you for registering!

We have sent a confirmation email to {0}. Please check your email and click on the link to activate your account.

Get the latest news, invites to events, and threat alerts

By submitting this form, you agree to our Terms of Use and acknowledge our Privacy Statement.

Products and Services

  • AI-Powered Network Security Platform
  • Secure AI by Design
  • Prisma AIRS
  • AI Access Security
  • Cloud Delivered Security Services
  • Advanced Threat Prevention
  • Advanced URL Filtering
  • Advanced WildFire
  • Advanced DNS Security
  • Enterprise Data Loss Prevention
  • Enterprise IoT Security
  • Medical IoT Security
  • Industrial OT Security
  • SaaS Security
  • Next-Generation Firewalls
  • Hardware Firewalls
  • Software Firewalls
  • Strata Cloud Manager
  • SD-WAN for NGFW
  • PAN-OS
  • Panorama
  • Secure Access Service Edge
  • Prisma SASE
  • Application Acceleration
  • Autonomous Digital Experience Management
  • Enterprise DLP
  • Prisma Access
  • Prisma Browser
  • Prisma SD-WAN
  • Remote Browser Isolation
  • SaaS Security
  • AI-Driven Security Operations Platform
  • Cloud Security
  • Cortex Cloud
  • Application Security
  • Cloud Posture Security
  • Cloud Runtime Security
  • Prisma Cloud
  • AI-Driven SOC
  • Cortex XSIAM
  • Cortex XDR
  • Cortex XSOAR
  • Cortex Xpanse
  • Unit 42 Managed Detection & Response
  • Managed XSIAM
  • Threat Intel and Incident Response Services
  • Proactive Assessments
  • Incident Response
  • Transform Your Security Strategy
  • Discover Threat Intelligence

Company

  • About Us
  • Careers
  • Contact Us
  • Corporate Responsibility
  • Customers
  • Investor Relations
  • Location
  • Newsroom

Popular Links

  • Blog
  • Communities
  • Content Library
  • Cyberpedia
  • Event Center
  • Manage Email Preferences
  • Products A-Z
  • Product Certifications
  • Report a Vulnerability
  • Sitemap
  • Tech Docs
  • Unit 42
  • Do Not Sell or Share My Personal Information
PAN logo
  • Privacy
  • Trust Center
  • Terms of Use
  • Documents

Copyright © 2025 Palo Alto Networks. All Rights Reserved

  • Youtube
  • Podcast
  • Facebook
  • LinkedIn
  • Twitter
  • Select your language