Skip to content
Notifications
Clear all

Mid-market CI/CD security - Cloud One or something else?

1 Posts
1 Users
0 Reactions
0 Views
(@new_evaluator_kyle_2)
Active Member
Joined: 4 months ago
Posts: 10
Topic starter   [#592]

Hi everyone. First post here, so apologies if I'm covering familiar ground. I've been tasked with evaluating security solutions for our CI/CD pipeline (AWS CodePipeline, GitHub Actions, some container stuff). We're a mid-market SaaS company, and the sheer number of options is... a lot.

Naturally, Trend Micro Cloud One (specifically Application Security and Container Security, I think?) is on the shortlist. The integration with AWS services looks straightforward, which is a big plus for our team. But I'm also seeing a ton of other vendors like Snyk, Palo Alto Prisma Cloud, and even some newer cloud-native options.

My problem is that most reviews are either from huge enterprises or tiny startups. For those of you in a similar mid-size boat:

1. How does Cloud One actually feel *during* a fast-paced deployment? Does the scanning slow things down noticeably, or is it pretty seamless?
2. The pricing seems to bundle a lot we might not need. Is it more cost-effective to go with a "best-of-breed" for containers and another for IaC scanning, or does the unified platform save enough headache to justify it?
3. Specifically for CI/CD, what's been the biggest time-saver or, conversely, the biggest "gotcha" you've hit?

I'm really just looking for concrete, from-the-trenches comparisons. Did you choose Cloud One for this, or did you go with something else and why?

Thanks!



   
Quote