Offer

Cloud-native security offer

CertRank helps companies using Kubernetes, OpenShift, Rancher, CI/CD, API and containers control technical security risk.

The center of gravity is Kubernetes Security Assessment. Other areas support that goal: CI/CD, AppSec, API, NIS2 technical evidence and team workshops.

Kubernetes Security Assessment

Security assessment for Kubernetes, OpenShift, Rancher, RKE2 or K3s: RBAC, service accounts, secrets, NetworkPolicies, ingress, workloads, nodes, registry, logging and monitoring.

Ask about scope

CI/CD Security

Review of pipelines, secrets, permissions, registry, GitHub Actions, GitLab CI, Jenkins, ArgoCD/Flux and the pipeline → registry → cluster path.

Ask about scope

AppSec / API Security

Testing applications and APIs connected with the platform: authentication, authorization, business logic, OWASP issues, tenant boundaries and entry points into the cluster.

Ask about scope

NIS2 Technical Evidence

Technical evidence pack for cloud-native environments: access, secrets, logging, vulnerabilities, retests, remediation plan and security questionnaire material.

Ask about scope

Technical team workshops

Private team workshops after the assessment: Kubernetes Security, CKS, CI/CD Security, API, AppSec, AI/LLM Security and practical exercises based on report findings.

Ask about scope

Let us review your Kubernetes

Describe your environment and goal: security review, NIS2/KSC, enterprise customer requirement, prevention, incident or team training.

Enough to start: cluster type, number of environments, cloud/on-prem/hybrid, CI/CD/GitOps, review goal and target date.