Controls
Ensure the products, materials, and processes used during the build pipeline adhere to the established product and organizational release policy
Ensure the build environment's sources and dependencies come from a secure, trusted source of truth
Reduce vulnerabilities during compilation and build.
Through automated builds, reduce human error and malicious actions and artifacts that cause the output of the build process to contain security vulnerabilities.
Ensure each deployed workload meets predetermined security requirements.
Provide a mechanism to confirm that no malicious backdoor injections have taken place during the build process.
Through protected build environments, reduce human error and malicious actions and artifacts that cause the output of the build process to contain security vulnerabilities.
Protect the integrity of build output