Modern app delivery requires a continuous approach to security

At the Tanzu Division of Broadcom, we focus on how our customers can get the most out of cloud native environments while protecting against the slew of new vulnerabilities and attacks targeting their critical business apps.

At the Tanzu Division of Broadcom, we focus on how our customers can get the most out of cloud native environments while protecting against the slew of new vulnerabilities and attacks targeting their critical business apps. As important as prevention is, reducing the time it takes to recover from a breach or other issues is just as critical, if not more. This is particularly important for our customers functioning in highly regulated industries who have to keep up with continually changing security, privacy, and compliance requirements.

We’ve found that the best way to secure large and diverse application estates is to integrate security-enhancing capabilities and processes throughout the entire application dev and delivery cycle. This means approaching security as an integral and continuous part of the cycle. In working with our many global customers, we recommend the following best practices for a continuous approach to security:

Weave security in all your processes

Adding security earlier in the app dev and delivery cycle is widely recognized as a best practice. However, sometimes it is not enough. Over the years, we have seen that attack vectors are targeting multiple phases of the software delivery cycle, and in some cases, shifting security left has come to mean shifting security decisions on to developers. This undue burden can become disruptive and slow down the app delivery process. With cyberattacks hitting various aspects of the software supply chain, it is imperative to make security an integrated aspect of the software delivery lifecycle.

With this in mind, we designed Tanzu Platform to make security easy, while also reducing friction between dev and platform teams. We do this by allowing for separation of concerns and enabling golden paths curated by the platform engineering team. Tanzu Platform also supports patterns and technologies made popular by Spring Framework, leveraging the Buildpacks model, and the incredible Bitnami software catalog on which Tanzu Application Catalog is based.

Turn on your automation superpower

Infusing policy-based automation into your application platform is one of the best ways to enforce and scale security policies. Platform engineers need to partner with security and compliance teams to create policies based on changing industry guidelines, vulnerability threat level, audit requirements–just to name a few. Doing this reduces friction in the app dev and delivery process, increases security and compliance leaders’ peace of mind, and empowers platform engineers to deliver a secure and frictionless path to production that ultimately yields value-generating innovation.   

Adopt a “continuous upgrade” culture

Security is not a one-time thing. Infrastructure needs to be secure by design and continuously updated. Introduced several years ago, the 3Rs – Rotate, Repave, and Repair continue to be our north star when it comes to ensuring Tanzu Platform is among the most secure cloud native application platforms. More specifically, the 3Rs mandate that you: 

  • Rotate system credentials every few minutes or hours.
  • Repave every server and application in the datacenter every few hours to a known, good state.
  • Repair vulnerable operating systems and application stacks consistently within hours of patch availability.

Ensuring all software is up to date with the most recent patches, security fixes, and regulatory compliance means continuously checking the health of your system and running the most secure versions. This can be overwhelming without the right mindset and processes. So, in addition to keeping up with patches, upgrades, and bug fixes, we recommend that our customers embrace a continuous upgrade and compliance mindset. Read about what we mean by continuous upgrade culture here.

Every day, companies are competing for customers and seeking ways to capitalize on market trends and capture new revenue opportunities. At Tanzu, we advocate that technology leaders should treat security as an accelerator rather than an outcome or a one-time “check the box” requirement.

For more about Tanzu’s approach to application security, visit the Tanzu and Security page.

About Purnima Padmanabhan

Broadcom

Purnima Padmanabhan is Vice President and General Manager of Broadcom’s Tanzu Division. Prior to joining Broadcom, she was Senior Vice President and General Manager of VMware’s Modern Applications & Management Business and was responsible for application modernization, cloud native application development and multi-cloud management. She previously led the company’s Cloud Management Business. Ms. Padmanabhan has extensive experience building and launching innovative products in cloud infrastructure, security and enterprise mobility. Prior to joining VMware, she was CEO of Cavirin, a cloud security company, where she drove a turnaround. She was previously COO of MokaFive, a desktop virtualization company, and was responsible for global product operations. Ms. Padmanabhan holds an MBA from Stanford University and an M.S. in Computer Engineering from University of Southern California.

Randy Howe
Read More

Latest

AI ‘Consulting’ Services Can Help Smaller Businesses, but Risks Persist

Please enable JS and disable any ad blocker

Visa Launches Trusted Agent Protocol to Secure AI-Driven Commerce

In a rapidly evolving digital landscape, small businesses are being presented with an array of opportunities and challenges brought on by artificial intelligence (AI) and other emerging technologies. Visa Inc. recently announced the launch of its Trusted Agent Protocol, a framework aimed at enhancing security and trust in AI-driven commerce—an initiative that could significantly benefit

Aave (AAVE) Price Eyes $263 as Bullish Market Structure Shift Confirmed

You are here: Home / News / Aave (AAVE) Price Eyes $263 as Bullish Market Structure Shift Confirmed Aave (AAVE) records a major whale withdrawal of 12,100 tokens worth $2.71 million from Binance. Analyst Crypto Patel confirms a bullish market structure shift, suggesting a long position at $225 targeting $263. AAVE’s price action clears internal

Kraken Q3 2025: financial highlights

Throughout the quarter, Kraken accelerated that momentum – introducing new product categories, enhancing client experiences and expanding platform-wide capabilities to strengthen our full product suite. Our results demonstrate the scalability of our multi-product platform and the resilience of our model in a fast-changing market. By pairing innovation with discipline, we continue to lay the foundation

Newsletter

Don't miss

AI ‘Consulting’ Services Can Help Smaller Businesses, but Risks Persist

Please enable JS and disable any ad blocker

Visa Launches Trusted Agent Protocol to Secure AI-Driven Commerce

In a rapidly evolving digital landscape, small businesses are being presented with an array of opportunities and challenges brought on by artificial intelligence (AI) and other emerging technologies. Visa Inc. recently announced the launch of its Trusted Agent Protocol, a framework aimed at enhancing security and trust in AI-driven commerce—an initiative that could significantly benefit

Aave (AAVE) Price Eyes $263 as Bullish Market Structure Shift Confirmed

You are here: Home / News / Aave (AAVE) Price Eyes $263 as Bullish Market Structure Shift Confirmed Aave (AAVE) records a major whale withdrawal of 12,100 tokens worth $2.71 million from Binance. Analyst Crypto Patel confirms a bullish market structure shift, suggesting a long position at $225 targeting $263. AAVE’s price action clears internal

Kraken Q3 2025: financial highlights

Throughout the quarter, Kraken accelerated that momentum – introducing new product categories, enhancing client experiences and expanding platform-wide capabilities to strengthen our full product suite. Our results demonstrate the scalability of our multi-product platform and the resilience of our model in a fast-changing market. By pairing innovation with discipline, we continue to lay the foundation

From Hidden Road to Ripple Prime: Rebranded Multi-Asset Broker Scales Institutional Crypto Access

2025-10-24T17:42:34.436+02:00 F r i d a y , 2 4 / 1 0 / 2 0 2 5 | 1 5 : 4 2 G M T by Jared Kirui The new brand incorporates Ripple’s digital asset infrastructure, including payments, crypto custody, XRP, and the RLUSD stablecoin. It follows Ripple’s acquisition of Hidden Road for

How WWI got Nat Geo got into the map business

Poland. Denmark. Norway. Belgium. As Hitler’s troops marched across Europe in wave after seemingly unstoppable wave, nations toppled, the conquered states’ borders melting into Germany. But thousands of miles away, a group of committed National Geographic cartographers had different marching orders: Don’t change the map of Europe until the war is over. Leaving borders in

Republic Business Leadership Conclave: Motorola’s Shivam Ranjan on India Powering a Global Stage

At the Republic Business Leadership Conclave, Motorola Global Head Shivam Ranjan highlighted India’s role as a cradle for innovation, growth, and global collaboration. He praised the country’s rise as a world-class manufacturing hub and a powerhouse for both foreign and indigenous brands. Ranjan stressed that India’s supportive ecosystem enables scalability, innovation, and partnerships, positioning it

Business of the Week: Trilith LIVE Announces Strategic Partnerships with Ticketmaster and 3G Productions to Enhance Fan Experience

Partnerships bring world-class ticketing technology and audio-visual production to The Town at Trilith’s premier live entertainment venue Fayetteville, GA, September 2, 2025 —Trilith LIVE announced today two major partnerships that will define the future of live events at Trilith LIVE. Ticketmaster, the global leader in ticketing, will deliver advanced digital ticketing solutions, enhance the fan experience, and