Stratpoint Engineering

DevSecOps Engineering Bootcamp

Sign in with your Stratpoint Google account to continue.

DevSecOps Engineering
DevSecOps Engineering Bootcamp
Chapter 2

Prerequisites

Required Accounts

GitLab Account — the same account and repository you used for Phase 1. Phase 2 is not a fresh project; it builds directly on top of it.

Verify Phase 1 Is Working

Watch Out

Phase 2 builds directly on Phase 1 — don't start here until your cluster, Helm chart, GitLab CI pipeline, and ArgoCD sync are all working end-to-end.

  • Kubernetes cluster running
  • ArgoCD installed and syncing
  • GitLab CI pipeline passing on the main branch
kubectl get nodes
kubectl get pods -n argocd
# then check your GitLab project > CI/CD > Pipelines

Local Tooling

ToolInstallUsed For
Python 3 + pippip install checkov semgrepManifest and code scanning, run locally before pushing
CosignSee Sigstore install docsSigning and verifying container images
SyftSee Anchore install docsGenerating SBOMs from container images

Add the Helm repos you'll need this phase:

helm repo add external-secrets https://charts.external-secrets.io
helm repo add kyverno https://kyverno.github.io/kyverno/
helm repo add falcosecurity https://falcosecurity.github.io/charts
helm repo add hashicorp https://helm.releases.hashicorp.com
helm repo update