Skip to content

[PROPOSAL] Forming OpenSearch Security TAG #71

@cwperks

Description

@cwperks

What/Why

What are you proposing?

A new technical advisory group focused on Security within OpenSearch. A few key areas this group will focus on:

  • The Security Response Process for OpenSearch (https://github.com/opensearch-project/.github/blob/main/SECURITY.md)
  • Security practices across the ecosystem
    • Use of dependency automation tools like Mend and dependabot
    • Documenting security best practices for Software Development
    • Making the Security Review process transparent for what goes on to deliver and enable a feature in OpenSearch
    • Vulnerability scanning
  • Anything Security Feature related (Encryption, Access Control, Authentication, Audit Logging)

Metadata

Metadata

Assignees

No one assigned

    Labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions