Skip to content

[PROPOSAL] Forming OpenSearch Security TAG #71

@cwperks

Description

@cwperks

What/Why

What are you proposing?

A new technical advisory group focused on Security within OpenSearch. A few key areas this group will focus on:

  • The Security Response Process for OpenSearch (https://github.com/opensearch-project/.github/blob/main/SECURITY.md)
  • Security practices across the ecosystem
    • Use of dependency automation tools like Mend and dependabot
    • Documenting security best practices for Software Development
    • Making the Security Review process transparent for what goes on to deliver and enable a feature in OpenSearch
    • Vulnerability scanning
  • Anything Security Feature related (Encryption, Access Control, Authentication, Audit Logging)

Metadata

Metadata

Assignees

No one assigned

    Labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions