In this video, we’ll explore how to automate Ansible playbook security scanning using KICS (Keeping Infrastructure as Code Secure) integrated with a self-hosted GitHub Actions runner.
🔐 This setup ensures that every code push or pull request triggers a KICS scan for vulnerabilities in Ansible YAML files and uploads a detailed HTML report to GitHub.
🚀 Key Highlights:
End-to-end GitHub Actions automation
Self-hosted runner with KICS CLI
Dynamic detection of modified Ansible files
Security report as a downloadable artifact
📺 Self Hosted Runner : • How to create self hosted runner in GitHub...
📺 Automating Security Scans for Ansible, Python & Containers in GitHub Actions: • Automating Security Scans for Ansible, Pyt...
📺 Github Actions Basics to Advance Playlist: • GitHub Actions: Basics to Advanced
▬▬▬▬▬▬▬ Timestamps ⏰ ▬▬▬▬▬▬▬
00:00 - Introduction
00:32 - Ansible GitHub Workflow Overview
01:44 - Set Up Self-Hosted Runner with KICS Tool
04:07 - Create GitHub Action Workflow for Ansible Security
05:56 - Test Workflow with Safe and Vulnerable Playbooks
08:35 - View KICS Report & Final Thoughts
▬▬▬▬▬▬ Connect with me 👋 ▬▬▬▬▬▬
LinkedIn: / kumar-nikhil811
Website: https://techinik.com
Medium: / kumarnikhil811
#Ansible #GitHubActions #KICS #DevSecOps #SecurityAutomation #CI/CD #GitHubRunner