DevOps Security.txt - DevOps Security Course Prologue...

This preview shows page 1 - 3 out of 11 pages.

DevOps Security: Course PrologueWelcome to the world of Digital Security...The evolution, stirred up by digital transformation of businesses, has deprecated the legacy “waterfall” model of slowly developing and evolving software into a highly efficient speed-driven DevOps world.The booming use of apps has revolutionized the digital world. However agile efforts to increase efficiency also increases the risks of creating new vulnerabilities or perpetuating old ones.This course focuses on the security aspects related to DevOps, as well as the precursor steps of continuous integration and continuous deploymentHappy LearningCourse OutlineFor readers new to the concept, we will discuss what DevOps is, and then map existing secure development ideas into this new framework.Introduction to DevOps SecuritySecurity for the DevOps worldRugged DevOps and Iterative SecurityShift Left Security ApproachSecurity Verification ApproachesDeploying Secure SoftwareSecurity in System MonitoringWhat Is It?DevOps is an operational framework that stimulates software consistency and standardization through automation while emphasizing collaboration between an organization's operations, development, testing, and support teams.DevOps emphasizes focus not only on applications, or even an application stack, but on the entire ecosystem.From code check-in, through code validation, pre-deployment validation, and finally deployment, including run-time monitoring - everything that is involved in getting applications into the hands of users is in scope.Automation offers valuable solutions in many areas - including scripts and programs to automate builds, functional testing, integration testing, security testing, and even deployment.Over the years organizations have struggled to be perceptive to customer's demands while enhancing quality and competing in a increasingly aggressive marketplace.Adding to the challenge is the transformation from a product-driven to a service-driven global economy that interconnects people in new ways.In the current hyper-connected, hyper competitive world, the waterfall approach to application development is clearly a misfit and is rarely used.The waterfall model was eventually replaced by the agile methodology which incorporates the customer's opinion early and often, making sure that the organization is developing the right products and features and delivering them with quality and predictability.DevOps aggravates these benefits by enhancing collaboration among the software development and IT operations teamsDevOps - The Essence"DevOps is a cultural and professional movement , focused on how we build and
operate high velocity organizations, born from the experience of its practitioners."Source: Nathan Harvey (Chef)DevOps and SecurityDevOps security relates to the discipline and practice of safeguarding the entire DevOps environment through strategies, policies, processes, and technology.

  • Left Quote Icon

    Student Picture

  • Left Quote Icon

    Student Picture

  • Left Quote Icon

    Student Picture