DevSecOps
How To Address DevSecOps Skills Shortages
"If it's scarce, it drives the price up," said McAfee director of systems engineering Sahba Idelkhani. And DevSecOps talent is scarce, and expensive. Restrictions on international travel are having an effect on ...
42Crunch API Security Platform Now Available On-Premises
42Crunch has announced that the scanning tools it provides to enable DevOps teams to secure application programming interfaces (APIs) can now be deployed in on-premises IT deployments. Previously only available as a ...
Red Hat Survey Reveals More Confidence in Open Source
A recent Red Hat survey revealed how DevOps teams increasingly depend on open source to support their shift to cloud-native environments and digital transformations, and to maintain security in these highly distributed ...
Sysdig Adds CSPM Module to DevSecOps Platform
Sysdig today announced it added a cloud security posture management (CSPM) module to its Sysdig Secure DevOps Platform for monitoring application performance and security to enable IT teams to continuously detect threats ...
Solvo Automatically Crafts Cloud Security Policies
Solvo today announced general availability of a namesake tool that automatically creates a least-privilege policy and applies it to application workloads deployed in the cloud. Previously available only as a private beta, ...
Data Theorem Extends Scope of App Analyzer Portfolio
Data Theorem, Inc. today added to its portfolio a Cloud Secure analyzer that promises to provide full stack visibility into applications through the client, network and cloud layers of a distributed computing ...
How to Mitigate Low-Code Security Risks
Gartner predicts that by the end of 2025, over 65% of development projects will use low-code builders. The field of low-code continues to expand. But what security implications does low-code introduce? Low-code ...
Managing Business Risk in a DevOps Context
We hear a lot in the industry about the importance of automation in DevOps to enable speed. However, there is another element that is often missing in the discussion - risk, compliance ...
Teleport Adds Database Support to Security Gateway
Teleport announced today it has added support for databases to a security gateway, delivered as a cloud service, that is currently used to secure Linux servers and Kubernetes clusters. Ev Kontsevoy, CEO, ...
Without These 3 Things, You Don’t Have DevSecOps
DevSecOps adds security to the DevOps software development and releasing paradigm. Everyone thinks this is a great idea, except actual Dev and Ops practitioners, for whom security can be a thankless, stressful ...
Sonatype Acquires MuseDev to Add Code Analysis
Sonatype today revealed it has acquired MuseDev, a provider of a code analysis tool, in addition to updating its Nexus platform for discovering vulnerabilities in software supply chains. Muse analyzes code each ...
How to Eliminate Incident Inefficiencies
In today’s complex, dynamic IT environments, the proliferation of disparate IT Ops, NOC, DevOps and SRE teams and tools is a given - and usually considered a necessity. This leads to the ...

