DevSecOps
GitLab Survey Surfaces Major DevSecOps Challenges Ahead
A report based on a survey of 4,071 software professionals published this week by GitLab, a provider of a continuous integration and continuous deployment (CI/CD) platform, found that while appreciation of the ...
Transforming the Security Team Into a DevOps Partner
Securing DevOps environments is an increasingly important concern for chief information security officers (CISOs) and security teams. While developers often recognize security is important, it is not their top priority. More typically, ...
DevOps Chat: Mayhem Testing With ForAllSecure
Secure software depends on people finding vulnerabilities and deploying fixes before they are exploited in the wild. This has lead to a world of security researchers and bug bounties directed at finding ...
DevSecOps Survey Finds Failure to Communicate
While it's generally agreed that shifting more cybersecurity responsibility onto the shoulders of developers is a good idea, a failure to communicate across application development and cybersecurity teams has contributed to little ...
State of the Software Supply Chain: Secure Coding Takes Spotlight
After almost a year of research that involved studying 36,000 open source software projects, 12,000 enterprise development teams and 3.7 million open source releases, we at Sonatype are excited to share the ...
6 Traits That Define DevSecOps
How do we define DevSecOps? A combination of DevOps and security is readily apparent, but the philosophy goes much deeper. In a recent eBook, The State of DevSecOps, we asked industry experts ...
DevOps Chat: Global Intelligence for AWS GuardDuty, With Sumo Logic
Wouldn’t it be helpful to know if other cloud users are seeing the same or similar attacks that you are? Security intelligence about cloud applications beyond just those you own and operate ...
Portable Security Policies: A DevSecOps Primer
Protecting critical data and applications is a challenge under any circumstances, but it’s especially daunting when resources reside in the cloud. Most organizations today operate a significant portion of their workloads in ...
Data: the New Currency That Accelerates Business
The amount of data created every day is staggering: 2.5 quintillion (that's 18 zeros) bytes, to be exact. And that number is growing exponentially, thanks to mass deployments of internet of things ...
DevOps Security Champion: Who, What and Why?
In general, DevOps is a process and culture of organizations to get applications out the door faster and with higher quality. To do so, security champions are essential. In DevOps, security champions ...
Open Innovation Labs: How Lockheed Brought Better Security to Fighter Jets
How Red Hat's Open Innovation Labs have helped accelerate Lockheed's software development for the F-22 Raptor As the key government contractor charged with helping the U.S. Air Force keep its F-22 Raptor ...
Security: Are You Doing DevOps Right?
Phil Kernick, co-founder and CTO of cybersecurity specialist CQR Consulting, has no fundamental problem with DevOps, but asks, from a security perspective, "How many people do it right?" If DevOps is going ...

