DevSecOps
API Security: A Key Part of the Bigger Plan
Standing as the "fuel" powering the customer-driven platform revolution, application programming interfaces (APIs) are the new “it thing” amongst operating systems. APIs are responsible for how apps communicate with each other and ...
Announcing DevOps Connect: DevSecOps Days Virtual Summit
We just wrapped up our fifth annual DevSecOps Days @ RSA Conference 2019, featuring an exceptional lineup of speakers and a variety of informative sessions, providing an unparalleled experience for all. If ...
DevSecOps: Fortanix Adds Open Source Rust SDK to Build Encrypted Apps
There’s a lot of focus these days on DevSecOps as part of an effort to fix what’s generally acknowledged as a broken cybersecurity paradigm. But instead of trying to ensure every potential ...
Survey Finds Mixed Progress on DevSecOps
A survey of 5,558 IT professionals published today by Sonatype in collaboration with CloudBees, Carnegie Mellon’s Software Engineering Institute, Signal Sciences, 9th Bit and Twistlock finds 27 percent of organizations have mature ...
DevOps Chat: AppSec and DevSecOps with Contrast Security’s Jeff Williams
I have known of Jeff Williams in the security industry for more than several years. He is a well-respected thought leader in AppSec and OWASP. I finally got a chance to catch ...
DevOps and Security: The Path to DevSecOps
A secure DevOps is highly beneficial for organizations. However, a secure DevOps environment shouldn’t be the end goal. When it comes to DevOps security, it’s important to integrate security right from scratch, ...
DevOps Chat: Repos and Nexus Firewall Access, with Sonatype
There are really only two repositories of any scale for software components today: the Nexus repo managed by Sonatype and the Artifactory artifact repo managed by JFrog. Up until now they were ...
Can DevSecOps Prevent a Zombie Apocalypse?
Making consistent progress within any DevSecOps initiative often can be an overwhelming undertaking. Developers tend to outnumber operations dramatically, with little to no security accountability. This leaves DevSecOps doomed to work with ...
Security Testing: Reducing Resistance to Change in an Agile and DevOps World
Software development has evolved, but security testing has not. That has to change In the bad, old days—which, sadly, many are still living in—security testing was tacked onto the end of the ...
DevSecOps Implementation Process and Road Map – Security at Every Step
DevSecOps is changing our perspective toward security and is equipping us to deal with its challenges in an intelligible manner. The systematic approach of DevSecOps helps us add value to our business ...
Fail Fast: How Shifting Security Left Speeds Development
How DevSecOps can help organizations increase security, move faster and save money With developers under constant pressure to create more software in less time, the last thing you need is for your ...
DevOps: Don’t Let Detection Be a Bottleneck for Security
AI and automation can help ensure DevOps security doesn't impact performance The world revolves around software and internet-based applications—and speed is crucial. Users have very little patience for delays and will quickly ...

