DevSecOps
DevOps Chat: Repos and Nexus Firewall Access, with Sonatype
There are really only two repositories of any scale for software components today: the Nexus repo managed by Sonatype and the Artifactory artifact repo managed by JFrog. Up until now they were ...
Can DevSecOps Prevent a Zombie Apocalypse?
Making consistent progress within any DevSecOps initiative often can be an overwhelming undertaking. Developers tend to outnumber operations dramatically, with little to no security accountability. This leaves DevSecOps doomed to work with ...
Security Testing: Reducing Resistance to Change in an Agile and DevOps World
Software development has evolved, but security testing has not. That has to change In the bad, old days—which, sadly, many are still living in—security testing was tacked onto the end of the ...
DevSecOps Implementation Process and Road Map – Security at Every Step
DevSecOps is changing our perspective toward security and is equipping us to deal with its challenges in an intelligible manner. The systematic approach of DevSecOps helps us add value to our business ...
Fail Fast: How Shifting Security Left Speeds Development
How DevSecOps can help organizations increase security, move faster and save money With developers under constant pressure to create more software in less time, the last thing you need is for your ...
DevOps: Don’t Let Detection Be a Bottleneck for Security
AI and automation can help ensure DevOps security doesn't impact performance The world revolves around software and internet-based applications—and speed is crucial. Users have very little patience for delays and will quickly ...
Study: CISOs Need to Take Charge of DevOps Security
A new report from CyberArk looks at the complexity that goes into securing emerging DevOps environments, and why CISOs need to take charge to protect them. As digital transformation is pushing more ...
Salt Security Unveils Platform to Secure APIs
Salt Security, fresh off raising an additional $10 million in funding, announced a platform that promises to advance the state of DevSecOps by making it possible to detect when application programming interfaces (APIs) ...
DevSecOps: Old Security Bugs Still Performing New Tricks
New Security Flaws Creep into Reliable Old Systems In cybersecurity, we are often like hunters. Our eyes are firmly glued to the horizon, scanning for the next breakout vulnerability (along with the ...
IoT, Not People, Now the Weakest Link in Security
Do a quick search on “people weakest link” and you’ll see a raft of articles in which cybersecurity experts and computer scientists point to employees or end users as the biggest vulnerability ...
How to Turn Your DevSecOps Shift into Your ‘Pixar Moment’
If you have worked in security as long as I have, you have seen that vulnerabilities persist, despite years of attempts to fix them without changing how the organization operates. One of ...
Applying DevSecOps to Address Cloud Security Challenges
Driven by the encouragement from 2018 progress, cloud technology is poised to be even bigger in 2019. However, one major hurdle continues to haunt the cloud trend: security. An overwhelming number of firms ...

