DevSecOps
Dependency Based Build Promotes the Freedom to Program
Whenever I want to be amazed, all I need to do is reflect on the fact that the continuing development of the Linux operating system is done essentially by a community of ...
DevSecOps: Critical in Building the Bank of the Future
It is no secret that change in a large organization can be difficult. This is often true within banking, an industry that often has sought predictably instead of agility in software delivery ...
DevOps and the Dark Pools of Security Technical Debt
We live in a world of digital transformation where organizations across industries are embracing initiatives around automation, cloud deployments and containerization of applications—and for good reason. Enabling transformative technologies such as DevOps, ...
DevOps Chat: DevSecOps with ShiftLeft CTO Chetan Conikee
Security in the DevOps process has gotten a lot of attention lately, as companies grapple with ways to include security further up the application development process. The industry is still very much ...
WhiteHat Security Looks to AI to Advance DevSecOps
WhiteHat Security is now embedding artificial intelligence (AI) into the application security review services it provides, as part of an effort to advance adoption of DevSecOps processes. Joseph Feiman, chief strategy officer ...
DevSecOps: Where DevOps and Security Meet
Catching up with three IT leaders on the role of security in the changing world of DevOps The DevOps methodology as a software and engineering culture goes back nearly 10 years—Patrick Debois ...
Defend Against Phishing Attacks with EV Certificates
One of the most important elements of fishing is choosing the right lure or bait. The same is true when it comes to the malicious digital version—phishing. A phishing attack requires good ...
GDPR and Data Leakage: How Semantic Graphing Can Help
Many of the hallmarks of modern application development that drive efficiencies in the software development life cycle (agile, CI/CD, microservices, cloud infrastructure, open source libraries and third-party APIs) also create significant data ...
When AI Met DevOps: Machine Teaching
One of my favorite quotes about artificial intelligence (AI) isn’t from a data scientist or tech industry analyst. It’s from a doctor. When asked if AI would eventually replace radiologists, Dr. Curtis ...
Implementing DevSecOps in the Mainframe-Driven Enterprise
DevSecOps is emerging as an important trend in corporate IT. It makes sense. With each passing day more applications serve a larger user base. Whereas in the past the typical business application ...
Threat Modeling: The Why, How, When and Which Tools
You may have heard of threat modeling as a structured activity for identifying and managing threats. Threat modeling can be applied to a wide range of things, including software, applications, systems, networks, ...
Speed and Security Can Coexist in Mainframe DevOps
DevOps teams face a constant tug-of-war in their daily work, balancing the need for speedy rollouts of high-performing (fast, reliable) applications that are secure also. If the team moves too quickly, an ...

