DevSecOps
Don’t Forget to Automate Cloud Security
Cloud has been around long enough, and we’ve had enough breaches stemming from unsecured cloud (mostly data objects, but other items, too) that we should know better. I cringe whenever I see ...
Securing Third-Party and Open Source Code Components: A Primer
The increasing popularity of open source code continues to be a boon for developers across the industry, allowing them to increase efficiency and streamline delivery. But there are security risks to be ...
Continuous Discussions Video Podcast: DevSecOps, Best Practices and More
In a recent episode of the Continuous Discussions (#c9d9) podcast, a group of industry experts discussed why DevSecOps is officially more than just a buzzword, tips on how to get everyone in ...
Open Source: Is Your DevOps Org Vulnerable to an Equifax-Style Hack?
More than half of the Fortune 100 could be at risk of falling prey to the same kind of hack that caused devastation at Equifax last year, and it all comes down ...
Google Advances Confidential Computing
Google has kicked off an effort to make it easier to build secure applications using an open source framework for confidential computing, which enables encrypted data to be processed inline by an ...
Reducing Risk in Applications Using Docker Containers
Docker. It seems like in this day and age you are either using Docker containers or you are going to use Docker containers. If you haven’t jumped on the bandwagon yet, check ...
200 Billion Downloads Can’t Be Wrong
Laurie Voss, COO and co-founder at npm (@seldo), tweeted recently that JavaScript packages downloaded from their repository has topped 4 billion. On an annual basis, that would be more than 200 billion ...
Bridge the DevSecOps Experience Divide with Cross-Functional Teams
Last week's DevOps Connect event at RSA Conference offered up a ton of wisdom and real-world examples of the power of DevSecOps. With its best-ever attendance after several years and impressive participation ...
451 Research Report Highlights Value of DevSecOps for the CI/CD Pipeline
One of the compelling benefits of DevOps for many organizations is speed. Between breaking down silos, streamlining processes and automating routine tasks, the process of developing and deploying software can be significantly ...
Simplify DevSecOps with a Zero Trust Approach
There are major cyberattacks and data breaches weekly, if not daily. Each incident is unique in some way, but one element common to almost all successful attacks is trust. Whether it’s a ...
Study Traces Cybersecurity Issues to Lack of App Supervision
A global survey of 400 application developers conducted by Vanson Bourne on behalf of Veracode, a unit of CA Technologies that provides software development lifecycle tools, shines a light on how big ...
Akamai Extends Scope of DevSecOps Reach
Akamai pressed its case for becoming a strategic DevSecOps platform by adding a range of security capabilities to its network service platform that help isolate applications from cybersecurity threats. The company has ...

