DevSecOps
DevOps Connect: DevSecOps Days @ RSAC Call For Speakers Is Open
For the 4th year DevOps.com is proud to be producing DevOps Connect: DevSecOps Days @ RSA Conference. The event will be on Monday, April 16th, 2018. RSAC is the world's largest security ...
How to Make Your Software HIPAA-Compliant
Creating software for the healthcare industry must always follow strict requirements and limits set by both state regulators and medical organizations. In this article, we will focus on becoming compliant with HIPAA ...
DevOps Chat: Aqua Security Seeks To Secure Containers
The migration to container-based application infrastructures is accelerating at a faster pace even than we saw with hypervisor-based infrastructure 18 or so years ago. Hand in hand with this is the race ...
Standardizing a Process that Drives Secure-By-Design
In "Building Security into Code + Culture," I described how our culture of coding is predicated on chaos, and the critical challenge for organizations is to establish the right mix of processes ...
It’s Time to Break Up with Your WAF
If the only reason you have a web application firewall (WAF) is for compliance, you deserve better. It’s time to replace it with something that provides not only compliance, but real security ...
Building Security into Code and Culture
Organizations tend to have a very predictable approach to security: reactive. Most don’t really care about security until something bad happens. But with data regulations and requirements becoming more rigid around the ...
Executive Buy-in May Be Preventing DevOps Success
A common misconception in the executive suite is that an organization can reap all the benefits of DevOps without fully embracing the change necessary. That’s understandable, given that a DevOps transformation is ...
DevSecOps and DevNetOps: New Heroes in the DevOps Saga
The evolution of DevOps is by no means done, but it’s safe to say that there is enough agreement and acceptance to declare it a hero. DevOps has helped glorify IT to ...
Software Security is an Engineering Problem
We live in a world where those who sell products are generally held accountable for defects. Automobile manufacturers, pharmaceutical companies and toy makers are among the businesses that have been handed fines ...
DevOps, Security, AI Convergence on Horizon
DevOps is regarded as practice that can drive performance advantages. Artificial intelligence is showing very real promise across the security market. Most public and private-sector organizations know that they must explore new ...
Amazon’s Macie: Machine Learning to Protect Data in AWS
Macie is a recently launched security service from Amazon for its AWS customers. It works by identifying and classifying sensitive data such as personal information or intellectual property, continuously monitoring that data ...
DevOps and Security is Like Smoking Meat
It isn’t everyone who thinks, “Doesn’t Ubuntu remind you of wild boar?” Or labors over his pit of slow-roasted pork shoulder while contemplating containers. Or dwells on e2e testing while mesquite smoke ...

