DevSecOps
Minimum Viable App Doesn’t Mean Minimum Security
It’s estimated that the total market for mobile apps will hit $143 billion this year. A big portion of that budget will be enterprise mobile app development. By next year 25 percent ...
Cloud Security: Software Defined. Event Driven. Awesome.
I get it. Cloud and DevOps are disruptive and create new risks. I’m a security pro; one with decades of hard-earned experience telling me that with great chaos comes great opportunity… for ...
DevOps Connect: Rugged DevOps @ RSA Conference
Once again this year DevOps.com along with Sonatype, The Nexus Community, Gene Kim, Josh Corman and Mark Miller are producing DevOps Connect: Rugged DevOps @ RSA Conference. The full day event takes ...
Continuous Security Key to Defending Your Data Well
Defending data isn’t easy. If it were, we wouldn’t see new data breach headlines on a weekly—or sometimes even daily—basis. That said, defending data also isn’t rocket science. A new report from ...
DevOps Security: Five steps to bridging the gap between teams
Enterprise security and DevOps teams have traditionally operated separately with little to no engagement, often making it difficult to quickly identify and respond to potential vulnerabilities in applications and software. In my ...
Why do you need to implement a DevOpsSec team?
Just 20 years ago, organizations relied on a single wall of defense to secure their applications and networks. Fast forward to 2015 and that large fence is no longer adequate. With the ...
Making the Case for Secure, Defect-Tested Software Development
Creating a software security initiative in any organization is no easy feat. Often times, organizational culture or politics can provide development managers with a strong counterargument for implementing software security concepts. Unfortunately, ...
A DevOps Coders Time Allocation
Here are some other ROELBOB’s you might like A Unit Testing Dillema The Pink Slip Another Pink Slip Hot off the Press – Other great DevOps.com content DevOpsSec: 1 in 16 Chances ...
Getting Rugged DevOps Right
Two Perspectives Jack, an accomplished application security pro, tells me, “The developers won’t talk to us. It’s like we speak a different language. They are releasing new builds so fast, how could ...
DevOpsSec: Survival is Not Mandatory
Deming, the patron saint of DevOps once advised, “It is not necessary to change. Survival is not mandatory.” To survive, application development teams are constantly pressured to deliver software even faster. But ...
All Systems Fail*
Vince Lombardi once said, "It's not whether you get knocked down, it's whether you get up." But in today's world of high velocity development and release practices, it's also about how fast ...
Bridging the gap between DevOps and Security
Security should be baked into the DevOps process, from tools to skills to collaboration. DevOps and security are not mutually exclusive. The problem with digital innovation is that considerations for compliance come ...

