Transcription of DevSecOps - Deloitte
{{id}} {{{paragraph}}}
DevSecOpsEmbedded Security Within the Hyper Agile Speed of DevOpsMark G. Moore, Managing Director, Deloitte and Touche LLPA ntonio L. Bovoso, Senior Manager, Deloitte and Touche LLPC opyright 2018 Deloitte development LLC. All rights transformational shift which incorporates secure culture, practices, and tools to drive visibility, collaboration, and agility of security into each phase of the DevOps pipelineWhat is DevSecOps ?Continuous improvement and added valueCopyright 2018 Deloitte development LLC. All rights security guardrails and monitor resultsGovernance Redesign the operational & compliance framework Establish shared metrics to evaluate progressBreak down silos between security and DevOps teams and instill cyber awarenessPeople Incorporate security staff in DevOps teams Have security teams brief dev and ops teams on current threats / exploits/breachesAutomate recurring security tasks and harden the development pipelineTechnology Automate secure application development Protect the toolchain and infrastructureOrchestrate an integrated process flow and drive in- line risk rationalized feedbackProcess Asset inventory and risk awareness Integrated backlog and pipeline Security telemetry and incident responseImprove compliance feedback Reduction in open compliance findings Decrease time from audit request to evidence deliveryImprove productivity More story points per sprint Increas
Improve productivity • More story points per sprint • Increase pipeline velocity ... the software development lifecycle • Continuous monitoring and remediation of security defects across the ... • Set shared expectations and metrics for measuring success
Domain:
Source:
Link to this page:
Please notify us if you found a problem with this document:
{{id}} {{{paragraph}}}