Forem

# devsecops

Integrating security practices into the DevOps lifecycle.

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
Code Security

Code Security

Comments
2 min read
Let's Play Snyk 🐶
Cover image for Let's Play Snyk 🐶

Let's Play Snyk 🐶

2
Comments 4
5 min read
A Deep Dive into OCSF & VEX - Unified Standards for Security Management
Cover image for A Deep Dive into OCSF & VEX - Unified Standards for Security Management

A Deep Dive into OCSF & VEX - Unified Standards for Security Management

6
Comments
6 min read
OWASP API10:2023 Unsafe Consumption of APIs
Cover image for OWASP API10:2023 Unsafe Consumption of APIs

OWASP API10:2023 Unsafe Consumption of APIs

5
Comments
3 min read
OWASP API9:2023 Improper Inventory Management 📊🛠️🚨
Cover image for OWASP API9:2023 Improper Inventory Management 📊🛠️🚨

OWASP API9:2023 Improper Inventory Management 📊🛠️🚨

8
Comments
3 min read
The Future of DevSecOps with the CloudBees Platform—An In-Depth Look
Cover image for The Future of DevSecOps with the CloudBees Platform—An In-Depth Look

The Future of DevSecOps with the CloudBees Platform—An In-Depth Look

16
Comments
4 min read
Designing Security Workflows using Gitlab CI Templates
Cover image for Designing Security Workflows using Gitlab CI Templates

Designing Security Workflows using Gitlab CI Templates

4
Comments
5 min read
DevSecOps MythBuster – “Git Clone and DevOps Backup Script is all I need for data protection”
Cover image for DevSecOps MythBuster – “Git Clone and DevOps Backup Script is all I need for data protection”

DevSecOps MythBuster – “Git Clone and DevOps Backup Script is all I need for data protection”

Comments
4 min read
OWASP API8:2023 Security Misconfiguration 🔐🚨
Cover image for OWASP API8:2023 Security Misconfiguration 🔐🚨

OWASP API8:2023 Security Misconfiguration 🔐🚨

5
Comments
3 min read
OWASP API7:2023 Server Side Request Forgery(SSRF)
Cover image for OWASP API7:2023 Server Side Request Forgery(SSRF)

OWASP API7:2023 Server Side Request Forgery(SSRF)

7
Comments
3 min read
OWASP API6:2023 Unrestricted Access to Sensitive Business Flows 🔐👤💔
Cover image for OWASP API6:2023 Unrestricted Access to Sensitive Business Flows 🔐👤💔

OWASP API6:2023 Unrestricted Access to Sensitive Business Flows 🔐👤💔

4
Comments
3 min read
OWASP API5:2023 Broken Function Level Authorization 🔐👤💔
Cover image for OWASP API5:2023 Broken Function Level Authorization 🔐👤💔

OWASP API5:2023 Broken Function Level Authorization 🔐👤💔

7
Comments
4 min read
Automating Dockerfile Vulnerability Scanning in GitHub Actions Using Snyk and CodeQL
Cover image for Automating Dockerfile Vulnerability Scanning in GitHub Actions Using Snyk and CodeQL

Automating Dockerfile Vulnerability Scanning in GitHub Actions Using Snyk and CodeQL

1
Comments
3 min read
Integrating Cybersecurity into AI Software Development on Kubernetes: Key Takeaways from Andrew Martin
Cover image for Integrating Cybersecurity into AI Software Development on Kubernetes: Key Takeaways from Andrew Martin

Integrating Cybersecurity into AI Software Development on Kubernetes: Key Takeaways from Andrew Martin

2
Comments
3 min read
OWASP API4:2023 Unrestricted Resource Consumption ⚠️🔄🚨
Cover image for OWASP API4:2023 Unrestricted Resource Consumption ⚠️🔄🚨

OWASP API4:2023 Unrestricted Resource Consumption ⚠️🔄🚨

4
Comments
4 min read
OWASP API3:2023 Broken Object Property Level Authorization 💔🔑🛠️
Cover image for OWASP API3:2023 Broken Object Property Level Authorization 💔🔑🛠️

OWASP API3:2023 Broken Object Property Level Authorization 💔🔑🛠️

5
Comments
5 min read
OWASP API1:2023 Broken Object Level Authorization (BOLA) 🔒💔
Cover image for OWASP API1:2023 Broken Object Level Authorization (BOLA) 🔒💔

OWASP API1:2023 Broken Object Level Authorization (BOLA) 🔒💔

5
Comments
5 min read
Introducing OWASP: A Comprehensive Exploration of Web Application Security 🌐🔒
Cover image for Introducing OWASP: A Comprehensive Exploration of Web Application Security 🌐🔒

Introducing OWASP: A Comprehensive Exploration of Web Application Security 🌐🔒

7
Comments 3
4 min read
GitHub Shared Responsibility Model and Source Code Protection
Cover image for GitHub Shared Responsibility Model and Source Code Protection

GitHub Shared Responsibility Model and Source Code Protection

Comments
7 min read
Simplifying Cybersecurity: Key Principles for a Robust Defense 🌐
Cover image for Simplifying Cybersecurity: Key Principles for a Robust Defense 🌐

Simplifying Cybersecurity: Key Principles for a Robust Defense 🌐

6
Comments
4 min read
DevSecOps: Orchestrating Secure and Observable 3-Tier Deployments on AWS with Terraform, EKS, Jenkins, Prometheus etc.

DevSecOps: Orchestrating Secure and Observable 3-Tier Deployments on AWS with Terraform, EKS, Jenkins, Prometheus etc.

5
Comments
19 min read
10 GitHub Security Best Practices
Cover image for 10 GitHub Security Best Practices

10 GitHub Security Best Practices

3
Comments
14 min read
Getting Started with DevSecOps: An Introduction to CNAPP

Getting Started with DevSecOps: An Introduction to CNAPP

4
Comments
6 min read
A Refreshing Take on DevSecOps: My Insights from Tanya Janca's OWASP London Talk
Cover image for A Refreshing Take on DevSecOps: My Insights from Tanya Janca's OWASP London Talk

A Refreshing Take on DevSecOps: My Insights from Tanya Janca's OWASP London Talk

3
Comments
2 min read
The New Frontier in Cybersecurity: Embracing Security as Code
Cover image for The New Frontier in Cybersecurity: Embracing Security as Code

The New Frontier in Cybersecurity: Embracing Security as Code

Comments
11 min read
loading...