Course Outline
Introduction
- Understanding how DevOps introduces increased security risks for organizations
- The trade-offs between agility, speed, and decentralized control
Limitations of Traditional Security Tools
- Static security policies
- Traditional firewall rules
- Limited API availability for integration
- Insufficient visualization capabilities
Building a DevOps-Ready Security Framework
Aligning Security with Business Objectives
Eliminating Security Bottlenecks
Enhancing Detailed Visibility
Standardizing Security Configurations
Integrating Sensors into Applications
- Interactive Application Security Testing (IAST)
- Runtime Application Self-Protection (RASP)
Enabling Security Data Integration with DevOps Tools via RESTful APIs
Implementing On-Demand Scaling and Micro-Perimeterization of Security Controls
Adopting Per-Resource Granular Security Policies
Automating Attacks Against Pre-Production Code
Continuously Testing the Production Environment
Protecting Web Applications from an Agile/DevOps Perspective
Securing Containers and Cloud Infrastructure
Adopting Next-Generation Automated Security Tools
The Future of DevOps and Its Strategic Role in Security
Summary and Conclusion
Requirements
- Practical experience with DevOps.
- Foundational knowledge or a strong interest in security principles.
Target Audience
- DevOps Engineers
- Security Engineers
Testimonials (1)
real life examples