PCI Council Releases New Software Framework for DevOps Era

Source- darkreading.com This week the PCI Security Standards Council released a new software security standard that is designed to help it validate the security of payment ecosystems in the face of newer software architectures and modern development methods like DevOps and continuous delivery. The new standard would ultimately replace the PCI Payment Application Data Security Standard (PA-DSS). “Software development practices have evolved over time, and the new standards address these changes with an alternative approach for assessing software security,” explains Troy

Read more

Survey Indicates Container Security Concerns Limit Adoption

Source- datacenterknowledge.com A decade ago when a cloud was the latest disruptive technology, IT departments found they needed to rewrite the book on security. The old way of doing things — protecting the perimeter of the local network or data center with firewalls and other security precautions — wasn’t enough anymore. The data center and the LAN had expanded to include VMs, applications, and data sitting outside the firewall, on cloud servers owned and operated by the likes of Amazon Web Services, Microsoft Azure, or

Read more

Can DevOps drive another record year for software M&A deals?

Source- jaxenter.com By now, ‘DevOps’ is not a new concept; it’s a word that’s on the lips of every developer and IT person (reborn now, of course, as ‘DevOps engineers’.) Yet the prophecy of DevOps has failed to fulfill itself as described in its texts. The DevOps meme continues to mutate. Meanwhile, the ground itself is beginning to shake with the footsteps of giants like Atlassian, Github/Microsoft, Cisco, IBM, VMware and more. It seems that the real tectonic shift is yet

Read more

How AIOps Helps You Get More Out of DevOps

Source- devops.com DevOps may seem like an overused term. It involves taking an application’s source code and running it in an environment. It can cover the processes, the technology or even the people that maintain the technology that is running those very processes. At its heart, though, DevOps is about helping developers to be self-sufficient when it comes to the basic operations around getting their application to a real environment. Once things are running in a test or production environment, there

Read more

Security scanning is available now in SonarQube and SonarCloud

Security scanning is available now in SonarQube and SonarCloud for PHP, C#, T-SQL, VB.NET, Java and Swift Why Do We Care About Application Security? With all the threats lurking out in the wild, application security remains a top-of-mind subject. In spite of these concerns, the number of security breaches continues to rise along with the number compromised accounts containing user data. Why is this happening even with all the emphasis on better security? The simple answer is that it’s not easy!

Read more

9 Pillars of Continuous Security Best Practices

Source- devops.com Without proper consideration given to security best practices, the continuous delivery of software changes facilitated by DevOps is risky. On the other hand, DevOps provides an opportunity to reduce security risks if security is integrated into the continuous delivery pipeline according to best practices. This blog enumerates best practices for security across nine pillars of DevOps: Leadership, Collaborative Culture, Design for DevOps, Continuous Integration, Continuous Testing, Continuous Monitoring, Elastic Infrastructure, Continuous Delivery/Deployment and Continuous Security. Examples of best practices

Read more

With 2019 on its way, what new tech trends are on the horizon?

Source- jaxenter.com As we bid adieu to 2018 and welcome in 2019, it’s only natural to wonder what kind of progress we’ll see and what new advancements will soon be at our fingertips. In the past few years the development of tools and techniques around DevOps have seen changes that outpace what most organisations can keep up with, but the impact of these changes can be felt for years. This fast pace of change is unlikely to slow any time soon,

Read more

How DevOps may be the answer to cyber-attacks

Source- theinnovationenterprise.com Today, small businesses are facing greater cybersecurity risks than ever before. In the past, the bulk of cyber-attacks were aimed at large organizations, because they were more lucrative targets. However, things have changed, and hackers have shifted their focus to smaller businesses over the past couple of years. Although the payoffs of launching a cyber-attack against a small business are typically lower, hackers have discovered that the security solutions of the small organizations are less sophisticated, thereby making them

Read more

The security silo: How to better integrate DevOps and security teams

Source- siliconrepublic.com Rapidly maturing DevOps teams are breaking boundaries, strengthening processes and building products at a faster pace with each iteration. This, seemingly, is a win for everyone. DevOps teams have a continuous opportunity to perfect their processes with each release; leadership sees deadlines being met and exceeded; and end users get faster, more reliable improvements to the apps and software they use daily. Overall, efficiencies almost always mean a healthier bottom line, and the adoption of DevOps practices is often

Read more

What is the Next of Virtualization

Source- virtualization.cioreview.com It has been more than half a century in the history of virtualization since IBM’s first effort to virtualize mainframe in the mid-1960s. Multiple applications could run at once, and hardware utilization and productivity were increased. The evolution of virtualization has been accelerated in the past 20 years. The resources such as a server, desktop, storage, file system, operating system and, networking are virtualized, and workloads are managed and run over virtual resources to achieve scalability and elasticity. Virtualization

Read more

Devops predictions for 2019

Source- computerworlduk.com Devops thinking is arguably mainstream today, and there were plenty of developments afoot in 2018 that suggest 2019 will be an intriguing year to follow the space. Loosely defined, devops is the combination of developer and operations teams through an organisational culture change, assisted by automation tooling with the goal of releasing software as quickly as possible. Naturally this makes it an enticing proposition to enterprises, especially those who may be at the start of their “digital transformation”, even

Read more

A look back at the top cloud computing news of 2018

Source- searchcloudcomputing.techtarget.com It was an eventful year for cloud computing news. Top providers continued to up their game and address enterprise demands, but also scrambled to respond to outages and cloud security threats. Before you jump into the new year, look back at some of the top cloud headlines of 2018. Meltdown and Spectre target cloud computing environments In early January, a tech glitch posed a significant vulnerability to both cloud providers and their users. Two security flaws, dubbed Meltdown and Spectre, exposed a

Read more

Microsoft ‘Intelligent Cloud Hub’ to build AI-ready workforce in India.

Source- thenewsminute.com Microsoft on Thursday announced a three-year “Intelligent Cloud Hub” collaborative programme in India to empower institutes to skill students in Artificial Intelligence (AI) and Cloud technologies. The dedicated AI infrastructure and Internet of Things (IOT) hub programme will equip selected research and higher education institutions with AI infrastructure, build curriculum and faculty capability to skill students in AI and cloud technologies, the company said in a statement. India is the first country to have such a programme under which

Read more

DevOps: Underestimated Security Risks

Source- e3zine.com Digital transformation needs high agility and increasingly promotes the use of DevOps environments. That’s because DevOps offers accelerated innovation, higher flexibility and reduced complexity in application development and deployment. With the implementation of DevOps, companies, therefore, want to primarily benefit their businesses. More often than not, however, they neglect security. A severe mistake, because DevOps significantly widens the attack surface for cybercriminals. If companies use DevOps models, they also have to create more privileged accounts and login details and

Read more

5 tips to jump-start a DevOps pipeline

Source- searchsoftwarequality.techtarget.com DevOps means different things to different people. IT professionals generally associate the creation of a DevOps pipeline with accelerated software development, collaboration between development and operations teams and tools that reformulate traditional application development. Organizations have a growing need for these DevOps pipelines in the face of a business climate where no one can wait long for new features or apps. Accordingly, a number of continuous software development practices have become norms. If your enterprise’s top priority next year is to

Read more

Attackers are using cloud services to mask attack origin and build false trust

Source- techrepublic.com Security experts love talking up the importance of trusted websites. Google’s dominant Chrome browser—which has held about two-thirds of the browser market share all year—emphasized the importance of this with its lock icon, indicating that traffic was encrypted. It’s a useful heuristic, easy for end users to understand. Lock equals security. It’s skeuomorphism at its best, but it lulls users into a false sense of security. A Wednesday report from Menlo Security finds that attackers are using cloud hosting services to avoid detection, opting to

Read more

Anaxi Delivers Project Management App for DevOps

Source- devops.com Anaxi, a provider of project management software designed specifically for DevOps teams, has made its web application generally available. The web application complements an existing iPhone application, while an Android version of the company’s project management application is still under development. Company CEO says Marc Verstaen said that as DevOps has evolved around multiple repositories, IT organizations are finding it challenging to keep track of code from projects they are using within what applications. Anaxi is designed to not only

Read more

Public Sector Cloud: Why Is It Different?

Source- theurbantwist.com Cloud computing is something that many businesses now use in one way or another. Business solutions running from the cloud are quite common; in fact, it is now the norm to run solutions such as CRM and HR in the cloud. The use of cloud computing by businesses also extends beyond data storage and analysis. What’s interesting is how governments around the world are relying on cloud computing more and more. Top cloud service providers like Microsoft and Google

Read more

Five Best Practices for DevOps Automation

Source- cioreview.com Open source libraries and frameworks play a crucial role in the DevOps environment that emphasizes the shorter development lifecycles, collaboration, and innovation. It’s important not to neglect the security of these open source components. Here we will talk about five things that one must consider concerning the safety of an open source project. ‱  Security Automation A significant driving force for DevOps is to automate as much as possible. DevOps automation emphasizes using technologies like virtual machines and containerization to

Read more

The Future of Cloud Services

Source- cio.com Savvy businesses are increasingly turning to the cloud to reduce costs and increase business efficiency by moving from infrastructure-based operations to application-based operations. Put simply, the cloud is an offsite storage system maintained by a third party. And as the cloud becomes more sophisticated, the operational advantages are becoming clearer. No longer do businesses need to install, operate and maintain large and expensive server rooms. With real estate costs now at a premium, a server room can take up

Read more
1 262 263 264 265 266 332