Interview: CyberArk tells why DevOps must adopt ‘secure innovation by the numbers’

Source – securitybrief.com.au DevOps is becoming a major force across software development. For various reasons, security can be sidelined until far later in the development process – but there’s also a movement that is putting security rightly where it belongs – at the beginning. That’s the essence of DevSecOps, which maintains that security by design should be central to any strategy. Elizabeth Lawler is CyberArk’s vice president of DevOps Security. She was the former CEO of Conjur – a DevOps security startup

Read more

Firms need to move from DevOps to DevSecOps, says expert

Source – computerweekly.com DevOps delivers proven benefits in terms of business agility, but it can also create new security risks and revive old ones, according to a DevOps specialist. Risk is the result of organisations failing to train or develop staff adequately to implement best practice in security, said Elizabeth Lawler, vice-president of DevOps security at CyberArk. “This failure leaves organisations vulnerable to both internal and external threats,” she told Computer Weekly. At a time when managing their security portfolio effectively

Read more

CyberArk integrates with Puppet to automate DevOps secrets protection

Source – economictimes.indiatimes.com Mumbai: CyberArk announced its partnership with Puppet as an Advanced Technology Partner. Together, CyberArk and Puppet are working together to create supported modules that provide automated, enterprise-grade protection of secrets and are seamlessly integrated with Puppet’s configuration automation, enabling secure, high-velocity DevOpsworkflows. In dynamic DevOps environments, tools, scripts and applications/services are constantly being created, used and disabled. Each step requires secrets, including SSH/API keys, passwords and certificates, which regularly go unchanged or revoked, or may not be available for a range of reasons,

Read more

CyberArk and Ansible automate best security practices in DevOps pipeline

Source – indiatimes.com Mumbai, India – CyberArk that have made their way inside the network perimeter, today announced the integration of the CyberArk Conjur secrets management solution with Ansible. Organizations benefit from automating privileged account security best practices across DevOps environments while continuing to deliver new applications at high velocity. CyberArk will demonstrate the integration at AnsibleFest 2017. As more organizations embrace DevOps, secrets – which consist of privileged accounts, SSH/API keys, passwords, certificates and more – are proliferating throughout the IT infrastructure. As with privileged accounts, secrets can be misused

Read more

CyberArk and Jenkins Power Secure, High Velocity DevOps Environments

Source – dqindia.com CyberArk, the company that protects organizations from cyber attacks that have made their way inside the network perimeter, today announced the integration of the CyberArk Privileged Account Security Solution with Jenkins, the leading open source automation server. With this integration, organizations gain an automated orchestration process with built-in secrets management and protection for their DevOps pipeline without unnecessary trade-offs between security and velocity. CyberArk will demonstrate the integration at stand #504 at Jenkins World 2017, August 28 –

Read more