DevOps Best Practices

DevOps practices help improve the quality of open source components

Source – betanews.com The use of open source components can help speed up the software development process, but it comes with a risk if poor quality code leads to vulnerable applications being released. The latest State of the Software Supply Chain Report from DevOps tools specialist Sonatypereveals that organizations which actively manage the quality of open source components flowing into production applications realize a 28 percent improvement in developer productivity, a 30 percent reduction in overall development costs, and a 48 percent increase

Read more

Is security killing your digital transformation?

Source – sdtimes.com Hackers love traditional security. So do your competitors. Want to ruin their day? Forget what you know about how faster development increases risk. If your approach to security is slowing you down, it’s only a question of which you’ll lose faster — your data or your customers. To begin, let’s agree on one fundamental principle: In the era of DevOps, agile, and the cloud, survival depends on speed. If you’re not first to market with the innovations today’s

Read more

Grooming effective remote developers in the world of DevOps

Source – searchsoftwarequality.techtarget.com David Copeland, director of engineering at Stitch Fix, is an advocate for allowing software developers to work remotely and offers a method for how to do it effectively. Copeland leads nearly 90 developers at Stitch Fix, a San Francisco-based personal shopping and style service. He’s been with the company more than four years and has spent that time working remotely from Washington, D.C. As director of engineering and senior-most contributor to Stitch Fix, Copeland interacts daily with developers,

Read more

How Outsourcing Can Mitigate Cyber risks in DevOps

Source – it-cisq.org DevOps agility requires organizational adjustments and additional tooling to ensure cybersecurity. At the same time, the challenges of the cybersecurity labor market drive the need to increase tooling’s impact and to consider outsourcing. In turn, these require carefully focusing on cybersecurity governance, including the assignment of accountability and responsibility. In DevOps, the business is in the driver’s seat. DevOps characteristics (such as iterative prioritizing and deployment) plus the combined responsibility for development and operations present cybersecurity risks. They

Read more

DevOps is failing these three tenets of privacy compliance

Source – sdtimes.com If you’re like many organizations with data security concerns, you probably believe your automated tests are sufficient to catch any potential security or privacy vulnerabilities. The scenario is familiar: You’re streaming data from multiple sources into your SEIM systems, and you’ve configured triggers for the reporting process. You keep a close eye on results from automated tests on software running in production. All of your monitoring tools indicate your code is running flawlessly and there are zero errors.

Read more

3 Career Paths Software Developers Might Want to Pursue

Source – informationweek.com Not every senior developer is cut out to be a manager. In fact, many aren’t. That’s not a dig at developers. Rather, it’s a recognition of the role’s nature. Many programmers select the field because they want to be individual contributors, not managers. Even those interested in mentoring others — say, as a software architect or lead developer — may not want to be a developer manager. Yet, either by external or internal pressures, top software developers are

Read more

Accelerate DevOps by Automating Security

Source – searchaws.techtarget.com DevOps teams are under enormous pressure to accelerate development cycles and improve quality assurance. We live in a world where IT consumerization is a fact of life and speed to market is not just an enormous competitive differentiator but an absolute necessity. This is why DevOps teams are embracing modern initiatives such as agile development, containers and microservices. Demands for speed and accuracy—along with the potential for cost savings—are also driving DevOps’ growing reliance on cloud services: DevOps

Read more

Five ways to reduce technical debt, rework costs in Agile, DevOps

Source – techtarget.com Leaving some technical debt in the wake speeds software delivery, but the high interest on that debt can mean costly rework and loss of customer satisfaction. Software pros describe five ways to reduce technical debt and the problems it causes. Technical debt, also known as code debt, is a software programming phenomenon that happens when low-quality or defective code is released in software, or when defects in software are not discovered and fixed quickly. Most often, this occurs in

Read more

DevOps requires automation and testing to ensure application security

Source – techproresearch.com DevOps is known for continuous delivery and rapid iteration – almost the exact opposite of enterprise security, which can be seen as slow-moving and overly cautious. As more companies move toward DevOps as a means of delivering and maintaining applications, security becomes critical to plug gaps and prevent data breaches–especially in the continuous delivery pipeline, which can introduce more holes for hackers to wriggle into. Experts advise carefully designing the delivery pipeline and testing everything as thoroughly as

Read more

5 ways to motivate employees after layoffs

Source – indiatimes.com The last few months have seen a spate of layoffs across organisations ­ a situation that’s difficult not just for those who have been let go, but also for the survivors. Sreeradha D Basu gets experts to weigh in on how companies can keep employees motivated: 1. Reveal the truth to your staff Though reality is often tough to hear, it is better to be honest with your employees during a layoff. “Communicate with employees the rationale for

Read more

The 4 roles of DevOps leadership

Source – jaxenter.com Several years ago when we started having DevOps conferences, there were a lot of talks about how to get management buy-in to our new wonderful paradigm. Engineers from operations and development would come on stage and tell stories of wins and losses in their struggle to demonstrate that this DevOps thing is valuable for the business. Fast forward to here and now and we suddenly realize the situation is upside down. What we as DevOps consultants now see

Read more

A case-by-case DevOps strategy

Source – gcn.com For the Securities and Exchange Commission, one of the biggest drivers accelerating the rollout of new IT solutions was the creation of cloud implementation team that meets once a week that brought individuals from security, applications and network teams to identify the most pressing issues. “We are thinking in an agile way, but not necessarily working from an agile process,” SEC Branch Chief Michael Fairless said at a June 21 FCW DevOps workshop.  “It is building relationships that

Read more

Why Microservices is the Future of Software

Source – readitquik.com The latest in software application development is the rise of microservices, wherein applications are offered as a bundle of loosely coupled services. First coined in 2011, this term is now doing the rounds of popular technology circles. According to a survey by Nginx, 36% of enterprises are currently using microservices. Another 26% are in the research phase as far as this new technology is concerned. Organizations are divided between whether they should adopt a microservices approach or not.

Read more

How to start working with Docker logs

Source – techrepublic.com Chances are you’ve run into issues with a Docker container or two. When that happens, what do you do? As with any piece of mission-critical software, any IT pro worth their weight in Cat5 will say the first thing you do is check the log files. The same holds true with Docker. But how do you check a log file for a container that doesn’t contain a complete operating system? Fortunately, the developers of Docker have thought of

Read more

Why runtime application self-protection is critical for app security

Source – appdevelopermagazine.com Today most of us go about implementing security from the outside in. The common practice is to start by defining a perimeter and trying to defend it with various security tools. Even though perimeters have been porous for more than a decade, we still can’t give up this notion that if we build a better wall we can keep our enterprises safer. Certainly that is where most enterprises are spending their security budgets. Gartner estimates we spend more

Read more

6 Steps to a Successful DevOps Adoption

Source – stickyminds.com Figuring out the most optimal way to enable agility and rapidly deliver services to customers—without compromising quality—continues to be one of our industry’s biggest challenges. Many IT leaders agree that implementing DevOps practices can significantly accelerate software releases while still assuring our applications meet quality objectives. If you’re considering a move to a DevOps delivery model, here are six approaches I’ve found to be critical for ensuring a successful DevOps adoption within an organization. 1. Embrace a DevOps

Read more

Security and Development Teams Collaborate on Apps

Source – infosecurity-magazine.com Security teams and developers are more aligned and capable of taking a collaborative approach than many in the industry believe, according to a new study from Veracode. The application security vendor, recently acquired by CA Technologies, polled 400 IT professionals in the UK, US and Germany to better understand the relationship between the two functions. There’s a common perception that developers and security professionals are fundamentally at odds: the former prioritizing features and time-to-market and the latter focused

Read more

Exception Handling: A Best Practice Guide

Source – dzone.com In my current project, really good software was designed by experienced architects, but even this software lacks in exception handling. Doing good exception handling is not easy; with this post, I want to shine a little bit of light on the deep and mostly misunderstood area of exception handling. User Experience of an Exception At first, we have to think about what an exception is. An exception occurs when a function cannot do what it was designed to

Read more

10 critical skills that every DevOps engineer needs for success

Source – techrepublic.com Enterprises including Adobe, Amazon, and Target are increasingly turning to DevOps as a way to deliver software and security updates more rapidly, both internally and to customers. And the spread of the workflow means there are more DevOps engineer positions available than ever. DevOps engineer came in at no. 3 on Indeed’s list of best jobs in America for 2017, in terms of salary, number of job postings, and opportunities for growth. These positions grew by 106% in

Read more

Application Security Report Calls Out Problems in Mobile, IoT Devices and DevOps

Source – securityintelligence.com Vulnerabilities in mobile backends, web interfaces to the Internet of Things (IoT) and negligent DevOps practitioners are among the fastest growing application security threats, according to a report released at the InfoSecurity Europe conference in London this week. What’s the Problem? Research from High-Tech Bridge, a Swiss company that also operates in the U.S., said 83 percent of web service and application programming interfaces (APIs) used in apps for retail, banking and other markets could fall prey to

Read more
1 5 6 7 8 9 16