How DevOps may be the answer to cyber-attacks

Source- theinnovationenterprise.com Today, small businesses are facing greater cybersecurity risks than ever before. In the past, the bulk of cyber-attacks were aimed at large organizations, because they were more lucrative targets. However, things have changed, and hackers have shifted their focus to smaller businesses over the past couple of years. Although the payoffs of launching a cyber-attack against a small business are typically lower, hackers have discovered that the security solutions of the small organizations are less sophisticated, thereby making them

Read more

5 Reasons DevOps And Security Need To Work Together

Source- forbes.com There is nothing like speeding up your business processes and development cycles is there? DevOps has revolutionized the way businesses meet the constantly evolving needs of their customers, without sacrificing productivity. Even as good as it sounds, it can still come at a price if DevOps and security are not working together. With the speed at which new iterations are released, it can be tough for security to keep up. In fact, 68 per cent of cybersecurity professionals are demanded

Read more

Application security needs to shift left

Source – sdtimes.com As teams are pressured to release software more rapidly, more and more aspects of software development are being forced to “shift left,” moving up earlier in the development lifecycle. Because of the speed in which code is updated and delivered, security can no longer be thought of as an afterthought, said Rani Osnat, VP of product marketing at Aqua Security, a company that specializes in container security. “That’s why we profess to shift left security and basically embed

Read more

Big growth predicted for DevOps

Source – digitaljournal.com DevOps and Fast IT adoption are set to the among the biggest growth areas for business technology, according to a new report. These are driven by the widespread adoption of cloud computing. The growth in DevOps and Fast IT is highlighted in a new report from Venafi (a privately held cybersecurity company). While the focuses on security vulnerabilities and proposes actions, it highlights a number of growth areas in relation to business machine-to-machine communication. The report is titled

Read more

Forget DevOps — Is the future of cloud NoOps?

Source – fedscoop.com Though the gospel of DevOps has been a key feature in federal agencies’ playbook for cloud adoption, that’s not where the future is headed, industry stakeholders said Thursday. The buzzword-worthy strategy of integrating an agency’s engineering (Dev) and operations (Ops) teams to approach a large-scale software project through agile development and iterative testing has been a staple of the federal government’s IT modernization best practices. It’s even gone as far as to spawn buzzier titles reflecting a desire to loop in cybersecurity

Read more

5 Common DevOps Transition Mistakes to Avoid

Source – tripwire.com When transitioning to a DevOps model, organizations must remember that people are essential to a successful switchover. It’s people who must learn new workflows, collaboration techniques, and tools during the move. This process will cause at least some disruption over a period as long as two years. Needless to say, they will need patience and ample support to get through such a substantial change. Fortunately, organizations can help their people acclimate to the new way of doing things. They can

Read more

Wallarm Launches Framework for Automatic Security Testing

Source – eweek.com Cybersecurity startup Wallarm announced the launch of its Framework for Automatic Security Testing (FAST) technology on April 26, providing organizations with a new approach to scan applications for potential security risks. The FAST product enables automated security test generation that can be used to look for both known and unknown vulnerabilities in running code. With FAST, Wallarm claims that is can also find anomalies in application responses that could potentially lead to risk as well. “FAST is not

Read more

Driving cybersecurity and digital transformation with cloud technologies

Source – csoonline.com Commercial cloud computing platforms provide a complete set of computing, security, governance and compliance services that are supported by standardized and externally certified processes and procedures. AWS has invested in obtaining several widely used accreditations such as FedRAMP, SOC-2, ISO 27001 and many more. Further, cloud service providers like Amazon Web Services (AWS) have strong management and operations processes to help protect digital assets and allow organizations to innovate. All these investments make it easier for public sector

Read more

Secdevops or devsecops or devops next-generation (NG) – What is your take on devops?

Source – csoonline.com I recently had the opportunity to attend and present at the Advanced Technology Academic Research Center (ATARC) Devops Summit last month. There was, as expected given the topic, a huge turn-out of US federal, commercial and public-sector participants looking to learn, connect and share lessons from adopting and implementing devops in their organizations. A key moment at the summit conference was an informal survey of over 200 participants by Tom Suder, the President of ATARC. Tom pulsed the

Read more

How cybersecurity will evolve to become part of DevOps

Source – securitybrief.asia DevOps has been breaking down business siloes and improving efficiency, but it’s time those principles were brought to cybersecurity initiatives, according to Palo Alto Networks. DevOps relies on the idea that teams should automate the tasks involved in deploying, securing, maintaining, and phasing out the processes that IT and security teams have done manually in the past. This lets DevOps teams to deliver applications and support services faster. DevSecOps is about making security principles integral to the DevOps

Read more

On cybersecurity and IT teams of the future, we’ll all be SREs

Source – csoonline.com Devops is perhaps the most important innovation in the IT and security sectors since the invention of the personal computer. The philosophy is so foreign though, compared to what IT and security staffs have traditionally done, that many do not understand the implications. It is tough for them, and their management chains, to fully wrap their heads around the potential impact to their organizations in the future. However, now is the time to embrace the idea not just

Read more

The impact of DevOps on your bottom line

Source – csoonline.com DevOps is the most important innovation to the IT sector since the invention of the personal computer. Nearly everyone I have talked to in my travels, these past few years, says they are building their own DevOps shop. But when you probe them about what they are actually doing, most say they are deploying applications to the cloud. That is not exactly what DevOps is. To put it in a nutshell, DevOps combines the cultural and technical philosophies

Read more

The future of AppSec: Stop fighting the last war

Source – helpnetsecurity.com It’s a cornerstone of military doctrine: when you focus too much on the last battle you faced, you miss signs of the new battleground taking shape. The principle holds as true for cybersecurity as it does for cavalries and tanks. The surest way to put your organization at risk is to keep your defense strategy rooted in the past – especially it wasn’t all that effective in the first place. If tactics like slow gatekeeping controls haven’t been

Read more
1 2 3