DevOpsDays NYC 2020: Victoria Geronimo - DevSecOps is a Misnomer

Channel:
Subscribers:
42,400
Published on ● Video Link: https://www.youtube.com/watch?v=Gzu-xS99Gug



Duration: 5:41
10 views
0


DevSecOps is a misnomer. The idea that Security is smashed in between Dev and Ops is exactly the problem we face. Many believe security is the blocker before getting their application out to production. Owned by some distant, unapproachable team, security can seem like the new deep divide with a ‘throw it over the wall’ mentality.

Instead, Security must be sprinkled throughout the DevOps cycle, taught from the beginning when developing best practices, and owned by the entire team. In this talk, I will share 1 slide that overlays exactly where Security fits in the “DevSecOps” pipeline and culture and pipeline touching on specific challenges companies face, and the things they do to address those challenges from Threat Modeling and Risk Classification, Security Education, Automated Policy Enforcement, Secrets Management, Vulnerability Scanning, SAST and DAST, monitoring, and more.




Other Videos By Confreaks


2022-09-20DevOpsDays NYC 2020: Quintessence Anx - Unquantified Serendipity: Diversity in Development
2022-09-20DevOpsDays NYC 2020: Sheanika Crawford - Why Events & People Matter: How the new girl used ...
2022-09-20DevOpsDays NYC 2020: James Meichle - Cooperative Economics for Engineers; or, Why You Have ...
2022-09-20DevOpsDays NYC 2020: Sponsors - Day 2
2022-09-20DevOpsDays NYC 2020: Kris Buytaert - 10 years of #devops, but what did we really learn?
2022-09-20DevOpsDays NYC 2020: Chen Harel - Reliability Scoring: A 3-Part Formula for Promoting Reliable Code
2022-09-20DevOpsDays NYC 2020: Jameson Hampton - Lessons in Ethical Development I Learned From Star Wars
2022-09-20DevOpsDays NYC 2020: Sposors - Day 1
2022-09-20DevOpsDays NYC 2020: Angel Rivera - CI/CD Agility and Controlling Pipeline Sprawl
2022-09-20DevOpsDays NYC 2020: John Allspaw - Can Resilience Engineering be sufficiently described in 5...?
2022-09-20DevOpsDays NYC 2020: Victoria Geronimo - DevSecOps is a Misnomer
2022-09-20DevOpsDays NYC 2020: Michael Wytock - Infrastructure Changes, So Modularize and Version Your...
2022-09-20DevOpsDays NYC 2020: Quincy Iheme - Don't Fail Fast. Learn Faster
2022-09-20DevOpsDays NYC 2020: Rachael Ferguson - Productionalizing Data Science Models
2022-09-20DevOpsDays NYC 2020: Christine Yen - Observability for Developers: How to Get From Here to There
2022-09-20DevOpsDays NYC 2020: Welcome and Intro
2022-09-20DevOpsDays NYC 2020: Janna B. Dogan - Are you ready for production?
2022-09-12DevOpsDays Boston
2022-09-06PowerShell+ 2019 - Wardley Maps Saved The Day - How Stack Overflow Enterprise... by Chris Hunt
2022-09-06PowerShell+ 2019 - Continuously deploying SQL code using Powershell by Kirill Kravtsov
2022-09-06PowerShell+ 2019 - It’s PowerShell In the Cloud – Welcome to Azure Cloud Shell by Michael Bender