Course Outline
Introduction
- Understanding how DevOps introduces heightened security risks for organizations
- The trade-offs involving agility, speed, and decentralized control
Limitations of Conventional Security Tools
- Rigid security policies
- Static firewall rules
- Absence of APIs for seamless integration
- Limited visualization capabilities
Establishing a DevOps-Centric Security Program
Aligning Security Initiatives with Business Objectives
Eliminating Security as a Workflow Bottleneck
Enhancing Detailed Visibility
Standardizing Security Configurations
Integrating Sensors into Applications
- Interactive Application Security Testing
- Runtime Application Self-Protection
Exposing Security Data to DevOps Tools via RESTful APIs
Implementing On-Demand Scaling and Micro-Perimeter Security Controls
Defining Granular Security Policies per Resource
Automating Attack Simulations on Pre-Production Code
Continuous Testing of Production Environments
Web Application Security from an Agile/DevOps Standpoint
Hardening Containers and Cloud Infrastructures
Adopting Next-Generation Automated Security Solutions
The Future of DevOps and Its Strategic Impact on Security
Summary and Wrap-Up
Requirements
- Practical experience with DevOps practices.
- Familiarity with or a keen interest in information security.
Target Audience
- DevOps engineers
- Security engineers
Testimonials (2)
Craig was extremely involved in the training, always making sure we are paying attention, adapted the examples to our day-to-day activities and always provided an answer when asked, even if the information was not added in the presentation.
Ecaterina Ioana Nicoale - BOOKING HOLDINGS ROMANIA SRL
Course - DevOps Foundation®
High level of commitment and knowledge of the trainer