Главная
Study mode:
on
1
Intro
2
Who am I
3
DevOps
4
The problem
5
Traditional software
6
Making easy wins
7
Testdriven vs Agile
8
Its the time to mourn
9
Five stages of grief
10
Infrastructure
11
Chef Puppet
12
Cookbooks
13
Tags
14
Inspector
15
Agent
16
Vulnerability Scanning
17
Bugs vs Reports
18
Severity Classification System
19
Reports
20
Leveraging consistencies
21
Detailed findings
22
False positives
23
Hire and befriend
24
Rackspace
25
Veracode
26
Key takeaways
27
QA
Description:
Explore the evolving landscape of system and application deployment in this 51-minute conference talk from AppSecEU 2014. Dive into the challenges faced by sys admins and security professionals as they adapt to agile development, continuous deployment, DevOps, and cloud technologies. Learn about Test Driven Security, a concept inspired by Test Driven Development, and discover how to architect security work to keep pace with rapid changes. Gain insights into agile methods for securing infrastructure, apps, APIs, and source code. Understand the importance of embracing change in today's fast-paced IT environment. Topics covered include Chef and Puppet for infrastructure management, vulnerability scanning, severity classification systems, and strategies for handling false positives. Benefit from real-world examples and key takeaways from the speaker's experience at Rackspace.

DevOps, CI, APIs, and Security Gone Agile

OWASP Foundation
Add to list
0:00 / 0:00