2020年2月7日 星期五

Security testing in DevOps

Before we continue to talk about security testing in nowadays, you must aware
traditional security can't fit in DevOps.  Because the  major traditional security control
rely on "Separation of Duty", it is conflict with DevOps "take full responsibility".
Security must Change or Die in DevOps.

Emerging patterns for security in a DevOps world

Traditional Security
DevSecOps
Embrace secrecy
Create Feedback Loops
Just Pass Audit!
Compliance adds Value
Enforce Stability
Create Chaos
Build a wall
Zero Trust Network
Slow Validation
Fast and Non-blocking
Certainly Testing
Adversity Testing
Test when Done
Shift Left
Process Driven
The Paved Road

沒有留言:

如何下載Facebook 相簿跟影片

影片:透過chrome plug-in : Video Downloader for Facebook<sup>TM</sup> 相簿: 透過chrome plug-in : Tampermonkey 搭配script : Facebo...