YoVDO

Security Tooling in Your DevOps Pipeline

Offered By: NDC Conferences via YouTube

Tags

NDC Conferences Courses DevOps Courses Continuous Integration Courses Static Code Analysis Courses Vulnerability Scanning Courses

Course Description

Overview

Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
Explore strategies for integrating security tooling and automation into DevOps pipelines in this 39-minute conference talk by Nancy Gariché. Learn how to implement security assessments early and throughout the CI/CD process, replacing slow manual methods with efficient automated solutions. Discover techniques for scanning platforms and code for vulnerabilities, performing static and dynamic security testing, and analyzing third-party components. Gain insights into shifting security left, gatekeeper approaches, and the differences between Waterfall and Agile methodologies. Delve into OWASP guidelines, secret detection, container security, and infrastructure considerations. Acquire valuable resources to enhance your DevOps security practices and keep pace with rapid development cycles.

Syllabus

Intro
Security
Shifting Left
Gatekeeping
Waterfall vs Agile
Security Tooling
OASP
Static Application Security
Dynamic Application Security
Software Composition Analysis
Secret Detection
Containers
Infrastructure
Resources


Taught by

NDC Conferences

Related Courses

Secure Android App Development
University of Southampton via FutureLearn
DevSecOps: Building a Secure Continuous Delivery Pipeline
LinkedIn Learning
Microsoft DevOps Solutions: Developing Security and Compliance
Pluralsight
Using Security Analysis Tools to Protect ASP.NET and ASP.NET Core Applications
Pluralsight
DevOps with GitHub and Azure: Implementing Software Supply Chain Security with GitHub
Pluralsight