Security News > 2021 > July > Apps Built Better: Why DevSecOps is Your Security Team’s Silver Bullet

Apps Built Better: Why DevSecOps is Your Security Team’s Silver Bullet
2021-07-14 16:33

DevSecOps puts security at the forefront of the development process as a whole, ensuring that good cyber-hygiene remains top-of-mind for developers and operators from start to finish.

The Building Security In Maturity Model, a.k.a. BSIMM, is a great resource listing over 120 security best practices, to help development teams keep these measures top of mind when designing their solutions.

Security Gates: In DevOps build processes, security gates can block a release - giving security and engineering teams adequate time to determine what level of severity of these bugs will break the overall build.

Implementing a Multi-Layered Security Strategy: To ensure security across the board, organizations must make security everyone's responsibility.

For additional security, organizations can then bring in external testers to perform black-box and gray-box testing; or, they can set up a bug-bounty program and pay security researchers to look for vulnerabilities that are more difficult to find.

By placing security at the forefront and implementing a DevSecOps culture, organizations are better positioned to mitigate threats as they appear - and before they cause any issues or interruptions.


News URL

https://threatpost.com/apps-built-better-devsecops-security-silver-bullet/167793/