Practical DevOps Security
What you'll learn
- Integrating security into the DevOps culture and organization
- Integrating Security into Continuous Delivery workflows for continuous security
- Leverage Infrastructure as Code techniques for secure configuration management and provisioning
- Eliminate manual security practices such as risk assessments and audits by automating all the verification
- Build better defense mechanism by the use of Red and Blue teams
- Create automatic compliance by using the DevOps Audit Defense Toolkit
- Build continuous a feedback loop by automating all security checks throughout the Continuous Delivery pipeline
Course content
- Preview02:27
- 05:03Integrate Security for a DevOps World
- 06:27Risk Management in a Rapidly Changing World
- 04:46Key Principles and Benefits of Secure DevOps
- 04:05Business-Driven Security Strategies
- 03:59OWASP Security Guidelines
Requirements
- Basic understanding of DevOps, Cloud computing, automation frameworks and programming skills would be necessary
Description
DevOps enables rapid application development while security teams follow a traditional way of performing security checks. If security (that is, configuration checks, code analysis, vulnerability scanning, and more) is not adequately automated then it leads to increased security violations and hacking/phishing attacks. Integrating security in the DevOps ethos helps fix flaws earlier in the development process. This course shows you how to apply DevOps security best practices at every stage in your DevOps pipeline. You will learn proven approaches to reducing vulnerability and strengthening your defenses against attack. You will understand using security as code with the intent of making security and compliance consumable as a service. This course explains how DevOps security practices differ from traditional security approaches and provides techniques to embed governance and cybersecurity functions throughout the DevOps workflow. By the end of the course, you will have learned best practices in DevSecOps, the core concepts of secure DevOps, and how security can be integrated into the development pipeline.
About the Author :
Gurpreet Sachdeva is a Technology Executive with 21+ years' experience working on some of the most challenging technologies related to Cloud Computing, DevOps, and Security. Gurpreet did his B. Tech (C.S.) from NIT, Kurukshetra and M.S. (Software Systems) from BITS, Pilani. He is currently working as Assistant Vice President—Technology with Aricent, Gurgaon. He is a keen Java enthusiast and co-founder of Delhi – NCR – Java User Group. Gurpreet is an invited speaker in prestigious conferences such as Oracle – Java One, Great India Developer Summit.
Who this course is for:
- This video course is aimed at system administrators, security consultant, DevOps engineers and cloud security strategists who are looking at using the principles of DevOps to secure their software in a continuous and iterative manner.
Instructor
Packt has been committed to developer learning since 2004. A lot has changed in software since then - but Packt has remained responsive to these changes, continuing to look forward at the trends and tools defining the way we work and live. And how to put them to work.
With an extensive library of content - more than 4000 books and video courses -Packt's mission is to help developers stay relevant in a rapidly changing world. From new web frameworks and programming languages, to cutting edge data analytics, and DevOps, Packt takes software professionals in every field to what's important to them now.
From skills that will help you to develop and future proof your career to immediate solutions to every day tech challenges, Packt is a go-to resource to make you a better, smarter developer.
Packt Udemy courses continue this tradition, bringing you comprehensive yet concise video courses straight from the experts.