ηΩϡΞͳϓϩμΫτͱݴ͑γϑτϨϑτ
• ϏδωεతͳγϑτϨϑτ
• ʮϦϦʔεͷεέδϡʔϧΛ͛ͳ͍Α͏ʹɺηΩϡϦςΟʹؔΘΔ
ఔΛલ࣮ͯ͠͠ࢪ͢Δͱ͍͏֓೦ʯby NRIηΩϡΞ
• ʮ։ൃϓϩηεͷՄೳͳݶΓૣظͷஈ֊ʹηΩϡϦςΟରࡦΛҠಈͤ͞
Δ͜ͱʯ by PaloAlto
• DevOpsతͳγϑτϨϑτ
• ”he e
ff
orts of a DevOps team to guarantee application security at the
earliest stages in the development lifecycle, as part of an organizational
pattern known as DevSecOps” by aquasec
https://www.paloaltonetworks.com/blog/2019/08/4-practical-steps-shift-left-security/?lang=ja
https://www.nri-secure.co.jp/glossary/shift-left
https://www.aquasec.com/cloud-native-academy/devsecops/shift-left-devops/
Slide 17
Slide 17 text
ηΩϡΞͳϓϩμΫτͱݴ͑γϑτϨϑτ
• ϏδωεతͳγϑτϨϑτ <- 2015ʹ͋ͬͨ
• ʮϦϦʔεͷεέδϡʔϧΛ͛ͳ͍Α͏ʹɺηΩϡϦςΟʹؔΘΔఔΛલ
࣮ͯ͠͠ࢪ͢Δͱ͍͏֓೦ʯby NRIηΩϡΞ
• ʮ։ൃϓϩηεͷՄೳͳݶΓૣظͷஈ֊ʹηΩϡϦςΟରࡦΛҠಈͤ͞Δ͜ͱʯ
by PaloAlto
• DevOpsతͳγϑτϨϑτ<- ࠷ۙͷSWαϓϥΠνΣʔϯؔ
• ”he e
ff
orts of a DevOps team to guarantee application security at the earliest
stages in the development lifecycle, as part of an organizational pattern known
as DevSecOps” by auasec
https://www.paloaltonetworks.com/blog/2019/08/4-practical-steps-shift-left-security/?lang=ja
https://www.nri-secure.co.jp/glossary/shift-left
https://www.aquasec.com/cloud-native-academy/devsecops/shift-left-devops/
Slide 18
Slide 18 text
ηΩϡΞͳϓϩμΫτͱݴ͑γϑτϨϑτ
• ϏδωεతͳγϑτϨϑτ <- 2015ʹ͋ͬͨ
• ʮϦϦʔεͷεέδϡʔϧΛ͛ͳ͍Α͏ʹɺηΩϡϦςΟʹؔΘΔఔΛલ
࣮ͯ͠͠ࢪ͢Δͱ͍͏֓೦ʯby NRIηΩϡΞ
• ʮ։ൃϓϩηεͷՄೳͳݶΓૣظͷஈ֊ʹηΩϡϦςΟରࡦΛҠಈͤ͞Δ͜ͱʯ
by PaloAlto
• DevOpsతͳγϑτϨϑτ <- ࠷ۙͷSWαϓϥΠνΣʔϯؔ
• ”he e
ff
orts of a DevOps team to guarantee application security at the earliest
stages in the development lifecycle, as part of an organizational pattern known
as DevSecOps” by auasec
https://www.paloaltonetworks.com/blog/2019/08/4-practical-steps-shift-left-security/?lang=ja
https://www.nri-secure.co.jp/glossary/shift-left
https://www.aquasec.com/cloud-native-academy/devsecops/shift-left-devops/
ͭ·ΓࠓͰɺ
ϓϩμΫτͷ
Ϗδωεͱ༷ͱ։ൃͱӡ༻શମͰ
ʮγϑτϨϑτʯ͕
ཁٻ͞Ε͍ͯΔ