Upgrade to Pro
— share decks privately, control downloads, hide ads and more …
Speaker Deck
Features
Speaker Deck
PRO
Sign in
Sign up for free
Search
Search
Savinder_Puri_-_DevSecOps_-_sec_adds_the_glitte...
Search
Savinder Puri
June 03, 2021
Technology
0
25
Savinder_Puri_-_DevSecOps_-_sec_adds_the_glitter_in_DevSecOps.pdf
Savinder Puri
June 03, 2021
Tweet
Share
More Decks by Savinder Puri
See All by Savinder Puri
DevOps World, 2020
savinderpuri
0
24
DevOpsCon 2020
savinderpuri
0
17
Build__Scale_and_Grow_a_career_in_DevOps.pdf
savinderpuri
0
57
Other Decks in Technology
See All in Technology
usermode linux without MMU - fosdem2026 kernel devroom
thehajime
0
240
ブロックテーマでサイトをリニューアルした話 / 2026-01-31 Kansai WordPress Meetup
torounit
0
470
Introduction to Sansan for Engineers / エンジニア向け会社紹介
sansan33
PRO
6
68k
コミュニティが変えるキャリアの地平線:コロナ禍新卒入社のエンジニアがAWSコミュニティで見つけた成長の羅針盤
kentosuzuki
0
130
レガシー共有バッチ基盤への挑戦 - SREドリブンなリアーキテクチャリングの取り組み
tatsukoni
0
220
10Xにおける品質保証活動の全体像と改善 #no_more_wait_for_test
nihonbuson
PRO
2
320
[CV勉強会@関東 World Model 読み会] Orbis: Overcoming Challenges of Long-Horizon Prediction in Driving World Models (Mousakhan+, NeurIPS 2025)
abemii
0
140
Oracle AI Database移行・アップグレード勉強会 - RAT活用編
oracle4engineer
PRO
0
100
15 years with Rails and DDD (AI Edition)
andrzejkrzywda
0
200
予期せぬコストの急増を障害のように扱う――「コスト版ポストモーテム」の導入とその後の改善
muziyoshiz
1
2k
Amazon Bedrock Knowledge Basesチャンキング解説!
aoinoguchi
0
150
AIエージェントを開発しよう!-AgentCore活用の勘所-
yukiogawa
0
170
Featured
See All Featured
Design and Strategy: How to Deal with People Who Don’t "Get" Design
morganepeng
133
19k
Joys of Absence: A Defence of Solitary Play
codingconduct
1
290
Have SEOs Ruined the Internet? - User Awareness of SEO in 2025
akashhashmi
0
270
Understanding Cognitive Biases in Performance Measurement
bluesmoon
32
2.8k
The Hidden Cost of Media on the Web [PixelPalooza 2025]
tammyeverts
2
190
Public Speaking Without Barfing On Your Shoes - THAT 2023
reverentgeek
1
310
Fantastic passwords and where to find them - at NoRuKo
philnash
52
3.6k
Digital Ethics as a Driver of Design Innovation
axbom
PRO
1
180
Performance Is Good for Brains [We Love Speed 2024]
tammyeverts
12
1.4k
AI in Enterprises - Java and Open Source to the Rescue
ivargrimstad
0
1.1k
We Have a Design System, Now What?
morganepeng
54
8k
Efficient Content Optimization with Google Search Console & Apps Script
katarinadahlin
PRO
1
330
Transcript
Savinder Puri DevOps Evangelist, Zensar Technologies, UK @savinderpuri
[email protected]
Savinder Puri DevOps Evangelist, Zensar Technologies, UK Engineering (Computers), Class
of 2000 Ambassador at DevOps Institute & CDF Published author (Available on Amazon worldwide) Reiki Grandmaster & Angelic Healer YOUR LOGO HERE
None
https://amzn.to/3gu5tu0
None
DevOps LOVES ‘Sec’. It adds the glitter to DevSecOps! Everyone
knows that Security isn’t a real tool/process, it’s a mindset
None
Everywhere that you go, add a bit of ‘sec’! That’s
how you make the security mindset actionable
None
Glitter the entire SDLC!!! PO, UX, Dev, Testers, Ops, Network...
everyone has a part to play!
https://digital.ai/periodic-table-of-devops-tools
https://www.sonatype.com/referencearchitecturetestdrive
None
Why can’t we get our actors together? “loss of control”
DevSecOps will give you the “Andon Cord”!
CI/CD Pipelines + Alerts (thresholds) + Discipline ------------------------------- = Andon
Cord ------------------------------- https://medium.com/@jjruescas/to-improve-pull-the-cord-ec309fa9d701
https://medium.com/@jjruescas/to-improve-pull-the-cord-ec309fa9d701 Jenkins CI/CD pipeline
None
Beware of the “SonarQube Circle!”
None
Follow the iterative approach here... Nothing succeeds like success!
None
With “Compliance-as-code (CaC)”, ‘ sec’ will go everywhere! That’s how
you make the security mindset actionable
https://www.jenkins.io/doc/pipeline/steps/sonar/ Jenkins Pipeline for SonarQube Quality Gate
https://bit.ly/34Ohadd Illustrative example with Qualys (love the representation!); there are
several other toolset options out there
None
Once you get ‘sec’ into the DNA, it just organically
spreads everywhere!
None
THANK YOU! Meet me in the Network Chat Lounge for
questions