Upgrade to Pro
— share decks privately, control downloads, hide ads and more …
Speaker Deck
Features
Speaker Deck
PRO
Sign in
Sign up for free
Search
Search
Savinder_Puri_-_DevSecOps_-_sec_adds_the_glitte...
Search
Savinder Puri
June 03, 2021
Technology
0
25
Savinder_Puri_-_DevSecOps_-_sec_adds_the_glitter_in_DevSecOps.pdf
Savinder Puri
June 03, 2021
Tweet
Share
More Decks by Savinder Puri
See All by Savinder Puri
DevOps World, 2020
savinderpuri
0
24
DevOpsCon 2020
savinderpuri
0
17
Build__Scale_and_Grow_a_career_in_DevOps.pdf
savinderpuri
0
57
Other Decks in Technology
See All in Technology
20260204_Midosuji_Tech
takuyay0ne
1
160
広告の効果検証を題材にした因果推論の精度検証について
zozotech
PRO
0
190
生成AIを活用した音声文字起こしシステムの2つの構築パターンについて
miu_crescent
PRO
3
210
CDK対応したAWS DevOps Agentを試そう_20260201
masakiokuda
1
350
学生・新卒・ジュニアから目指すSRE
hiroyaonoe
2
650
日本の85%が使う公共SaaSは、どう育ったのか
taketakekaho
1
230
OCI Database Management サービス詳細
oracle4engineer
PRO
1
7.4k
We Built for Predictability; The Workloads Didn’t Care
stahnma
0
140
マーケットプレイス版Oracle WebCenter Content For OCI
oracle4engineer
PRO
5
1.6k
Agent Skils
dip_tech
PRO
0
120
ファインディの横断SREがTakumi byGMOと取り組む、セキュリティと開発スピードの両立
rvirus0817
1
1.5k
Amazon S3 Vectorsを使って資格勉強用AIエージェントを構築してみた
usanchuu
3
450
Featured
See All Featured
A designer walks into a library…
pauljervisheath
210
24k
Typedesign – Prime Four
hannesfritz
42
2.9k
How to Create Impact in a Changing Tech Landscape [PerfNow 2023]
tammyeverts
55
3.2k
Highjacked: Video Game Concept Design
rkendrick25
PRO
1
290
Designing for Timeless Needs
cassininazir
0
130
Refactoring Trust on Your Teams (GOTO; Chicago 2020)
rmw
35
3.4k
Visual Storytelling: How to be a Superhuman Communicator
reverentgeek
2
430
How Fast Is Fast Enough? [PerfNow 2025]
tammyeverts
3
450
Un-Boring Meetings
codingconduct
0
200
Why Our Code Smells
bkeepers
PRO
340
58k
The SEO identity crisis: Don't let AI make you average
varn
0
290
The Power of CSS Pseudo Elements
geoffreycrofte
80
6.2k
Transcript
Savinder Puri DevOps Evangelist, Zensar Technologies, UK @savinderpuri
[email protected]
Savinder Puri DevOps Evangelist, Zensar Technologies, UK Engineering (Computers), Class
of 2000 Ambassador at DevOps Institute & CDF Published author (Available on Amazon worldwide) Reiki Grandmaster & Angelic Healer YOUR LOGO HERE
None
https://amzn.to/3gu5tu0
None
DevOps LOVES ‘Sec’. It adds the glitter to DevSecOps! Everyone
knows that Security isn’t a real tool/process, it’s a mindset
None
Everywhere that you go, add a bit of ‘sec’! That’s
how you make the security mindset actionable
None
Glitter the entire SDLC!!! PO, UX, Dev, Testers, Ops, Network...
everyone has a part to play!
https://digital.ai/periodic-table-of-devops-tools
https://www.sonatype.com/referencearchitecturetestdrive
None
Why can’t we get our actors together? “loss of control”
DevSecOps will give you the “Andon Cord”!
CI/CD Pipelines + Alerts (thresholds) + Discipline ------------------------------- = Andon
Cord ------------------------------- https://medium.com/@jjruescas/to-improve-pull-the-cord-ec309fa9d701
https://medium.com/@jjruescas/to-improve-pull-the-cord-ec309fa9d701 Jenkins CI/CD pipeline
None
Beware of the “SonarQube Circle!”
None
Follow the iterative approach here... Nothing succeeds like success!
None
With “Compliance-as-code (CaC)”, ‘ sec’ will go everywhere! That’s how
you make the security mindset actionable
https://www.jenkins.io/doc/pipeline/steps/sonar/ Jenkins Pipeline for SonarQube Quality Gate
https://bit.ly/34Ohadd Illustrative example with Qualys (love the representation!); there are
several other toolset options out there
None
Once you get ‘sec’ into the DNA, it just organically
spreads everywhere!
None
THANK YOU! Meet me in the Network Chat Lounge for
questions