6 Security Team Goals for DevSecOps in 2020
Huge opportunities await security teams that are finally ready move the needle on security problems that have plagued organizations for years.
January 2, 2020
The world of IT delivery is undergoing seismic shifts as enterprises transform their technology infrastructure and software delivery models to stay ahead of market trends. This has driven rapid adoption of DevOps practices, cloud-native technology, containers, microservices, and rampant dependency on APIs and third-party code.
These changes, in turn, are blurring lines in infrastructure, in code, and in IT roles, all of which are completely disrupting the security function today. But for those security teams willing to stay flexible, it's also opening up huge opportunities to finally move the needle on security problems that have plagued organizations for years.
The demand for cloud-native apps and widespread adoption of DevOps to drive digital transformation is going to definitely "accelerate vulnerability risk" in 2020, says Rohit Ghai, president of RSA. But at the same time, he believes security teams that adapt with a DevSecOps model, baking security into the software pipeline, along with improvements in automation, will lead to huge strides in software security and security operations.
"It will enable pen testing and code analysis earlier in the development life cycle, and cyber-resilience to be designed into the fabric of the infrastructure, which will result in reduction of the attack surface," he explains.
In order to make this a reality, security and DevOps pundits believe organizations need to keep the following goals in mind for the coming year.
About the Author
You May Also Like
Applying the Principle of Least Privilege to the Cloud
Nov 18, 2024The Right Way to Use Artificial Intelligence and Machine Learning in Incident Response
Nov 20, 2024Safeguarding GitHub Data to Fuel Web Innovation
Nov 21, 2024The Unreasonable Effectiveness of Inside Out Attack Surface Management
Dec 4, 2024