Chapter 36. DataSecOps: Security in Data Products
Diogo Miyake
As the world is moving toward data-centric security, data security operations (DataSecOps) is an evolving approach that emphasizes integrating security throughout the data life cycle. DataSecOps involves collaboration between security teams, data scientists, and engineers to ensure that appropriate security is considered at all stages of the data life cycle, including data creation, storage, processing, sharing, and disposal. Similar to DevSecOps, this paradigm recognizes that all teams involved in data management and use must take responsibility for maintaining security.
Several components contribute to the implementation of DataSecOps. These components include:
- Security operations center
-
A security operations center (SOC) is a dedicated team or facility responsible for monitoring, detecting, and responding to security incidents in real time. The SOC uses various tools, technologies, and processes to identify and mitigate security threats, aiming to protect an organization’s information assets and infrastructure.
- DevSecOps
-
DevSecOps is a software development approach that integrates security practices into the DevOps process. It emphasizes the collaboration between developers, operations teams, and security professionals throughout the SDLC. By incorporating security early on and automating security checks, DevSecOps ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access