11 DevSecOps: Microsoft Defender for DevOps

This chapter covers

  • Shifting security left
  • Infrastructure as code
  • Microsoft Defender for DevOps
  • Cybersecurity as an infinite game

You could argue that a big part of cybersecurity is dealing with bugs found in code—both bugs known and unknown at a given point in time. These bugs could present vulnerabilities and eventually increase the risk of bad actors (like the fictional bad actor Eve) exploiting the vulnerabilities in code to compromise applications running in your environment. What we’re also seeing is that it’s taking less and less time for bad actors to weaponize vulnerabilities in code, which is an alarming trend.

If you need a prime example of why this topic matters, you need look no further ...

Get Azure Security now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.