8. Security and Security Audits
To err is human; to really screw up you need the root password.
—Anonymous
An initial reaction to discussing security in a DevOps context is to assume that security practices are not agile and can actually hinder improving the time between a code commit and acceptance into normal production. We believe that this reaction is totally backward. Discussing adoption of DevOps practices without considering security makes the security team a critic of these practices and dooms the adoption of these practices in many enterprises. In our case study in Chapter 12, we see an approach that advocates integrating the security team into the adoption process. Other DevOps activities that are candidates for the discussion of security ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access