3

Implementing Security in the Plan Phase of DevOps

The plan phase of DevOps focuses on gathering requirements and feedback from key stakeholders and customers, producing an evolving product roadmap that prioritizes key requirements, and designing a flexible software architecture. Implementing DevSecOps for this phase should focus on security challenges that can be addressed before the developers start writing code! Activities in this phase should include implementing an agile threat modeling process to identify design-level security issues earlier and implementing security training for your teams.

In this chapter, we will cover what works when you’re looking to implement a continuous threat modeling process. We will also discuss the different ...

Get DevSecOps for Azure now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.