Skip to Content
Hands-On Security in DevOps
book

Hands-On Security in DevOps

by Tony Hsiang-Chih Hsu
July 2018
Intermediate to advanced
356 pages
9h 18m
English
Packt Publishing
Content preview from Hands-On Security in DevOps

Deliverables and development team self-assessment

The deliverables for a development include threat modeling, design, and coding. The following table summarizes examples of self-assessment metrics for a development team:

Deliverables

Self-assessment checklist

Threat modeling analysis report

Does the threat modeling analysis cover STRIDE six-threat analysis?

Does the diagram include all components, data flows, and trust boundaries?

Are all the threat mitigations effective and incorporated into the release plan?

Does the threat modeling analysis cover all the new features and the previously released risks?

Sharing effective threat mitigation as a case study.

Secure coding analysis report

Do any static secure code scanning ...

Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Start your free trial

You might also like

Securing DevOps

Securing DevOps

Julien Vehent
Kubernetes Security

Kubernetes Security

Liz Rice, Michael Hausenblas
Three Essentials for Agentic AI Security

Three Essentials for Agentic AI Security

Paolo Dal Cin, Daniel Kendzior, Yusof Seedat, Renato Marinho
Security Automation with Ansible 2

Security Automation with Ansible 2

Akash Mahajan, MADHU AKULA

Publisher Resources

ISBN: 9781788995504Other