Skip to Content
Securing DevOps
book

Securing DevOps

by Julien Vehent
August 2018
Intermediate to advanced
384 pages
12h 18m
English
Manning Publications
Content preview from Securing DevOps

3 Security layer 1: protecting web applications

This chapter covers

  • Automating the security testing of an application in CI
  • Identifying and protecting against common web app attacks
  • Authentication techniques for websites
  • Keeping web apps and their dependencies up to date

In chapter 2, we deployed the invoicer, a small web application (web app) that manages invoices. We ignored security completely to focus on building a DevOps pipeline. In this chapter, we’ll go back to the invoicerapplication and focus on securing it. Our interest here is in the application itself, as we’ll cover the security of the infrastructure and the CI/CD pipeline in later chapters.

Web application security (WebAppSec) is its own specialty within the field of information ...

Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Start your free trial

You might also like

Hands-On Security in DevOps

Hands-On Security in DevOps

Tony Hsiang-Chih Hsu
Kubernetes Security

Kubernetes Security

Liz Rice, Michael Hausenblas

Publisher Resources

ISBN: 9781617294136Supplemental ContentPublisher SupportOtherPublisher WebsiteErrata PagePurchase Link