Skip to Content
Securing DevOps
book

Securing DevOps

by Julien Vehent
August 2018
Intermediate to advanced
384 pages
12h 18m
English
Manning Publications
Content preview from Securing DevOps

11 Assessing risks

This chapter covers

  • An introduction to risk management

  • Categorizing information into confidentiality, integrity, and availability requirements

  • Threat modeling with the STRIDE and DREAD frameworks

  • Using rapid risk assessment to integrate reviews in the DevOps process

  • Recording and tracking risks in the organization

At the start of the book, you secured a single, small invoicer service hosted in a basic AWS environment. Yet, it took the better part of 10 chapters to cover all the controls necessary to properly secure that one service.

Organizations don’t stay small; they grow, and as they do, security teams must audit more deployment pipelines, implement more controls in more services, and perform more incident response. ...

Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Start your free trial

You might also like

Hands-On Security in DevOps

Hands-On Security in DevOps

Tony Hsiang-Chih Hsu
Kubernetes Security

Kubernetes Security

Liz Rice, Michael Hausenblas

Publisher Resources

ISBN: 9781617294136Supplemental ContentPublisher SupportOtherPublisher WebsiteErrata PagePurchase Link