Skip to Content
Securing DevOps
book

Securing DevOps

by Julien Vehent
August 2018
Intermediate to advanced
384 pages
12h 18m
English
Manning Publications
Content preview from Securing DevOps

12 Testing security

This chapter covers

  • Building a security-testing strategy for the organization
  • Applying four techniques to manually audit application security
  • Working with external security firms efficiently
  • Establishing and maintaining a bug bounty program

The concept of test-driven security (TDS) that we followed throughout part 1 of the book integrated security testing directly inside the CI/CD pipeline. By doing so, we tested new versions of services and applications before they reached production. It’s an ideal state that yields the fastest turnover between discovering security issues and fixing them.

Yet, the reality for most organizations is that only parts of applications and services can be properly tested from within the pipeline. ...

Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Start your free trial

You might also like

Hands-On Security in DevOps

Hands-On Security in DevOps

Tony Hsiang-Chih Hsu
Kubernetes Security

Kubernetes Security

Liz Rice, Michael Hausenblas

Publisher Resources

ISBN: 9781617294136Supplemental ContentPublisher SupportOtherPublisher WebsiteErrata PagePurchase Link