Tag: infosec
Shared Responsibility? Yeah.
Don MacVittie reminds us that the shared responsibility model was really cloud vendors telling us that we still have to protect our apps, no matter where they’re deployed ...
The Right Tool for the Job: AI Edition
(Actually, the right job for the tool.) We are currently in a really weird space with regard to AI capability. For my AI friends, I will make the disclaimer that what we ...
The APIs You Really Don’t Know About
A few years ago, we were rightly warned about the amount of exposure our APIs created. A massive attack surface that often used “security by obscurity” as its primary method of protection ...
The Problem With Security
As an IT professional with decades of experience at every level of technology and organizations—from cell phone prototyping to banking enterprise architecture, from entry-level to CTO—I can state definitively that I have ...
How to Bring DevOps and Security Teams Closer Together
More often than not, there seems to be friction between DevOps and security teams. Despite having the same end goals of creating the most secure code and preventing any potential security pitfalls, ...
DevOps: Using Games to Make it Practical
This blog stems from my experience of being one of the earliest DevOps Foundation trainers of DOI and successfully completing 19 batches of DOI Foundation course in the last year. In retrospect ...
Fixing Flaws: Bridging InfoSec and DevOps
The Road to Creating More Secure Code and Interlocking two Traditionally Distinct Practices As DevOps continues to expand across verticals, including the financial and government sectors, security has become paramount in the ...
Hello, Security. Meet Agile
Illumio Chief Commercial Officer Alan S. Cohen recently wrote in his blog, "Go, Slow and No: Bringing DevOps Speed to IT Security," “There are reasons why security and risk professionals often react ...
Why Is There No DevOps Manifesto?
Let's start with a brief story: There's a scene in a movie called “A Few Good Men” in which a lawyer is questioning a cadet. The lawyer directs the cadet to turn to the page in ...
Murphy’s DevOps: The Internet Apocalypse
I’ve been immersed in cybersecurity for a good stretch, since it was known as just "infosec" and "security." Over time, I’ve had opportunities to work with some brilliant minds and young-gun “hackers” (I’m not ...
DevOps Connect: SecOps Edition @RSA Conference
We are very happy to announce that we will be hosting DevOps Connect: SecOps Edition at RSA Conference on Monday, April 20, 2015. It will take place at the Moscone Center and is ...