将安全性与DevSecOps集成:技术和挑战

Zaheeruddin Ahmed, Shoba. C. Francis
{"title":"将安全性与DevSecOps集成:技术和挑战","authors":"Zaheeruddin Ahmed, Shoba. C. Francis","doi":"10.1109/ICD47981.2019.9105789","DOIUrl":null,"url":null,"abstract":"The delivery of software applications is key to the success of many development organizations. The software development process over the period increased its scope and included other areas like operations with core Information Technology. Software project practices with DevOps have demonstrated how to streamline these processes, improve the quality of products with present technologies and speed up the processes. In the project cell, a university students' organization which undertake software development projects and services implemented the DevOps methodology for student projects. This model showed results with effective completion of projects. However, what was missing was robust and secure applications, increasing concern and risk involved with insecure products that brought our attention to the implementation and integration of security model into our present development process. The goal of this article is to describe the integration of DevSecOps practice to our ongoing projects that will avoid insecure practices during development.","PeriodicalId":277894,"journal":{"name":"2019 International Conference on Digitization (ICD)","volume":"11 9 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2019-11-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"8","resultStr":"{\"title\":\"Integrating Security with DevSecOps: Techniques and Challenges\",\"authors\":\"Zaheeruddin Ahmed, Shoba. C. Francis\",\"doi\":\"10.1109/ICD47981.2019.9105789\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"The delivery of software applications is key to the success of many development organizations. The software development process over the period increased its scope and included other areas like operations with core Information Technology. Software project practices with DevOps have demonstrated how to streamline these processes, improve the quality of products with present technologies and speed up the processes. In the project cell, a university students' organization which undertake software development projects and services implemented the DevOps methodology for student projects. This model showed results with effective completion of projects. However, what was missing was robust and secure applications, increasing concern and risk involved with insecure products that brought our attention to the implementation and integration of security model into our present development process. The goal of this article is to describe the integration of DevSecOps practice to our ongoing projects that will avoid insecure practices during development.\",\"PeriodicalId\":277894,\"journal\":{\"name\":\"2019 International Conference on Digitization (ICD)\",\"volume\":\"11 9 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2019-11-01\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"8\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2019 International Conference on Digitization (ICD)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/ICD47981.2019.9105789\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2019 International Conference on Digitization (ICD)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICD47981.2019.9105789","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 8

摘要

软件应用程序的交付是许多开发组织成功的关键。在此期间,软件开发过程扩大了其范围,并包括其他领域,如核心信息技术的操作。使用DevOps的软件项目实践已经演示了如何简化这些流程,利用现有技术提高产品质量并加快流程。在项目单元中,承担软件开发项目和服务的大学生组织为学生项目实现了DevOps方法。该模型显示了有效完成项目的结果。然而,缺少的是健壮和安全的应用程序,增加了与不安全产品相关的关注和风险,使我们注意到安全模型的实现和集成到我们当前的开发过程中。本文的目标是描述将DevSecOps实践集成到我们正在进行的项目中,以避免开发过程中的不安全实践。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
Integrating Security with DevSecOps: Techniques and Challenges
The delivery of software applications is key to the success of many development organizations. The software development process over the period increased its scope and included other areas like operations with core Information Technology. Software project practices with DevOps have demonstrated how to streamline these processes, improve the quality of products with present technologies and speed up the processes. In the project cell, a university students' organization which undertake software development projects and services implemented the DevOps methodology for student projects. This model showed results with effective completion of projects. However, what was missing was robust and secure applications, increasing concern and risk involved with insecure products that brought our attention to the implementation and integration of security model into our present development process. The goal of this article is to describe the integration of DevSecOps practice to our ongoing projects that will avoid insecure practices during development.
求助全文
通过发布文献求助,成功后即可免费获取论文全文。 去求助
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术官方微信