Integration of Security in the DevOps Methodology

Emmanouil Sermpezis, Dimitrios Karapiperis, Christos Tjortjis · 2024

This paper investigates the transition to DevSecOps, where the security component is of paramount importance. As digital threats become increasingly sophisticated, the need for security to be embedded within the Software Development Lifecycle (SDLC) and the Continuous Integration and Continuous Deployment (CI/CD) pipelines is imperative. With this emphasis on security integration the produced application and its underlining infrastructure are much more resilient to bugs and vulnerabilities. The findings highlight the shift towards shared security responsibility, the strategic implementation of security tools, and the adoption of security-focused practices from the inception of development.

Read the paper · More papers on PaperTik