DevSecOps - Security and Compliance Best Practices

Session Description

With an increased number of cyberattacks, organizations are trying to implement DevSecOps by shifting security processes left by integrating security checks from the early stages of their Software Development Life Cycle (SDLC.) Having a complete DevSecOps pipeline is critical to build a successful software factory. This includes continuous integration (CI), continuous delivery and deployment (CD), continuous testing, continuous logging and monitoring, auditing and governance, and operations. This session will reveal DevSecOps pipeline design strategies and best practices of integrating security and compliance in continuous delivery pipelines. You will also learn some of the DevSecOps reference architectures with AWS services and open source tools.