In a DevSecOps world, the security team needs a much more thorough understanding of the development process than they did in the past; they simply won’t be able to do their jobs effectively and integrate security into the development process without a deep understanding of how this team works. This session details what exactly the security teams now needs to understand, including:
•Development processes, tools, and technologies: How developers are producing code, checking code into source control, spinning up environments, and deploying code to the pipeline
•Development priorities and challenges: It’s no longer practical to make extensive security demands of development teams without any awareness of their workload and priorities.
•Open source library use: Understanding how code comes into your organization will be increasingly critical.
•DevOps: You definitely need a clear understanding of this development model. Even if your organization hasn’t fully embraced DevOps, this is the future of software development.