Organizations have been working towards the integration of security into their development pipelines but with varying levels of success. Friction between development, operations and security owners has meant that while technology exists, the people and process portions of DevOps are not getting due consideration. In this 45-min interactive session, we will discuss methods to assist processes using tools, to enable people with differing areas of concern can contribute to increasing security within their CI/CD workflows. We will cover: - Discussion of DevSecOps Capability and Maturity models - How to start implementing security into pipelines in increments - Leveraging functional testing in DevOps pipelines to remove false positives