DEV Community

# devsecops

Integrating security practices into the DevOps lifecycle.

Posts

๐Ÿ‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Your runbook says one thing. Your infra does another. When did you last compare them?

Your runbook says one thing. Your infra does another. When did you last compare them?

Comments
5 min read
Securing Kubernetes Workloads with DevSecOps

Securing Kubernetes Workloads with DevSecOps

Comments
5 min read
Re-imagine DevSecOps with AWS - CD applied to Authorization with IAM Identity Center and AWS IAM Access Analyzer

Re-imagine DevSecOps with AWS - CD applied to Authorization with IAM Identity Center and AWS IAM Access Analyzer

Comments
9 min read
Container Security and Image Hardening (Docker / Kubernetes Focus)

Container Security and Image Hardening (Docker / Kubernetes Focus)

Comments
4 min read
How Claude Code /deps-check Finds CVEs Before They Hit Production

How Claude Code /deps-check Finds CVEs Before They Hit Production

1
Comments
4 min read
What Is the Difference Between DevOps and DevSecOps? (Beginner Explanation)

What Is the Difference Between DevOps and DevSecOps? (Beginner Explanation)

Comments
1 min read
10 Linux Security Incidents, Reproduced and Fixed

10 Linux Security Incidents, Reproduced and Fixed

Comments
4 min read
Your LLM API Is an Attack Surface. Are You Scanning It?

Your LLM API Is an Attack Surface. Are You Scanning It?

Comments
7 min read
Why Security is Always Late: Economics, Zero-Days, and Attacker Math

Why Security is Always Late: Economics, Zero-Days, and Attacker Math

1
Comments
4 min read
Beginnerโ€™s Guide to Understanding Infrastructure as Code (IaC)

Beginnerโ€™s Guide to Understanding Infrastructure as Code (IaC)

Comments
1 min read
The Supply Chain Attack That's Already In Your Codebase

The Supply Chain Attack That's Already In Your Codebase

Comments
6 min read
How to Detect Compromised Dependencies in Your CI/CD Pipeline Before They Deploy to Production

How to Detect Compromised Dependencies in Your CI/CD Pipeline Before They Deploy to Production

1
Comments
6 min read
Automated Secret Rotation: How to Prevent Credential Sprawl Without Breaking CI/CD

Automated Secret Rotation: How to Prevent Credential Sprawl Without Breaking CI/CD

Comments
6 min read
How to Detect Compromised Dependencies in Your CI/CD Pipeline: The Supply Chain Trust Paradox

How to Detect Compromised Dependencies in Your CI/CD Pipeline: The Supply Chain Trust Paradox

Comments
7 min read
Implemented DevSecOps Pipeline: Integrating CodePipeline, CodeBuild, Container Scanning & Automated Compliance Validation

Implemented DevSecOps Pipeline: Integrating CodePipeline, CodeBuild, Container Scanning & Automated Compliance Validation

Comments
29 min read
๐Ÿ‘‹ Sign in for the ability to sort posts by relevant, latest, or top.