Open Access Open Access  Restricted Access Subscription Access

Security in DevOps: A DevSecOps Approach to Mitigating Software Vulnerabilities

Pavan Srikanth SubbaRaju Patchamatla

Abstract


With the rise of DevOps practices, integrating security into the development lifecycle has become a necessity. DevSecOps, an evolution of DevOps, embeds security from the outset rather than treating it as an afterthought. This paper explores the principles, benefits, and challenges of implementing DevSecOps, as well as the best practices and tools available for effectively mitigating software vulnerabilities.


Full Text:

PDF

References


• Rajapakse, R. N., Zahedi, M., Babar, M. A., & Shen, H. (2021). Challenges and solutions when adopting DevSecOps: A systematic review. arXiv preprint arXiv:2103.08266.

• Rajapakse, R. N., Zahedi, M., & Babar, M. A. (2022). Collaborative Application Security Testing for DevSecOps: An Empirical Analysis of Challenges, Best Practices and Tool Support. arXiv preprint arXiv:2211.06953.

• Pecka, N., ben Othmane, L., & Valani, A. (2022). Making Secure Software Insecure without Changing Its Code: The Possibilities and Impacts of Attacks on the DevOps Pipeline. *arXiv preprint arXiv


Refbacks

  • There are currently no refbacks.