

Security in DevOps: A DevSecOps Approach to Mitigating Software Vulnerabilities
Abstract
With the rise of DevOps practices, integrating security into the development lifecycle has become a necessity. DevSecOps, an evolution of DevOps, embeds security from the outset rather than treating it as an afterthought. This paper explores the principles, benefits, and challenges of implementing DevSecOps, as well as the best practices and tools available for effectively mitigating software vulnerabilities.
References
• Rajapakse, R. N., Zahedi, M., Babar, M. A., & Shen, H. (2021). Challenges and solutions when adopting DevSecOps: A systematic review. arXiv preprint arXiv:2103.08266.
• Rajapakse, R. N., Zahedi, M., & Babar, M. A. (2022). Collaborative Application Security Testing for DevSecOps: An Empirical Analysis of Challenges, Best Practices and Tool Support. arXiv preprint arXiv:2211.06953.
• Pecka, N., ben Othmane, L., & Valani, A. (2022). Making Secure Software Insecure without Changing Its Code: The Possibilities and Impacts of Attacks on the DevOps Pipeline. *arXiv preprint arXiv
Refbacks
- There are currently no refbacks.