In this podcast, Hasan Yasar and Chander Dhall talk about Multiple Security Checkpoints on DevOps Platform. They starts off by defining DevOps in the context of Security Integration and then cover various topics like "Integration Platform in DevOps", "How is DevOps different from Agile", "How does DevOps scale in real world scenarios" and a lot more... They cover the following questions in this podcast.
What's your definition of DevOps in the context of Security Integration?
How according to you is DevOps different from Agile?
What is your definition of integration platform in DevOps?
Why is security in the first place considered as a separate discipline? What's your opinion on that?
When it comes to an integrated platform, what are the different security checkpoints?
How does DevOps scale in real world scenarios?
What are the different approaches when it comes to OpenSource vs ClosedSource software?
How do we deal with legacy systems?
What are some of the methods that might have been really effective for you personally when it comes to prioritizing development and testing efforts for finding and removing vulnerabilities?
What is your advice to developers and testers to be effective in building a really fine secure software?
With respect to DevOps and Security, what are the fundamental processes that you would advice organizations to adopt?
How can organizations make more secure softwares in a more cost effective manner?
When it comes to security vulnerabilities, what kind of organization data or metrics should we collect?
What are the limitations of automations in DevOps?
Is there any last advice that our listeners must take-away on integration security?