B
What is DevSecOps?
DevSecOps combines development, security, and operations and includes security into every aspect of software development from design and coding through production and shipping. Development teams code and build software applications, operations teams monitor and manage software production and performance, and security vulnerabilities and risks are identified early into the development lifecycle process and continually corrected.
How does DevSecOps work?
DevSecOps encourages collaboration between software development and operations teams, while inviting security teams to be part of the process early and throughout the development process of code, build, test, produce. This approach identifies and fixes security risks early on, optimizes performance, minimizes cyber breaches and ensures regulatory compliance.
What are the business benefits of DevSecOps?
- Provides for faster and more reliable delivery of software since development, security, and operations all work together to provide a quality product without needing to address disruptive fixes in the late stages of development
- Encourages collaboration across the entire development lifecycle as teams share tools, workflow tasks and goals, and security integration
- Addresses risk and compliance issues by combining production and advanced security testing, defect and threat analysis and monitoring, and a focus on continuous quality improvement
- Increases cost savings by integrating all teams in working together from the start of development to solve design and build problems, reduce workflow redundancy and repetition, and identify and eliminate security vulnerabilities and threats before they become major cost factors
- Streamlines application delivery as software is development in a collaborative team environment with security embedded into the application from the start, allowing organizations to ship a quality product faster




