SlideShare a Scribd company logo
2
Most read
3
Most read
4
Most read
DevSecOps
A.R.M. NIZZAD
CTO | SENIOR LECTURER | RESEARCHER | SOFTWARE ENGINEER | DIGITAL MEDIA
STRATEGIST | TECHNICAL W RITER | FREELANCER
Outline
DevOps DevSecOps Characteristics Practices
Benefits Implementation Challenges
DevOps
DevOps is a set of practices that works to automate and
integrate the processes between software development and IT
teams, so they can build, test, and release software faster and
more reliably
DevSecOps
DevSecOps is a further development
of the DevOps concept that, besides
automation, addresses the issues of
code quality and reliability assurance.
DevSecOps Characteristics
DevOps Culture Automation Measurement Sharing
DevSecOps Practices
• Threat modeling and risk assessments
• Continuous testing
• Monitoring and logging
• Security as code
• Red-Team and security drills
Benefits of
Implementing
DevSecOpsSHIFTING SECURITY
TO THE LEFT
AUTOMATING
SECURITY
VALUE
Implementing DevSecOps
Different Security implementation models have been proposed by
researchers and experts in the field of Security with respect to
DevSecOps.
• Three pillars of a DevSecOps model
• OWASP DevSecOps Maturity Model
• Deloitte’s transformational pillars in DevSecOps
Three pillars of a DevSecOps model
• Test-driven security
• Monitoring and responding to attacks
• Assessing risks and maturing security
OWASP DevSecOps Maturity Model
LEVEL 1: BASIC
UNDERSTANDING OF
SECURITY PRACTICES
LEVEL 2: ADOPTION OF
BASIC SECURITY PRACTICES
LEVEL 3: HIGH ADOPTION
OF SECURITY PRACTICES
LEVEL 4: ADVANCED
DEPLOYMENT OF SECURITY
PRACTICES AT SCALE
Deloitte’s transformational pillars in
DevSecOps
Governance
People
Technology
Process
Challenges in
implementing
DevSecOpsKEEPING UP WITH
DEVOPS
ORGANIZATIONAL
CHALLENGES
TOOLS AND
PRACTICES
DevOps is not a Goal, But a never-ending process of continual Improvement
Thank you

More Related Content

PPTX
DEVSECOPS.pptx
PDF
Security Process in DevSecOps
 
PDF
DevSecOps Implementation Journey
PDF
DevSecOps What Why and How
PPTX
How to Get Started with DevSecOps
 
PDF
Demystifying DevSecOps
PPTX
DevSecOps reference architectures 2018
DEVSECOPS.pptx
Security Process in DevSecOps
 
DevSecOps Implementation Journey
DevSecOps What Why and How
How to Get Started with DevSecOps
 
Demystifying DevSecOps
DevSecOps reference architectures 2018

What's hot (20)

PDF
PDF
DevSecOps: What Why and How : Blackhat 2019
PPTX
DevSecOps : an Introduction
PDF
The State of DevSecOps
PDF
2019 DevSecOps Reference Architectures
PDF
DevSecOps | DevOps Sec
PPTX
DevOps
PDF
Introduction to DevSecOps
PPTX
Introduction to DevSecOps
PDF
DevSecOps in Baby Steps
PDF
DevSecOps and the CI/CD Pipeline
PDF
DevSecOps The Evolution of DevOps
PPTX
ABN AMRO DevSecOps Journey
PPTX
DevOps Introduction
PDF
Practical DevSecOps Course - Part 1
PPTX
DevOps introduction
PDF
Introduction to DevOps
PPTX
DevOps 101
PDF
Shift Left Security
PPTX
DevOps introduction
DevSecOps: What Why and How : Blackhat 2019
DevSecOps : an Introduction
The State of DevSecOps
2019 DevSecOps Reference Architectures
DevSecOps | DevOps Sec
DevOps
Introduction to DevSecOps
Introduction to DevSecOps
DevSecOps in Baby Steps
DevSecOps and the CI/CD Pipeline
DevSecOps The Evolution of DevOps
ABN AMRO DevSecOps Journey
DevOps Introduction
Practical DevSecOps Course - Part 1
DevOps introduction
Introduction to DevOps
DevOps 101
Shift Left Security
DevOps introduction
Ad

Similar to DevSecops: Defined, tools, characteristics, tools, frameworks, benefits and challenges (20)

PPTX
DevSecOps-Explained-converted.pptx
PPTX
The Importance of DevOps Security and the Emergence of DevSecOps
PPTX
DevSecOps Training Bootcamp - A Practical DevSecOps Course
 
PPTX
What is devsecops and what is the characteristics of it
PDF
DevSecOps Implement Making Security Central to Your DevOps Pipeline
 
PPTX
DevSecOps: Integrating Security Into DevOps! {Business Security}
PPTX
DevOps DevSecOps Based on Training Materials
PPTX
Dev secops indonesia-devsecops as a service-Amien Harisen
PDF
You build it - Cyber Chicago Keynote
PPTX
Introduction to DevSecOps OWASP Ahmedabad
PDF
Why Security Engineer Need Shift-Left to DevSecOps?
PDF
The Challenges of Scaling DevSecOps
PPTX
DevSecOps Integrating Security in to the DevOps Lifecycle
PPTX
Devsec ops
PDF
Strengthen and Scale Security Using DevSecOps - OWASP Indonesia
PDF
The Rise of DevSecOps in CI_CD Workflows.pdf
PPTX
How DevSecOps Can Help You Deliver Software Faster and Safer.pptx
PPTX
PPTX
Ensuring Secure and Efficient Operations with DevOps Security
PDF
Why You Should Implement DevSecOps Approach?
 
DevSecOps-Explained-converted.pptx
The Importance of DevOps Security and the Emergence of DevSecOps
DevSecOps Training Bootcamp - A Practical DevSecOps Course
 
What is devsecops and what is the characteristics of it
DevSecOps Implement Making Security Central to Your DevOps Pipeline
 
DevSecOps: Integrating Security Into DevOps! {Business Security}
DevOps DevSecOps Based on Training Materials
Dev secops indonesia-devsecops as a service-Amien Harisen
You build it - Cyber Chicago Keynote
Introduction to DevSecOps OWASP Ahmedabad
Why Security Engineer Need Shift-Left to DevSecOps?
The Challenges of Scaling DevSecOps
DevSecOps Integrating Security in to the DevOps Lifecycle
Devsec ops
Strengthen and Scale Security Using DevSecOps - OWASP Indonesia
The Rise of DevSecOps in CI_CD Workflows.pdf
How DevSecOps Can Help You Deliver Software Faster and Safer.pptx
Ensuring Secure and Efficient Operations with DevOps Security
Why You Should Implement DevSecOps Approach?
 
Ad

Recently uploaded (20)

PPTX
KOM of Painting work and Equipment Insulation REV00 update 25-dec.pptx
PPTX
TLE Review Electricity (Electricity).pptx
PPTX
Group 1 Presentation -Planning and Decision Making .pptx
PDF
gpt5_lecture_notes_comprehensive_20250812015547.pdf
PPTX
SOPHOS-XG Firewall Administrator PPT.pptx
PDF
Reach Out and Touch Someone: Haptics and Empathic Computing
PDF
NewMind AI Weekly Chronicles - August'25-Week II
PDF
Heart disease approach using modified random forest and particle swarm optimi...
PDF
Blue Purple Modern Animated Computer Science Presentation.pdf.pdf
 
PDF
Building Integrated photovoltaic BIPV_UPV.pdf
PPTX
Digital-Transformation-Roadmap-for-Companies.pptx
PPTX
1. Introduction to Computer Programming.pptx
PDF
Architecting across the Boundaries of two Complex Domains - Healthcare & Tech...
PDF
Univ-Connecticut-ChatGPT-Presentaion.pdf
PDF
Per capita expenditure prediction using model stacking based on satellite ima...
PDF
August Patch Tuesday
 
PDF
Build a system with the filesystem maintained by OSTree @ COSCUP 2025
PDF
Unlocking AI with Model Context Protocol (MCP)
PPTX
cloud_computing_Infrastucture_as_cloud_p
PDF
Mushroom cultivation and it's methods.pdf
KOM of Painting work and Equipment Insulation REV00 update 25-dec.pptx
TLE Review Electricity (Electricity).pptx
Group 1 Presentation -Planning and Decision Making .pptx
gpt5_lecture_notes_comprehensive_20250812015547.pdf
SOPHOS-XG Firewall Administrator PPT.pptx
Reach Out and Touch Someone: Haptics and Empathic Computing
NewMind AI Weekly Chronicles - August'25-Week II
Heart disease approach using modified random forest and particle swarm optimi...
Blue Purple Modern Animated Computer Science Presentation.pdf.pdf
 
Building Integrated photovoltaic BIPV_UPV.pdf
Digital-Transformation-Roadmap-for-Companies.pptx
1. Introduction to Computer Programming.pptx
Architecting across the Boundaries of two Complex Domains - Healthcare & Tech...
Univ-Connecticut-ChatGPT-Presentaion.pdf
Per capita expenditure prediction using model stacking based on satellite ima...
August Patch Tuesday
 
Build a system with the filesystem maintained by OSTree @ COSCUP 2025
Unlocking AI with Model Context Protocol (MCP)
cloud_computing_Infrastucture_as_cloud_p
Mushroom cultivation and it's methods.pdf

DevSecops: Defined, tools, characteristics, tools, frameworks, benefits and challenges