HiveBrain v1.2.0
Get Started
← Back to all entries
patternMinor

Is DevSecOps indeed a new practice worth a professional term?

Submitted by: @import:stackexchange-devops··
0
Viewed 0 times
newworthdevsecopspracticeindeedprofessionalterm

Problem

Or rather marketing slang?
Currently, I am not always sure how to build a consense which words deliver informational value and which are thought to attract customers.
So, DevOps would include security testing if required without calling it DevSecOps? Otherwise we will have DevPerfOps, DevDevOpsOps etc

Solution

In my experience, the purpose of the "DevSecOps" (or whichever order you prefer) has mostly to do with including Security as a first-order concern of software delivery. Security is commonly treated as a "bolt-on" (often meaning optional,) non-functional requirement. DevSecOps attempts to describe a process where security concerns are folded into the delivery process at every step of the value stream.

Context

StackExchange DevOps Q#1375, answer score: 5

Revisions (0)

No revisions yet.