HAVE YOU FACTORED SECURITY INTO YOUR DEVOPS FRAMEWORK ?
contact us

ITPeopleNetwork's helps organizations institutionalize DevOps framework (build poly-skilled teams; adopt agile delivery; establish tight integration and interdisciplinary collaboration; introduce right tools; implement continuous integration and continuous delivery techniques and drive extensive automation) to achieve top quartile performance in quality of product, speed and cost. Enterprise DevSecOps - We take a holistic approach to infuse security as part of the software development lifecycle, DevOps framework and culture.

DevSecOps Service Offerings

Predict
  • if we do X, will it mitigate Y?
  • Capacity Forecasting Plan
  • Threat modelling -> Back log items
  • Analyze / Predict -> Back log items
Develop Code / Tests
  • Static / IAST analysis
  • Abuse case tests
  • Code reviews
Build
  • Break the build
  • Code analysis Test
  • Common abuse cases
Validate More
  • Pen Testing
  • Compliance validation (PCI etc.)
  • Fuzzing
Configure & Deploy
  • Configuration validation
  • Feature Toggles / Traffic
  • Shaping configuration
Monitor
  • Log information for after incident analysis
Detect
  • Intrusion detection
  • App attack detection
Content
  • RASP autorespond
  • Rollback or toggle off
  • Block attackers
  • Shut down services
Stabilize
  • Restore / Maintain Services for non attack usage
Analyze
  • Incident root causes
  • New attack surfaces
  • Plan to update Threat Model

DevOps Service Offerings

  • Agile and DevSecOps Strategy
  • Organization and Team Building
  • DevOps Operating Models - Shared / Centralized / Microservice
  • Infrastructure as Service
  • Deployment and Configuration Management
  • Source Code Management
  • Build and Release Management
  • Code Quality
  • Lifecycle Management and Compliance
  • Test Management
  • Data and Integration Management
  • Automation across technical stack - Continuous Integration, Continuous Delivery, Continuous Deployment

Expertise

  • Architecture
  • Engineering
  • Automation
  • Tools expertise