- Short, iterative software development lifecycle with embedded automated security checks
- Repeatable development environments with homogenous security controls
- Version-controlled CI pipeline
- Process for implementing organization- or team-wide changes to said pipelines to facilitate post-incident security investigations
- Robust documentation, preferably using declarative methods that enables security as code
- A culture of encouraging innovation and tolerating the failure that accompanies it
Like this:
Like Loading...
Published by David Schwarm
Husband. Father. Optum.
View all posts by David Schwarm
Published