OPERATING SYSTEMSOS Linux

OWASP Ottawa November 15th 2023: DevSecOps: Containers, Vulnerabilities, & SCA

A whirlwind tour of a tech stack evolutionary journey at a scale-up and tidbits of lessons learned from along the way. Some thoughts on the experience of taking an app from Elastic Beanstalk onto ECS, and the shift in how to approach patch/vulnerability management. Along with the different strategies to software composition analysis (SCA) in a containerized environment. Hopefully with a glimpse into an approach for embedding security into every stage of the software development lifecycle; a la the DevSecOps way.

source

by OWASP Ottawa

linux foundation