All Projects → devsecops → Devsecops

devsecops / Devsecops

This repository contains information about DevSecOps and how to get involved in this community effort.

Projects that are alternatives of or similar to Devsecops

Docker Security Images
🔐 Docker Container for Penetration Testing & Security
Stars: ✭ 172 (+66.99%)
Mutual labels:  devops, devsecops
Checkov
Prevent cloud misconfigurations during build-time for Terraform, Cloudformation, Kubernetes, Serverless framework and other infrastructure-as-code-languages with Checkov by Bridgecrew.
Stars: ✭ 3,572 (+3367.96%)
Mutual labels:  devops, devsecops
Apicheck
The DevSecOps toolset for REST APIs
Stars: ✭ 184 (+78.64%)
Mutual labels:  devops, devsecops
Terrascan
Detect compliance and security violations across Infrastructure as Code to mitigate risk before provisioning cloud native infrastructure.
Stars: ✭ 2,687 (+2508.74%)
Mutual labels:  devops, devsecops
My Links
Knowledge seeks no man
Stars: ✭ 311 (+201.94%)
Mutual labels:  devops, devsecops
Devsecops
🔱 Collection and Roadmap for everyone who wants DevSecOps.
Stars: ✭ 171 (+66.02%)
Mutual labels:  devops, devsecops
Awesome Devsecops
Curating the best DevSecOps resources and tooling.
Stars: ✭ 188 (+82.52%)
Mutual labels:  devops, devsecops
Archerysec
Centralize Vulnerability Assessment and Management for DevSecOps Team
Stars: ✭ 1,802 (+1649.51%)
Mutual labels:  devops, devsecops
Faraday
Faraday introduces a new concept - IPE (Integrated Penetration-Test Environment) a multiuser Penetration test IDE. Designed for distributing, indexing, and analyzing the data generated during a security audit.
Stars: ✭ 3,198 (+3004.85%)
Mutual labels:  devops, devsecops
Gg Shield Action
GitGuardian Shield GitHub Action - Find exposed credentials in your commits
Stars: ✭ 248 (+140.78%)
Mutual labels:  devops, devsecops
Sbt Dependency Check
SBT Plugin for OWASP DependencyCheck. Monitor your dependencies and report if there are any publicly known vulnerabilities (e.g. CVEs). 🌈
Stars: ✭ 187 (+81.55%)
Mutual labels:  devops, devsecops
Kube Scan
kube-scan: Octarine k8s cluster risk assessment tool
Stars: ✭ 566 (+449.51%)
Mutual labels:  devops, devsecops
Awesome Devsecops
An authoritative list of awesome devsecops tools with the help from community experiments and contributions.
Stars: ✭ 2,805 (+2623.3%)
Mutual labels:  devops, devsecops
Threatmapper
Identify vulnerabilities in running containers, images, hosts and repositories
Stars: ✭ 361 (+250.49%)
Mutual labels:  devops, devsecops
Holisticinfosec For Webdevelopers Fascicle0
📚 Overview 🔒 Tooling 🔒 Process 🔒 Physical 🔒 People 📚
Stars: ✭ 37 (-64.08%)
Mutual labels:  devops, devsecops
Libreselery
Continuous distribution of funding to your project contributors and dependencies. Integrated into GitHub Actions
Stars: ✭ 92 (-10.68%)
Mutual labels:  devops
Flyway Sbt
Flyway SBT plugin
Stars: ✭ 101 (-1.94%)
Mutual labels:  devops
Ansible Interactive Tutorial
Interactive Ansible tutorials with dead simple setup via Docker
Stars: ✭ 1,309 (+1170.87%)
Mutual labels:  devops
Hoarder
A simple, api-driven storage system for storing code builds and cached libraries for cloud-based deployment services.
Stars: ✭ 91 (-11.65%)
Mutual labels:  devops
Docker Bootstrap Collection
Docker bootstrap templates to deliver applications faster
Stars: ✭ 102 (-0.97%)
Mutual labels:  devops

DevSecOps

Welcome to the DevSecOps initiative and software repositories. These repositories are meant to help build a community around DevOps + Security experimentation and lessons intended to help scale and deliver Rugged software. This is the primary repository to help with understanding the mission and getting involved. This is an actively evolving project and is intended to change over time.

This DevSecOps repository has been created to help security practitioners to understand DevSecOps, how to operate, and how to contribute to this effort.

#What is DevSecOps?

In summary, DevSecOps is a Rugged experiment intended to help us understand how to operate and scale Security to support DevOps. Several years ago, many of us realized that Josh Corman was right: "This is the end of Security as we know it." And to ensure the continued safety of the software developed via DevOps, we decided to lean in to experiment and learn what was required to scale security decisions and speed up security feedback for DevOps teams.

You can find more details here: What is DevSecOps? and also by reading the LinkedIn post first introduced on the DevSecOps web site.

Note that the project description data, including the texts, logos, images, and/or trademarks, for each open source project belongs to its rightful owner. If you wish to add or remove any projects, please contact us at [email protected].