CA Technologies now allows companies to integrate security into the earliest stages of development and assure security in deployment – an emerging practice known as DevSecOps. With a DevSecOps approach, integrating tools and processes that encourage better collaboration across development, operations and security teams makes security a natural part of development and operations.
According to Gartner, “The goal of DevSecOps is to improve the overall security posture by designing a set of integrated controls to deliver DevSecOps without undermining the agility and collaborative aspects of the DevOps philosophy. Simply layering standard security tools and processes onto the DevOps cycle won't work. Security checks, controls and testing need to be applied as automatically and transparently as feasible throughout the development, delivery and operation of applications.”*
The company presented new DevSecOps capabilities in the CA Automic, CA Veracode, and Continuous Delivery portfolios at the recent CA World ’17.
Supporting the continuous delivery value stream, CA Continuous Delivery Director SaaS integrates the DevOps toolchain for complete visibility into the planning and troubleshooting of development projects, with the ability to assess pipeline progress and performance. It gives DevOps teams a way to eliminate a manual process in release planning and management.
Integration with CA Veracode makes application security testing a key component of the development process by initiating checks throughout the development pipeline. Additional integration with CA Automic Application Release Automation extends faster deployment capabilities with an automated, agile back end that delivers more reliable releases of code.
“Companies that embrace DevSecOps deliver better and more-secure software because of the focus on collaboration and alignment across disciplines,” said Ayman Sayed, President and Chief Product Officer, CA Technologies. “In today’s security environment, it is critically important for security to be integrated seamlessly throughout the whole software development lifecycle.”
Explore:
*Gartner, Top 10 Strategic Technology Trends for 2017: Adaptive Security Architecture, David W. Cearley | Avivah Litan | Mike J. Walker, 21 March 2017 ID: G00319583
No comments:
Post a Comment