DEV Community

# devsecops

Integrating security practices into the DevOps lifecycle.

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
New Year, Same Curiosity Building Better in Tech

New Year, Same Curiosity Building Better in Tech

2
Comments
1 min read
Building a DevSecOps Pipeline on AWS: From Security Audit to Daily Deployments

Building a DevSecOps Pipeline on AWS: From Security Audit to Daily Deployments

Comments
15 min read
Mapping Your Codebase to OWASP Top 10 with 247 ESLint Rules

Mapping Your Codebase to OWASP Top 10 with 247 ESLint Rules

Comments
5 min read
What is IDP and why we need it?

What is IDP and why we need it?

Comments
1 min read
Opsfolio - From Interview Task to Production: Building a Security-First DevSecOps Platform

Opsfolio - From Interview Task to Production: Building a Security-First DevSecOps Platform

Comments
5 min read
Ephemeral Vulnerability Scanner: Pure Client-Side JS for Windows/Linux/macOS Vuln Analysis

Ephemeral Vulnerability Scanner: Pure Client-Side JS for Windows/Linux/macOS Vuln Analysis

Comments
1 min read
The 100:1 Deficit: Why Your Security Team Needs an AI Multiplier

The 100:1 Deficit: Why Your Security Team Needs an AI Multiplier

Comments
5 min read
Stop Using localhost:8080 - Why Your Dev Environment Needs Production-Grade Network Security

Stop Using localhost:8080 - Why Your Dev Environment Needs Production-Grade Network Security

22
Comments
15 min read
Cuidados com volumes no Docker

Cuidados com volumes no Docker

5
Comments
1 min read
How to Prevent Backup-related Throttling Without Losing Data (or Mind)

How to Prevent Backup-related Throttling Without Losing Data (or Mind)

Comments
6 min read
Why Your UEBA Isn’t Working (and how to fix it)

Why Your UEBA Isn’t Working (and how to fix it)

1
Comments
7 min read
HashiCorp Vault: A Core Security Tool in DevSecOps

HashiCorp Vault: A Core Security Tool in DevSecOps

Comments
2 min read
Prevention-First Cloud Security: Escaping Alert Fatigue for Good using Turbot

Prevention-First Cloud Security: Escaping Alert Fatigue for Good using Turbot

5
Comments
2 min read
🚀 8 Software Trends Every Senior Developer Should Watch in 2026

🚀 8 Software Trends Every Senior Developer Should Watch in 2026

3
Comments
2 min read
Use AI to Speed Up Security Hardening (and Read This First)

Use AI to Speed Up Security Hardening (and Read This First)

Comments
1 min read
Pin It or Bin It

Pin It or Bin It

Comments
3 min read
🚀 Introducing VulnFeed - Real-Time Vulnerability Tracking for CISA & Red Hat

🚀 Introducing VulnFeed - Real-Time Vulnerability Tracking for CISA & Red Hat

1
Comments 1
1 min read
How DevSecOps Redefines QA Workflows

How DevSecOps Redefines QA Workflows

5
Comments
5 min read
DevSecOps: Modelo de madurez y alternativas de implementación

DevSecOps: Modelo de madurez y alternativas de implementación

5
Comments
10 min read
PCI DSS 4.0 Remediation 2025: 21 Battle-Tested Fixes

PCI DSS 4.0 Remediation 2025: 21 Battle-Tested Fixes

2
Comments
6 min read
How to Automate Vulnerability Scans with Trivy

How to Automate Vulnerability Scans with Trivy

75
Comments
5 min read
Automating Compliance Checks in CI/CD Pipelines with Rego

Automating Compliance Checks in CI/CD Pipelines with Rego

Comments
2 min read
EU CRA: 12-Month Dev Roadmap for SBOM & Vulnerabilities (DEV-oriented)

EU CRA: 12-Month Dev Roadmap for SBOM & Vulnerabilities (DEV-oriented)

2
Comments
7 min read
Fast Code, Fragile Security: How DevSecOps Lost Control (and How We Fix It)

Fast Code, Fragile Security: How DevSecOps Lost Control (and How We Fix It)

Comments 1
29 min read
EnvSecOps - What It Actually Is (And Why DevSecOps Won't Cut It)

EnvSecOps - What It Actually Is (And Why DevSecOps Won't Cut It)

Comments
3 min read
loading...