Agile Application Security
Enabling Security in a Continuous Delivery Pipeline
Paperback Engels 2017 1e druk 9781491938843Samenvatting
Agile continues to be the most adopted software development methodology among organizations worldwide, but it generally hasn't integrated well with traditional security management techniques. And most security professionals aren’t up to speed in their understanding and experience of agile development. To help bridge the divide between these two worlds, this practical guide introduces several security tools and techniques adapted specifically to integrate with agile development.
Written by security experts and agile veterans, this book begins by introducing security principles to agile practitioners, and agile principles to security practitioners. The authors also reveal problems they encountered in their own experiences with agile security, and how they worked to solve them.
You’ll learn how to:
- Add security practices to each stage of your existing development lifecycle
- Integrate security with planning, requirements, design, and at the code level
- Include security testing as part of your team’s effort to deliver working software in each release
- Implement regulatory compliance in an agile or DevOps environment
- Build an effective security program through a culture of empathy, openness, transparency, and collaboration
Specificaties
Lezersrecensies
Inhoudsopgave
1. Getting started with security
2. Agile enablers
3. Welcome to the Agile revolution
4. Working with your existing Agile Life Cycle
5. Security and requirements
6. Agile vulnerability management
7. Risk for Agile teams
8. Threat assessment and understanding attacks
9. Building secure and usable systems
10. Code review for security
11. Agile security testing
12. External reviews, testing, and advice
13. Operations and OpSec
14. compliance
15. Security Culture
16. What does Agile security mean?
Index
Rubrieken
- advisering
- algemeen management
- coaching en trainen
- communicatie en media
- economie
- financieel management
- inkoop en logistiek
- internet en social media
- it-management / ict
- juridisch
- leiderschap
- marketing
- mens en maatschappij
- non-profit
- ondernemen
- organisatiekunde
- personal finance
- personeelsmanagement
- persoonlijke effectiviteit
- projectmanagement
- psychologie
- reclame en verkoop
- strategisch management
- verandermanagement
- werk en loopbaan