Training
Get a free hour of SANS training

Experience SANS training through course previews.

Learn More
Learning Paths
Can't find what you are looking for?

Let us help.

Contact us
Resources
Join the SANS Community

Become a member for instant access to our free resources.

Sign Up
For Organizations
Interested in developing a training plan to fit your organization’s needs?

We're here to help.

Contact Us
Talk with an expert

Rethinking the Sec in DevSecOps: Security as Code

Be a part of the solution - take the survey!

Authored bySANS Institute
SANS Institute

DevOps_June_21.png

SANS is now seeking survey-takers to participate in this year’s 2021 SANS DevSecsOps Survey, written by SANS Analyst Jim Bird and SANS DevSecOps expert Eric Johnson. This survey will close on April 6th, 2021.

>> Take the survey

Join the Survey Results Discussion

Jim Bird and Eric Johnson will explore the results of this survey in a live SANS Webcast on Monday, June 21st. Attendees are encouraged to bring questions to this discussion.

>> Register for the webcast and be among the first to receive the SANS 2021 DevSecOps Survey whitepaper

About the Survey

As IT workloads transition to the cloud, there’s a shift in how organizations develop and deliver systems—and how security must be practiced. Deploying and running production systems has become abstracted from the underlying hardware and network.

Today, the focus for both operations and security professionals is rapidly becoming centered on API calls to services, and the need to understand software development challenges in order to address information security. In short, the future of security is security as code.

This SANS survey will explore what this shift means for the modern enterprise and its security program. How will this shift affect strategic priorities, staff training and the needed investments in technology and tooling? Additionally, the survey will explore how security professionals must adapt to this new world.

Key questions will include:

  • What must they understand about software development in order to meet the demand of high-velocity delivery?
  • What are the necessary skills for architecting secure software as it is being written—and catching security vulnerabilities before production?
  • What is the impact of different cloud architectures and platforms on this effort, including risks, strengths and weaknesses?
SURVEY SAYS! Rethinking the Sec in DevSecOps: Security as Code | SANS Institute