Overview
Discover how to automate security reviews in frequent deployment environments using a Terraform-deployed application integrated into developer workflows. Learn about a plugin-based system utilizing AWS services like API Gateways, Step Functions, and Lambda functions to perform tasks such as static analysis, dependency checking, GitHub integrations, container security scanning, and secret leak detection. Explore the implementation of this serverless tool in CI/CD pipelines and gain insights on deploying complex serverless systems and step functions for automated tooling. This 40-minute LASCON conference talk provides valuable knowledge for enhancing security practices in fast-paced development environments.
Syllabus
2018 - Orchestrating Security Tools with AWS Step Functions
Taught by
LASCON