Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

YouTube

Make Me a Sandwich: Automating a Custom SecDevOps Pipeline

OWASP Foundation via YouTube

Overview

Explore a comprehensive conference talk on automating a custom SecDevOps pipeline, presented by Patrick Albert and Tony Trummer at APPSEC CA 2017. Delve into the challenges of finding vulnerabilities and learn about server-side hooks, webhooks, and build servers. Discover strategies for configuring Github Auth, polling, and build step actions. Examine integration point issues and SDLC Automation Integration points. Gain insights into building your own tools, including SAST tools, and understanding grammars. Explore improvement strategies for automation in security development operations. This 46-minute presentation, hosted by the OWASP Foundation, offers valuable knowledge for security professionals and developers looking to enhance their SecDevOps practices.

Syllabus

Intro
Premise
Cost of finding vulnerabilities
Server-side hooks
Webhooks
Build servers
Configuring Github Auth
Configuring polling
Objectives
Build Steps actions
Considerations
Integration point issues
SDLC Automation Integration points
Building your own tools
Building your own SAST Tool
What's a grammar?
Improving automation
Strategies

Taught by

OWASP Foundation

Reviews

Start your review of Make Me a Sandwich: Automating a Custom SecDevOps Pipeline

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.