How to Create a Threat Model for Cloud Infrastructure Security

Our Motto is: Threat Modeling: The sooner the better, but never too late. — OWASP The practice of creating a threat model can help teams proactively understand and develop a strategy for managing the possible vulnerabilities their organization fa… Continue reading How to Create a Threat Model for Cloud Infrastructure Security

3 Questions to Ask When You’re Ready to Operationalize Your Security

New global data from Checkmarx reveals that 92 percent of organizations struggle to implement security into DevOps — even though they say they want to. The heart of this issue is the common misconception that security slows things down, which lea… Continue reading 3 Questions to Ask When You’re Ready to Operationalize Your Security

Security Budgeting Considerations for Containers

When it comes to managing SecOps, you must consider all the risks at hand, as well as how you can address them. Many of today’s SecOps teams are using containers for development, but this also opens organizations up to a variety of new risk facto… Continue reading Security Budgeting Considerations for Containers

How to Cope With the Security Talent Shortage in SecOps

Security budgets are rising, but are they helping with challenges caused by the security talent shortage? This post offers insights from our recent security budgeting survey and shares ideas on how to deal with the security talent shortage in SecOps. B… Continue reading How to Cope With the Security Talent Shortage in SecOps

3 SecOps Culture Hacks You Should Embrace Today

All types of organizations are embracing DevOps as a way to deliver work quickly and reliably. However, security sometimes falls by the wayside in favor of the desire to move fast. In fact, a recent Threat Stack survey shows that 52% of companies admit… Continue reading 3 SecOps Culture Hacks You Should Embrace Today

A Deep Dive Into Secrets Management

There’s a lot to think about when it comes to working with containers, Kubernetes, and secrets. You have to employ and communicate best practices around identity and access management in addition to choosing and implementing various tools. Whethe… Continue reading A Deep Dive Into Secrets Management

5 SecOps Processes to Try Today

DevOps has enabled businesses to bring products to market faster than ever before. But what about security? In our recent survey, Refocusing Security Operations in the Cloud Era, 36% of businesses said their top IT goal over the next year is to respond… Continue reading 5 SecOps Processes to Try Today

New SecOps eBook for Cloud Infrastructure – A Practitioner’s Guide for Security & Ops Teams

— Shifting From DevOps to SecOps — Organizations of all sizes have embraced DevOps as a way to deliver work quickly and reliably — but security has often fallen by the wayside in the quest for speed. In a recent survey, 85% of respond… Continue reading New SecOps eBook for Cloud Infrastructure – A Practitioner’s Guide for Security & Ops Teams