References

  1. What Is Devsecops? - Developer Security Operations Explained - AWS, aws.amazon.com/what-is/devsecops/. Accessed 7 Feb. 2024.
  2. “What Is DevSecOps?” IBM, www.ibm.com/topics/devsecops. Accessed 6 Feb. 2024.
  3. “What Is DevSecOps and How Does It Work?” Synopsys, www.synopsys.com/glossary/what-is-devsecops.html. Accessed 6 Feb. 2024.
  4. “What Is Ci/CD?” Red Hat - We Make Open Source Technologies for the Enterprise, www.redhat.com/en/topics/devops/what-is-ci-cd. Accessed 6 Feb. 2024.
  5. “What Is Ci/CD?” GitLab, GitLab, 13 Apr. 2023, about.gitlab.com/topics/ci-cd/.
  6. Atlassian. “Continuous Integration vs. Delivery vs. Deployment.” Atlassian, www.atlassian.com/continuous-delivery/principles/continuous-integration-vs-delivery-vs-deployment. Accessed 6 Feb. 2024.
  7. Chkadmin. “Why DevSecOps Is Important for Every Development Project.” Check Point Software, Check Point Software, 13 Sept. 2022, www.checkpoint.com/cyber-hub/cloud-security/devsecops/why-devsecops-is-important-for-every-development-project/.
  8. “What Are the Benefits of CI/CD?: Teamcity CI/CD Guide.” JetBrains, www.jetbrains.com/teamcity/ci-cd-guide/benefits-of-ci-cd/. Accessed 6 Feb. 2024.
  9. Zorabedian, John, et al. “Veracode Survey Research Identifies Cybersecurity Skills Gap Causes and Cures.” Veracode, www.veracode.com/blog/security-news/veracode-survey-research-identifies-cybersecurity-skills-gap-causes-and-cures. Accessed 6 Feb. 2024.
  10. Cohen, Lior, et al. “Filling the Skills Gap for Effective Devsecops.” DevOps.Com, 24 Apr. 2020, devops.com/filling-the-skills-gap-for-effective-devsecops/.
  11. “Addressing the DEVSECOPS Skill Gap.” We45 Blogs, www.we45.com/post/addressing-the-devsecops-skill-gap. Accessed 6 Feb. 2024.
  12. Wylie Wong “To Optimize Cloud Deployments, Close the Skills Gap.” Technology Solutions That Drive Education, 26 June 2023, edtechmagazine.com/higher/article/2019/04/optimize-cloud-deployments-close-skills-gap-perfcon.
  13. “What is DevSecOps?” Red Hat, https://www.redhat.com/en/topics/devops/what-is-devsecops. Accessed 8 Apr. 2024.
  14. “What is DevSecOps?” Microsoft, https://www.microsoft.com/en-us/security/business/security-101/what-is-devsecops. Accessed 8 Apr. 2024.
  15. “Use containers to Build, Share and Run your applications” Docker, https://www.docker.com/resources/what-container/. Accessed 8 Apr. 2024.
  16. “Shift left vs. shift right” Red Hat, https://www.redhat.com/en/topics/devops/shift-left-vs-shift-right. Accessed 8 Apr. 2024.
  17. “What is CI/CD security?” Red Hat, https://www.redhat.com/en/topics/security/what-is-cicd-security#:~:text=CI%2FCD%20security%20is%20used,policies%2C%20and%20ensure%20quality%20assurance.. Accessed 9 Apr. 2024.
  18. “Security in every stage of CI/CD pipeline” AWS, https://docs.aws.amazon.com/whitepapers/latest/practicing-continuous-integration-continuous-delivery/security-in-every-stage-of-cicd-pipeline.html. Accessed 9 Apr. 2024.
  19. “SAST, DAST, and IAST Security Testing” Contrast Security, https://www.contrastsecurity.com/security-influencers/why-the-difference-between-sast-dast-and-iast-matters. Accessed 9 Apr. 2024.
  20. “How to use the Jenkins Security Scan ” Jenkins, https://www.jenkins.io/doc/developer/security/scan/. Accessed 9 Apr. 2024.
  21. “SonarQube” SonarQube, https://www.sonarsource.com/products/sonarqube/. Accessed 9 Apr. 2024.
  22. “Snyk Open Source” Snyk, https://snyk.io/product/open-source-security-management/?utm_medium=paid-search&utm_source=google&utm_campaign=gs_sn:-brand-ecpc&utm_content=br_sca&utm_term=snyk%20sca&gad_source=1&gclid=Cj0KCQjwztOwBhD7ARIsAPDKnkBbO4ZOhhLOMFnW3niLxxHAljuqKD8iOqe82_KTv9t4CDljRWacTd8aAlTxEALw_wcB. Accessed 9 Apr. 2024.
  23. “Vulnerability Scanner Tools” Veracode, https://www.veracode.com/security/vulnerability-scanning-tools. Accessed 9 Apr. 2024.
  24. “What is Fortify and How it works? An Overview and Its Use Cases” DevOps School, https://www.devopsschool.com/blog/what-is-fortify-and-how-it-works-an-overview-and-its-use-cases/. Accessed 9 Apr. 2024.
  25. “What is Containerization?” AWS, https://aws.amazon.com/what-is/containerization/#:~:text=Containerization%20involves%20building%20self%2Dsufficient,to%20run%20a%20containerized%20application. Accessed 20 Feb. 2024.
  26. “What is containerization? Overview, definition, benefits, and tools”, Log Rocket, https://blog.logrocket.com/product-management/what-is-containerization-definition-benefits-tools/. Accessed 20 Feb. 2024.
  27. “What is containerization?”, Red Hat, https://www.redhat.com/en/topics/cloud-native-apps/what-is-containerization. Accessed 20 Feb. 2024.
  28. “Decoding the Difference: Artifacts vs Packages in Software Development”, cloudsmith, https://cloudsmith.com/blog/artifacts-vs-packages-what-is-the-difference. Accessed 20 Feb. 2024.
  29. “Azure Container Registry between Artifactory: Exploring the Differences”, LevInfo, https://ievinfo.com/azure-container-registry-between-artifactory-differenc/. Accessed 20 Feb. 2024.