Hands-On Security in DevOps: Ensure continuous security, deployment, and delivery with DevSecOps
暫譯: 實作DevOps安全性:透過DevSecOps確保持續安全、部署與交付
Tony Hsu
- 出版商: Packt Publishing
- 出版日期: 2018-07-30
- 售價: $2,000
- 貴賓價: 9.5 折 $1,900
- 語言: 英文
- 頁數: 356
- 裝訂: Paperback
- ISBN: 1788995503
- ISBN-13: 9781788995504
-
相關分類:
DevOps、資訊安全
海外代購書籍(需單獨結帳)
買這商品的人也買了...
-
$352低功耗藍牙開發權威指南
-
$580$458 -
$580$458 -
$300$255 -
$300$237 -
$500汽車黑客大曝光 (The Car Hacker's Handbook:A Guide for the Penetration Tester)
-
$300$255 -
$454黑客大曝光:工業控制系統安全 (Hacking Exposed Industrial Control Systems: ICS and SCADA Security Secrets & Solutions)
-
$300$255 -
$420$331 -
$680$578 -
$380$300 -
$380$300 -
$980$774 -
$1,980$1,881 -
$534$507 -
$880$695 -
$1,010CISSP 權威指南, 8/e (CISSP All-in-One Exam Guide, 8/e)
-
$690$545 -
$505DevSecOps 實戰
-
$650$507 -
$179$161
相關主題
商品描述
Protect your organization's security at all levels by introducing the latest strategies for secured DevOps
Key Features
- Integrate security at every layer of the DevOps pipeline.
- Discover security practices to protect your cloud services by detecting fraud and intrusion
- Practical solutions to infrastructure security using DevOps principles
Book Description
DevOps has brought speed and quality benefits with continuous development and deployment methods but it does not ensure entire organisation's security.
This book will show you how to adopt DevOps techniques to continuously improve your entire organisation's security at every level and not just focus on protecting your infrastructure.This book aims at combining DevOps and security to protect Cloud services. This practical guide will teach you to use techniques to integrate security directly in to your product. This book will also show you how to implement security at every layer like, web application, cloud infrastructure, communication, and delivery pipeline. With the help of practical examples this book will teach you to implement the combination of DevOps and Security. Then, this book will dive deep into teaching you core security aspects like, blocking attacks, fraud detection, Cloud forensics and incident response. Later, this book will cover topics on extending DevOps security like risk assessment, threat modelling and continuous security.
By the end of this book, you will be well-versed with implementing security in all layers of your organisation and will also learn to monitor and block attacks throughout your cloud services.
What you will learn
- Understand DevSecOps challenge, culture, organization
- Learn Security requirements, management and metrics
- Secure architecture design, threat modeling secure coding tools/practices
- Top common security issue, black/white box review tools/practices into CI pipeline
- Work with Security monitoring toolkits, and online fraud detection rules advices
- Take GDPR/PII handling as case study to walk through the whole DevSecOps lifecycle
Who This Book Is For
If you are a system administrator, security consultant or DevOps engineer who are looking at securing your entire organization then this is the book for you. Basic understanding of Cloud computing, automation frameworks and programming skills would be necessary.
商品描述(中文翻譯)
保護您組織的安全,從各個層面開始,透過引入最新的安全 DevOps 策略
主要特點
- 在 DevOps 管道的每一層整合安全性。
- 探索保護雲服務的安全實踐,通過檢測詐騙和入侵來保護。
- 使用 DevOps 原則提供基礎設施安全的實用解決方案。
書籍描述
DevOps 透過持續開發和部署方法帶來了速度和質量的好處,但並不保證整個組織的安全性。
本書將向您展示如何採用 DevOps 技術,持續改善整個組織在各個層面的安全性,而不僅僅專注於保護基礎設施。本書旨在結合 DevOps 和安全性,以保護雲服務。這本實用指南將教您如何使用技術將安全性直接整合到您的產品中。本書還將展示如何在每一層實施安全性,例如:網頁應用程式、雲基礎設施、通訊和交付管道。透過實際範例,本書將教您如何實施 DevOps 和安全性的結合。接著,本書將深入探討核心安全方面,例如:阻擋攻擊、詐騙檢測、雲取證和事件響應。之後,本書將涵蓋擴展 DevOps 安全的主題,如風險評估、威脅建模和持續安全。
在本書結束時,您將熟悉在組織的所有層面實施安全性,並學會如何監控和阻擋整個雲服務中的攻擊。
您將學到的內容
- 理解 DevSecOps 的挑戰、文化和組織
- 學習安全需求、管理和指標
- 安全架構設計、威脅建模、安全編碼工具/實踐
- 常見安全問題、黑盒/白盒審查工具/實踐整合到 CI 管道
- 使用安全監控工具包和在線詐騙檢測規則建議
- 以 GDPR/PII 處理為案例研究,走過整個 DevSecOps 生命週期
本書適合誰
如果您是系統管理員、安全顧問或 DevOps 工程師,正在尋求保護整個組織,那麼這本書就是為您而寫的。對雲計算、自動化框架和編程技能的基本理解是必要的。