Intrust Expert Discusses the Latest in DevSecOps

Developers and Security

Companies that develop software but don’t bake security in during development do so at their own peril, says Intrust’s Dave Hatter in a recent TechTarget article. Moving from DevOps to DevSecOps is going to require fundamental shifts in both thinking and operations. Some finesse is required to help developers and security practitioners work well together, Hatter said.

“As an application developer, I usually saw the security team as a giant impediment slowing me down, reducing my productivity and coming up with, what seemed to me at the time, ridiculous controls,” Hatter said in the article.

DevSecOps Struggle Is Real

The article points to challenges DevSecOps face, including collaboration, role definition and the lack of skilled workers in this field.

But, Hatter is optimistic. “There is enormous opportunity here to see huge productivity gains, as well as massive improvements in the security and quality of code,” he said.

In the DevSecOps model, security practitioners are involved from the design stage onward. This is as opposed to trying to make an application secure after its functionality is set. Proponents feel this leads to safer software across the board because continuous testing and improvement counterbalance emerging threats.

However, a DevSecOps shop is rarely built in a day. A recent survey by Enterprise Strategy Group found that, while 55% of IT and cybersecurity professionals said they have incorporated some degree of security into DevOps workflows. But, just 33% reported involving security teams from a new project’s inception.

To execute a successful, meaningful shift to DevSecOps, security leaders and practitioners must consider culture, processes, tools and skill sets.

At Intrust-IT, our custom IT projects offerings include IT consulting on questions like when to bring in cyber security and planning in your product development.

Posted in
Intrust IT Intrustimonials

Intrust Man

Intrust Man may be small, but he is mighty smart. You can trust this clever cartoon hero to provide news you can use.

Share this Blog

Enterprise Password Management Promo Wide

Is Your Name or Birthday a Part of Your Password?

If so, you’re a part of the 59 percent of people who don’t follow proper password hygiene. More than 70 percent of passwords are used for more than one system, meaning if cybercriminals crack one, they can access a lot more accounts.

Our free Enterprise Password Management Guide will give you the best password hygiene practices to help you secure your computer and your business.

Download the Guide

Explore the Latest Trends in IT

World Backup Day - Intrust IT

World Backup Day: Protect Your Data Before It’s Too Late

Imagine waking up to find every file, photo, and document on your devices gone. There is no warning, no chance...
What's Included in Managed IT Services - Intrust IT

Your Guide: What’s Included in Managed IT Services?

Technology should empower your business, not hold it back. Yet, for many companies, managing IT systems feels like playing whack-a-mole...
Donald Trump Memecoin - Intrust IT

Donald Trump Memecoin: What you Need to Know From an IT Expert

Lately, I've been receiving many questions from people unfamiliar with cryptocurrency about Donald Trump's new memecoin, the Trump memecoin, $TRUMP....
MFA ByPass - Intrust IT

Understanding MFA Bypass Attacks

In the world of best cybersecurity practices, multi-factor authentication (MFA) is a crucial defense against cyber threats. However, as security measures evolve,...
How to Hire an IT Company - Intrust IT

How to Hire an IT Company: Top 10 Questions to Ask

Hiring a managed service provider (MSP) can feel like a daunting task. Your organization’s success and security depend on finding...
Vishing Attacks Surge - Intrust IT

Vishing Attacks Surge: What It Could Mean for Your Organization

Cybersecurity threats continue to evolve at a lightning pace, and one growing menace should be on every business leader’s radar:...