Intrust Expert Discusses the Latest in DevSecOps

Developers and Security

Companies that develop software but don’t bake security in during development do so at their own peril, says Intrust’s Dave Hatter in a recent TechTarget article. Moving from DevOps to DevSecOps is going to require fundamental shifts in both thinking and operations. Some finesse is required to help developers and security practitioners work well together, Hatter said.

“As an application developer, I usually saw the security team as a giant impediment slowing me down, reducing my productivity and coming up with, what seemed to me at the time, ridiculous controls,” Hatter said in the article.

DevSecOps Struggle Is Real

The article points to challenges DevSecOps face, including collaboration, role definition and the lack of skilled workers in this field.

But, Hatter is optimistic. “There is enormous opportunity here to see huge productivity gains, as well as massive improvements in the security and quality of code,” he said.

In the DevSecOps model, security practitioners are involved from the design stage onward. This is as opposed to trying to make an application secure after its functionality is set. Proponents feel this leads to safer software across the board because continuous testing and improvement counterbalance emerging threats.

However, a DevSecOps shop is rarely built in a day. A recent survey by Enterprise Strategy Group found that, while 55% of IT and cybersecurity professionals said they have incorporated some degree of security into DevOps workflows. But, just 33% reported involving security teams from a new project’s inception.

To execute a successful, meaningful shift to DevSecOps, security leaders and practitioners must consider culture, processes, tools and skill sets.

At Intrust-IT, our custom IT projects offerings include IT consulting on questions like when to bring in cyber security and planning in your product development.

Posted in
Intrust IT Intrustimonials

Intrust Man

Intrust Man may be small, but he is mighty smart. You can trust this clever cartoon hero to provide news you can use.

Share this Blog

Enterprise Password Management Promo Wide

Is Your Name or Birthday a Part of Your Password?

If so, you’re a part of the 59 percent of people who don’t follow proper password hygiene. More than 70 percent of passwords are used for more than one system, meaning if cybercriminals crack one, they can access a lot more accounts.

Our free Enterprise Password Management Guide will give you the best password hygiene practices to help you secure your computer and your business.

Download the Guide

Explore the Latest Trends in IT

How to Hire an IT Company - Intrust IT

How to Hire an IT Company: Top 10 Questions to Ask

Hiring a managed service provider (MSP) can feel like a daunting task. Your organization’s success and security depend on finding...
Vishing Attacks Surge - Intrust IT

Vishing Attacks Surge: What It Could Mean for Your Organization

Cybersecurity threats continue to evolve at a lightning pace, and one growing menace should be on every business leader’s radar:...
Information Technology Infrastructure Overview - Intrust IT

Information Technology Infrastructure Overview: Building a Resilient Digital Backbone

Information technology (IT) infrastructure is the silent powerhouse that keeps business operations moving seamlessly and efficiently. From enabling daily workflows...
Fundamentals of Information Technology Management - Intrust

IT 101: What Is Information Technology Management?

When was the last time you stopped to think about how your business relies on technology? Information technology management is...
Avoid Pig-Butchering - Intrust IT

Pig-Butchering Scams: What They Are and How to Stay Safe

At Intrust IT, we understand that it may feel like the specter of cybersecurity is always breathing down your neck....
3 Reasons to Replace Aging Equipment - Intrust IT

Three Compelling Reasons Your Company Should Replace Its Aging Computers Before Year-End

As the end of the year approaches, businesses everywhere are evaluating their budgets and looking for strategic opportunities to invest...