Published January 1, 2024 | Version v1
Journal article Open

An Evaluation Of DevSecOps In Modern Software Development

Authors/Creators

Description

DevSecOps has emerged as a critical evolution of the DevOps paradigm, integrating security practices seamlessly into every phase of the software development lifecycle. This study presents a comprehensive evaluation of DevSecOps in modern software development, emphasizing its role in enabling faster, more secure, and reliable software delivery. By embedding security controls into continuous integration and continuous deployment (CI/CD) pipelines, DevSecOps ensures that vulnerabilities are identified and mitigated early in the development process. The paper examines key components such as automated security testing, infrastructure as code (IaC) security, container security, and continuous monitoring. It also explores how organizations leverage DevSecOps to achieve compliance, reduce risk, and enhance collaboration between development, operations, and security teams. Real-world use cases and industry practices are analyzed to highlight the effectiveness of DevSecOps in addressing evolving cyber threats. Furthermore, the study discusses challenges such as cultural resistance, toolchain complexity, and skill gaps, along with strategies to overcome them. The findings suggest that DevSecOps is essential for building resilient, secure, and scalable software systems in today's fast-paced digital environment.

Files

IJSRET_V10_issue4_369.pdf

Files (253.4 kB)

Name Size Download all
md5:cb049e38d40502de03bb478ce76264f8
253.4 kB Preview Download

Additional details