Taking a holistic approach to application security [Q&A]


Application security is becoming mainstream, and that's a good thing as it means that security testing is becoming an embedded aspect of the software development life cycle (SDLC). It also means that automated security testing tools are becoming faster, more sophisticated, and better integrated, so they're less likely to slow down developers or burden them with too many trivial findings or false positives.
But as good and necessary as AppSec testing tools are, it's not nearly enough simply to buy them and run them -- you need to buy the right ones and configure them correctly so that they help build security into your SDLC without bogging it down. It's important to implement a security strategy and a plan. It’s also important to employ developers with the skills to build trust into your software -- a concept known as 'holistic AppSec'.
Security drives DevOps platform adoption


Nearly three-quarters of respondents to a new survey have adopted -- or plan to adopt within a year -- a DevOps platform in order to meet rising industry expectations around security, compliance, toolchain consolidation, and faster software delivery.
The study from GitLab shows security has overtaken even cloud computing as the number one investment area across DevOps teams at global organizations.
New solution makes it easier to manage machine learning models


More than 80 percent of organizations do not have the necessary visibility and control over their machine learning models or how they're deployed throughout the ML model development lifecycle.
To deal with this problem, Iterative has built an open-source model registry solution that allows teams to easily manage models with full context around model lineage, version, production status, data used to train the model, and more.
Process discovery is the secret ingredient to better DevOps


The most overlooked step in any modernization process is process discovery. Corners get cut to conserve time and resources which, often limits the business impact of modernization efforts ultimately resulting in limited productivity improvements.
Process discovery is the key to fine-tuning modernization projects, including testing and deployment, to drive the most value from both the application itself and the work to modernize it. It enables visibility across application workflows -- including exceptions -- allowing organizations to prioritize modernizing the tasks that are most frequent and time-consuming. This extends into DevOps testing.
How improved automation across DevOps can accelerate digital transformation


There’s no doubt the DevOps model is revolutionizing the IT industry by bridging the gap between developers and operations teams. The benefits of automating manual tasks and removing barriers are significant. From shortening development lifecycles to increasing the delivery of high-quality software, DevOps enables companies to innovate faster with lower failure rates.
However, despite the benefits, developers are only spending 39 percent of their time writing new code or improving existing code, according to research by Tidelift and The New Stack. Almost a quarter (22 percent) of their time is spent doing code maintenance and 14 percent on operational tasks and meetings.
How to harness DevOps-driven digital transformation to fuel your organization's success


Around the globe, digital transformation is the new normal. While projects were implemented in isolated pockets before the pandemic, it’s now a business-critical, enterprise-wide drive. The advent of COVID-19 saw most organizations accelerate their transformation roadmap by months or years. This streamlined operations, created new revenue, and enhanced customer experiences during a time of unprecedented disruption.
According to Deloitte, two-fifths (40 percent) of consumers did more online shopping during lockdown, 14 percent participated in more remote medical appointments, and a third streamed more content. The past 12 months have demonstrated that these habits are here to stay. As the world moves into a new state of 'normality', organizations across every industry are focusing on how they can transform even faster to meet customers' redefined expectations and carve out an advantage in a fiercely competitive, increasingly digital world.
Get 'Modern DevOps Practices' ($35.99 value) FREE for a limited time


Containers have entirely changed how developers and end-users see applications as a whole. With Modern DevOps Practices, you'll learn all about containers, their architecture and benefits, and how to implement them within your development lifecycle.
You'll discover how you can transition from the traditional world of virtual machines and adopt modern ways of using DevOps to ship a package of software continuously. Starting with a quick refresher on the core concepts of containers, you'll move on to study the architectural concepts to implement modern ways of application development.
How artificial intelligence and machine learning are changing the development landscape [Q&A]


It's an increasingly rare application these days that doesn’t claim to incorporate some form of artificial intelligence or machine learning capability.
But while this may be great from a marketing standpoint it does pose a challenge for developers. We spoke to Luis Ceze, CEO and co-founder of OctoML, to find out more.
82 percent of CIOs believe their software supply chains are vulnerable


A new global study of 1,000 CIOs finds that 82 percent say their organizations are vulnerable to cyberattacks targeting software supply chains.
The research from machine identity specialist Venafi suggests the shift to cloud native development, along with the increased speed brought about by the adoption of DevOps processes, has made the challenges connected with securing software supply chains infinitely more complex.
The challenge of shifting left: Why AIOps is essential


Development teams are being forced to 'shift left'-- under pressure from the business to move more and more work closer to the design and development phase, earlier in the process.
The idea is to catch bugs earlier, before they turn into costly production outages, and should improve efficiency while minimizing risk within the software development cycle. Yet this demand puts even more pressure and responsibility on developers.
The challenge of guarding against supply chain attacks [Q&A]

Turn data into knowledge to accelerate innovation


Blackberry, Nokia, Blockbuster and Kodak: these are just some of the once-successful companies that failed because they failed to innovate. In our digital world, the difference between sinking and swimming often rests on a business’s ability to provide continuous digital innovations to its customers.
But consumer demands for new technologies and experiences also come with a stipulation: the availability of digital instant gratification must remain uninterrupted. After all, our digital economy doesn’t have normal business hours. It’s always running, and consumers expect to digitally access, interact and purchase at their convenience, at any hour of the day. Digital apps and services must always remain on. And facing an outage or poor system performance, consumers will just switch to another company that provides a better digital experience.
More than half of DevOps professionals see their cloud provider as a threat


Over 50 percent of DevOps professionals and leaders say their cloud service provider is already a competitive threat to their B2B or B2C business or is expected to become one according to new research.
The study, carried out for cloud provider Linode, by Techstrong Research surveyed over 500 development professionals, managers and senior managers across 20 industries, and finds 75 percent say that their IT infrastructure will be cloud-based by the end of this year.
Get 'DevOps Adoption Strategies' ($34.99 value) FREE for a limited time


DevOps is a set of best practices enabling operations and development teams to work together to produce higher-quality work and, among other things, quicker releases.
DevOps Adoption Strategies: Principles, Processes, Tools, and Trends will help you to understand the fundamentals needed to get started with DevOps, and prepare you to start deploying technical tools confidently.
How to best serve your SRE and DevOps teams


Technology is critical to driving business growth and increasing revenue in our fast-growing digital economy. But the effectiveness of a technology is often determined by its performance and reliability.
DevOps and site reliability engineering (SRE) teams are behind this continuous availability. These teams ensure the top performance of an organization’s apps and vital services, especially as IT environments grow in complexity. Avoiding incidents and outages is only one aspect of the job though.
Recent Headlines
Most Commented Stories
BetaNews, your source for breaking tech news, reviews, and in-depth reporting since 1998.
Regional iGaming Content
© 1998-2025 BetaNews, Inc. All Rights Reserved. About Us - Privacy Policy - Cookie Policy - Sitemap.