Challenges and solutions when adopting DevSecOps: A systematic review

RN Rajapakse, M Zahedi, MA Babar, H Shen - Information and software …, 2022 - Elsevier
Abstract Context: DevOps (Development and Operations) has become one of the fastest-
growing software development paradigms in the industry. However, this trend has presented …

Human factors in cybersecurity: A sco** review

T Rahman, R Rohan, D Pal… - Proceedings of the 12th …, 2021 - dl.acm.org
Humans are often considered to be the weakest link in the cybersecurity chain. However,
traditionally the Computer Science (CS) researchers have investigated the technical aspects …

[HTML][HTML] Toward successful DevSecOps in software development organizations: A decision-making framework

MA Akbar, K Smolander, S Mahmood… - Information and Software …, 2022 - Elsevier
Abstract Context Development and Operations (DevOps) is a methodology that aims to
establish collaboration between programmers and operators to automate the continuous …

[PDF][PDF] The emergence and importance of DevSecOps: Integrating and reviewing security practices within the DevOps pipeline

OO Abiona, OJ Oladapo, OT Modupe… - World Journal of …, 2024 - researchgate.net
The emergence of DevSecOps marks a significant paradigm shift in software development,
focusing on integrating security practices seamlessly into the DevOps pipeline. This paper …

Ai for devsecops: A landscape and future opportunities

M Fu, J Pasuksmit, C Tantithamthavorn - ACM Transactions on Software …, 2024 - dl.acm.org
DevOps has emerged as one of the most rapidly evolving software development paradigms.
With the growing concerns surrounding security in software systems, the DevSecOps …

[HTML][HTML] Identifying the primary dimensions of DevSecOps: A multi-vocal literature review

X Zhao, T Clear, R Lal - Journal of Systems and Software, 2024 - Elsevier
Context: Security as a key non-functional requirement of software development is often
ignored and devalued in DevOps programs, with security seen as an inhibitor to high …

[HTML][HTML] Secure software development and testing: A model-based methodology

V Casola, A De Benedictis, C Mazzocca… - Computers & Security, 2024 - Elsevier
Modern industries widely rely upon software and IT services, in a context where cybercrime
is rapidly spreading in more and more sectors. Unfortunately, despite greater general …

Characterizing the security of github {CI} workflows

I Koishybayev, A Nahapetyan, R Zachariah… - 31st USENIX Security …, 2022 - usenix.org
Continuous integration and deployment (CI/CD) has revolutionized software development
and maintenance. Commercial CI/CD platforms provide services for specifying and running …

Revisit security in the era of DevOps: An evidence‐based inquiry into DevSecOps industry

X Zhou, R Mao, H Zhang, Q Dai, H Huang… - IET …, 2023 - Wiley Online Library
By adopting agile and lean practices, DevOps aims to achieve rapid value delivery by
speeding up development and deployment cycles, which however lead to more security …