Appendix CDevSecOps in AWS

The DevSecOps practice is not yet covered by AWS security certification, but we believe it is essential to define the concept, introduce the AWS family of services that implement DevOps practices, and demonstrate in a practical way how security controls can be implemented in an automated pipeline.

Introduction

This appendix introduces you to the principles of DevSecOps and shows you how to implement a continuous integration and continuous deployment (CI/CD) process using security best practices. It will present a practical example of how to create an automated pipeline using AWS Developer Tools services (and some third-party tools) in order to illustrate such concepts.

A CI/CD pipeline helps you automate software ...

Get AWS Certified Security Study Guide now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.