- Course
- Core Tech
Enabling Security Governance and Compliance in DevSecOps
This course will teach you the importance of strong Security Governance and Compliance. Learn to leverage DevSecOps pipelines for automatic compliance using “Compliance as Code," a critical part of modern cloud strategy to demonstrate Governance.
What you'll learn
In an ever-changing world security is key. Cloud environments present interesting challenges when it comes to building a strong security infrastructure. In this course, Enabling Security Governance and Compliance in DevSecOps, you’ll learn to how to achieve strong security governance and compliance using DevSecOps. First, you’ll explore why strong governance is essential for all modern environments, in particular cloud environments. Next, you’ll discover the distinction between governance and compliance, and why you need both to be successful. Then, you’ll learn how to utilize you existing DevSecOps pipelines to enable strong governance and compliance practices. Finally, you’ll learn how you can achieve automated security compliance using “Security as Code” in your pipelines. When you’re finished with this course, you’ll have the skills and knowledge of Security Governance and Compliance needed to demonstrate how your DevSecOps pipeline can support this critical requirement.
Table of contents
- Module Overview | 1m 4s
- Defining Governance and Compliance | 2m 1s
- Understanding Compliance | 2m 17s
- Is Compliance Necessary | 3m 4s
- Understanding Governance | 3m 40s
- Compliance without Governance | 1m 54s
- Scenario for Cloud Governance | 2m 57s
- Impact of Governance on DevSecOps | 2m 27s
- Real World Examples | 3m 47s
- Module Summary | 1m 44s
About the author
Richard has worked for over 20 years in various technology management roles working in card payments and regulated financial sectors. He spent several years deploying niche payment card solutions in Europe and more recently as CIO, serving the US mortgage sector. Richard specializes in IT Risk and Information Security management.