Professional Documents
Culture Documents
ECOLE IT - 5SOP - IntroductionSecOps
ECOLE IT - 5SOP - IntroductionSecOps
SecOps
Global threats
Lack of visibility
Small teams
Importance :
• IT Security : SecOps Teams have the task to implement and manage solution against security Threats,
risks and vulnerability
• Collaboration : Traditional Security teams implements some tools and procedures to face security
issues but it gives mostly some hard times to the IT operations teams and occasion failures, delays,
project interruptions and more
• Solution modeling : SecOps methodology is meant to integrate security by design in every layer of
the IT organization with the right tools and respond quickly to security issues
Security
Collaboration
Automation
DevOps description :
DevOps represents a culture and unique software development philosophy that involves specific
technical practices. DevOps makes it possible to communicate, automate, and integrate across all teams
required to develop, test, implement, and maintain a dedicated software solution
DevOps Goals :
• Create Robust and scalable infrastructure : The main goal of Devops is to develop sustainable
infrastructure for specific applications and ensure high availability and scalability.
• Faster time to market : One objective of Devops is to automate repetitive tasks like reporting and
testing to speed up the process and deploy more.
• Enable collaboration across teams : In order to automate repetitive tasks among processes. You need
a collaboration of the team in charge of those task such as development and testing deployments
Sec
Security as Code
Security Compliance Secure by design
Collaboration
Reduce cost
associated with
Continous Delivery security breaches
Context :
Preparing a meeting with your customer after the discovery of the use case. Identify why your company is implementing security, what are
the assets that needs to be protected by security, what are the mechanims in place to protect those assets, who are in charge of the security,
what are the pain point implementing security and what can be improved to leverage those pain points.
Objective :
Make a simple description of the company’s security posture, what is good, what is not good and express some potential solution
Expected :
Slides with a quick presentation(15 min) of your report
Group: 1 people
Remark : No precise technical solution is expected; the aim is to draw up a map of the elements to be protected in the processes in place,
the problems linked to these processes and the elements that can correct them.
ECOLE IT – 5SOP - Année Académique 2023-2024 – © Tous droits réservés
SecOps vs traditional security model
Traditional Security Model SecOps
www.ecole-it.com