
How do I get the Sec into my DevOps
How can you integrate security into DevOps processes? In this recording, you will learn how this can be achieved with central security gateways and distributed microgateways.
With the advent of microservice architectures and DevOps processes, large centralized security gateway installations are increasingly being challenged. The need for coordination between application owners, administrators, developers and the security team leads to lost efficiency and frustration.
It would be better if security tasks were handled close to the services to be protected by means of so-called microgateways. DevOps teams could take responsibility for the security of their services from the first minute into production (Shift Left).
In this webcast recording, Stefan Dietiker and Daniel Estermann highlight technical and organizational challenges around the use of microgateways. In addition, a demo shows how microgateways can be used to protect existing services.
The following points will be highlighted:
- How can I ensure that application security is addressed at an early stage and not just before going live?
- How can I use Microgateways to integrate API and web application protection into the DevOps lifecycle?
- What are the differences between community and premium edition?
- Live demo of going live, connecting a back-end with OpenAPI specification and customizing security rules like:
- Blacklisting
- Access Control (JWT/JWKS)
- Deny Rule Basic + OpenAPI
- Use containers with simple back-end
- Schema with DSL Completion IDE (3.0)
The presenter of the show is Martin Seiler from Heise Business Services.
The recording is only available in German. Please fill out the form below to watch the recording: