OWASP / DevSecOpsGuideline

The OWASP DevSecOps Guideline can help us to embedding security as a part of the development pipeline.
https://owasp.org/www-project-devsecops-guideline/
Other
826 stars 190 forks source link

Pipeline Tampering Risks & Prevention #47

Open ducthinh993 opened 2 years ago

ducthinh993 commented 2 years ago

Hi folks, As a DevSecOps practitioner for many sizes of development, there is a critical one for maintaining DevSecOps Pipeline to prevent integrity violation and DRY principle with the pipeline consuming

Abstraction Ideas:

Benefits:

I'm happy to help but not so sure which category should we put it on

Ali-Yazdani commented 2 years ago

Hi, Thanks for the great suggestion, Please create a file and start to write them down. After that, we can review them and see if it needs to reorganize.

So easy 😄

Ali-Yazdani commented 2 years ago

Dear @ducthinh993, I assigned it to you. Please feel free and start work on it. I'm looking forward to approving your Pull Request.