moj-analytical-services / user-guidance

User guidance for the MoJ Analytical Platform
https://user-guidance.services.alpha.mojanalytics.xyz
12 stars 6 forks source link

Add repo cleaning advice to the security incident guidance #197

Open MrAlecJohnson opened 2 years ago

MrAlecJohnson commented 2 years ago

The most common security incident involving Analytical Platform users is accidentally committing data to Github.

The section on security incidents could benefit from:

There's some mention of cleaning repos in the secrets section. It would be good to minimise any repetition between these sections.

Links

(though note that these aren't so easy to do on the Analytical Platform)

vonbraunbates commented 1 year ago

What different security incidents occur on the AP? How do we know? What are their frequency and risk? We should address the very frequent and the high risk in guidance first.

I can add guidance on resolving Airflow incidents.