Open Pat-Duarte opened 3 years ago
It was discussed in the Belgium summit to consider puting this under Operations - Operational Management.
Linked to Issue #147
to merge with the main issue on this
This can be added to the Activity description for O-OM-A-2, where protection of sensitive data (which, though unstated, includes IaC files, deployment scripts, etc.), including handling and protection of backups, is covered.
The intent, when I wrote that Activity description, was to include explicit mention of needing repeatable, tested backup and restore procedures.
From DevSecOps maturity model. Add an activity to backup prior to deployment, and have the ability to rollback if required.
History from old repo: @itscooper opened this issue on Jun 5, 2019 @thomaskonrad reacted with thumbs up emoji @itscooper itscooper added the 3I2SecureDeployment label on Jun 5, 2019 @itscooper itscooper self-assigned this on Jun 5, 2019 @SebaDele assigned dkefer and unassigned itscooper on Nov 23, 2019 @SebaDele commented on Nov 23, 2019 consider as guidance