Why Vulnerable Code Is Shipped Knowingly

Source
Advertisement


The push to develop and deploy applications faster has evolved from simply a goal for developers to a business-level priority that affects every organization’s bottom line. To meet this goal, companies have begun to de-silo development, operations, and security, moving toward a DevSecOps model to deliver increased agility and speed in the software development life cycle (SDLC).

Often lost in the chaos of this cultural shift to a “need for speed” SDLC approach is the misalignment between DevOps and security practitioners’ goals. Both teams must strive to balance their respective goals: getting new features out the door and minimizing software risk.

Advertisement