Exportar Publicação
A publicação pode ser exportada nos seguintes formatos: referência da APA (American Psychological Association), referência do IEEE (Institute of Electrical and Electronics Engineers), BibTeX e RIS.
Prates, L. & Pereira, R. (2025). DevSecOps practices and tools. International Journal of Information Security. 24 (1)
L. Prates and R. F. Pereira, "DevSecOps practices and tools", in Int. Journal of Information Security, vol. 24, no. 1, 2025
@article{prates2025_1732934929578, author = "Prates, L. and Pereira, R.", title = "DevSecOps practices and tools", journal = "International Journal of Information Security", year = "2025", volume = "24", number = "1", doi = "10.1007/s10207-024-00914-z", url = "https://link.springer.com/journal/10207" }
TY - JOUR TI - DevSecOps practices and tools T2 - International Journal of Information Security VL - 24 IS - 1 AU - Prates, L. AU - Pereira, R. PY - 2025 SN - 1615-5262 DO - 10.1007/s10207-024-00914-z UR - https://link.springer.com/journal/10207 AB - Nowadays, software development happens at a fast pace. At the same time, Information Technology organizations face higher demands and competition while struggling with external threats such as cyberattacks. Therefore, many organizations adopt DevOps as a working culture to improve their Software Development Lifecycle (SDL). However, the success of DevOps adoption remains inconsistent, and recently, IEEE introduced a DevOps standard that might help improve DevOps adoption. The standard mentions DevSecOps as the security aspect of DevOps, adding security practices to the SDL from inception, but what are these practices or capabilities? Which tools can be used to implement these practices? Therefore, a Multivocal Literature Review was performed to identify DevSecOps practices and their definitions, and which tools can be used to implement them. ER -