Publication in conference proceedings Q3
DevSecOps metrics
Luís Prates (Prates, L.); João Faustino (Faustino, J,); Miguel Ângelo Silva (Silva, M.); Rúben Pereira (Pereira, R.);
Information Systems: Research, Development, Applications, Education. Lecture Notes in Business Information Processing
Year (definitive publication)
2019
Language
English
Country
Switzerland
More Information
Web of Science®

Times Cited: 36

(Last checked: 2025-12-13 15:02)

View record in Web of Science®

Scopus

Times Cited: 38

(Last checked: 2025-12-08 01:37)

View record in Scopus


: 6.1
Google Scholar

Times Cited: 76

(Last checked: 2025-12-13 06:14)

View record in Google Scholar

This publication is not indexed in Overton

Abstract
DevSecOps is an emerging paradigm that breaks the Security Team Silo into the DevOps Methodology and adds security practices to the Software Development Cycle (SDL). Security practices in SDL are important to avoid data breaches, guarantee compliance with the law and is an obligation to protect customers data. This study aims to identify metrics teams can use to measure the effectiveness of DevSecOps methodology implementation inside organizations. To that end, we performed a Multivocal Literature Review (MLR), where we reviewed a selection of grey literature. Several metrics purposed by professionals to monitor DevSecOps were identified and listed.
Acknowledgements
--
Keywords
DevOps,DevSecOps,DevSecOps metrics,SecDevOps,Multivocal literature review
  • Mathematics - Natural Sciences
  • Computer and Information Sciences - Natural Sciences
  • Civil Engineering - Engineering and Technology
  • Economics and Business - Social Sciences
Funding Records
Funding Reference Funding Entity
UID/Multi/04466/2019 Fundação para a Ciência e a Tecnologia