Ciência_Iscte
Publications
Publication Detailed Description
Information Systems: Research, Development, Applications, Education. Lecture Notes in Business Information Processing
Year (definitive publication)
2019
Language
English
Country
Switzerland
More Information
Web of Science®
Scopus
Google Scholar
This publication is not indexed in Overton
Abstract
DevSecOps is an emerging paradigm that breaks the Security Team Silo into the DevOps Methodology and adds security practices to the Software Development Cycle (SDL). Security practices in SDL are important to avoid data breaches, guarantee compliance with the law and is an obligation to protect customers data. This study aims to identify metrics teams can use to measure the effectiveness of DevSecOps methodology implementation inside organizations. To that end, we performed a Multivocal Literature Review (MLR), where we reviewed a selection of grey literature. Several metrics purposed by professionals to monitor DevSecOps were identified and listed.
Acknowledgements
--
Keywords
DevOps,DevSecOps,DevSecOps metrics,SecDevOps,Multivocal literature review
Fields of Science and Technology Classification
- Mathematics - Natural Sciences
- Computer and Information Sciences - Natural Sciences
- Civil Engineering - Engineering and Technology
- Economics and Business - Social Sciences
Funding Records
| Funding Reference | Funding Entity |
|---|---|
| UID/Multi/04466/2019 | Fundação para a Ciência e a Tecnologia |
Português