CHF 74.70

Mastering DevSecOps
Secure Software Delivery from Code to Cloud Inglese · Tascabile

Pubblicazione il 01.01.2027

Descrizione

Ulteriori informazioni










Modern software delivery demands more than speed. It requires security to be built into every stage of the development lifecycle. As organizations embrace cloud-native architectures, Kubernetes, Infrastructure as Code, and AI-powered development, protecting the software supply chain has become one of the most critical challenges facing engineering teams.
This book provides a practical, enterprise-focused guide to designing, implementing, and operating secure software delivery pipelines from code to cloud. Rather than treating security as a final checkpoint, this book demonstrates how security can be integrated throughout the CI/CD lifecycle using Zero-Trust principles, policy-as-code, automated security testing, software supply chain protection, and continuous compliance.
You will learn how to secure source code repositories, manage secrets, protect build pipelines, validate software artifacts, generate and verify SBOMs, harden Kubernetes workloads, and secure cloud-native deployments. The book also explores AI-driven security automation, runtime threat detection, behavioral analytics, and self-healing pipelines capable of automatically detecting, containing, and recovering from security incidents.
Drawing from real enterprise experience, practical architectures, and current industry best practices, this book equips DevOps engineers, security professionals, cloud architects, and technology leaders with the knowledge needed to build secure, scalable, and resilient software delivery platforms for modern organizations.
Whether you are beginning your DevSecOps journey or leading enterprise transformation initiatives, this book provides the architectural guidance and practical techniques needed to secure software delivery at production scale.


What You Will Learn


  • Design and build CI/CD pipelines that follow Zero-Trust principles

  • Secure source code repositories, secrets, identities, and development workflows

  • Implement SAST, DAST, SCA, SBOM generation, and artifact signing within CI/CD pipelines

  • Protect software supply chains using cryptographic verification and policy enforcement

  • Design enterprise-grade DevSecOps architectures for regulated environments.

  • Implement governance, compliance, and continuous security validation at scale


Info autore










Avdhesh Kumar Bhardwaj is a Vice President and DevSecOps Engineering Leader at Truist Bank, where he leads enterprise-scale initiatives focused on secure software delivery, cloud-native security, and Zero-Trust CI/CD architectures. With more than 20 years of experience in DevOps, cybersecurity, cloud engineering, and automation, he specializes in building secure, scalable, and compliant software delivery platforms for highly regulated industries, including financial services.
His expertise includes DevSecOps, Kubernetes security, software supply chain security, runtime threat detection, Infrastructure as Code (IaC) security, SBOM validation, and AI-driven security automation. He has authored multiple peer-reviewed research papers published through IEEE and other international conferences on topics including AI-powered threat detection, Zero-Trust DevSecOps, ransomware detection, and secure software delivery.
Avdhesh serves as a reviewer, editor, and technical speaker for international conferences and journals, actively contributing to the advancement of secure software engineering practices. His work bridges academic research with real-world enterprise implementation, helping organizations build resilient, secure, and intelligent software delivery ecosystems.


Riassunto


Modern software delivery demands more than speed. It requires security to be built into every stage of the development lifecycle. As organizations embrace cloud-native architectures, Kubernetes, Infrastructure as Code, and AI-powered development, protecting the software supply chain has become one of the most critical challenges facing engineering teams.


This book provides a practical, enterprise-focused guide to designing, implementing, and operating secure software delivery pipelines from code to cloud. Rather than treating security as a final checkpoint, this book demonstrates how security can be integrated throughout the CI/CD lifecycle using Zero-Trust principles, policy-as-code, automated security testing, software supply chain protection, and continuous compliance.


You will learn how to secure source code repositories, manage secrets, protect build pipelines, validate software artifacts, generate and verify SBOMs, harden Kubernetes workloads, and secure cloud-native deployments. The book also explores AI-driven security automation, runtime threat detection, behavioral analytics, and self-healing pipelines capable of automatically detecting, containing, and recovering from security incidents.


Drawing from real enterprise experience, practical architectures, and current industry best practices, this book equips DevOps engineers, security professionals, cloud architects, and technology leaders with the knowledge needed to build secure, scalable, and resilient software delivery platforms for modern organizations.


Whether you are beginning your DevSecOps journey or leading enterprise transformation initiatives, this book provides the architectural guidance and practical techniques needed to secure software delivery at production scale.

What You Will Learn

  • Design and build CI/CD pipelines that follow Zero-Trust principles
  • Secure source code repositories, secrets, identities, and development workflows
  • Implement SAST, DAST, SCA, SBOM generation, and artifact signing within CI/CD pipelines
  • Protect software supply chains using cryptographic verification and policy enforcement
  • Design enterprise-grade DevSecOps architectures for regulated environments.
  • Implement governance, compliance, and continuous security validation at scale
Who This Book is For
Sr. DevOps Engineers, Cloud & Platform Engineers, Security Engineers, DevSecOps Architects, Security Architects, CISOs & Security Managers, Compliance & Governance Architects

Dettagli sul prodotto

Autori Avdhesh Bhardwaj
Editore Springer, Berlin
 
Contenuto Libro
Forma del prodotto Tascabile
Data pubblicazione 01.01.2027
Categoria Scienze naturali, medicina, informatica, tecnica > Informatica, EDP > Informatica
 
EAN 9798868832277
ISBN 9798868832277
Numero di pagine 233
Illustrazioni V, 233 p. 48 illus., 46 illus. in color.
Dimensioni (della confezione) 17.8 x 25.4 cm
 
Categorie Open Source, Cloud Computing, Kubernetes, DevSecOps, AI in Cybersecurity, Kubernetes security, Zero-trust architecture, Policy as code, cloud security automation, Self-Healing Infrastructure, Secure CI / CD, software supply chain security
 

Recensioni dei clienti

Per questo articolo non c'è ancora nessuna recensione. Scrivi la prima recensione e aiuta gli altri utenti a scegliere.

Scrivi una recensione

Top o flop? Scrivi la tua recensione.

Per i messaggi a CeDe.ch si prega di utilizzare il modulo di contatto.

I campi contrassegnati da * sono obbligatori.

Inviando questo modulo si accetta la nostra dichiarazione protezione dati.