2020
DOI: 10.1109/access.2020.2998819
|View full text |Cite
|
Sign up to set email alerts
|

Prioritization Based Taxonomy of DevOps Security Challenges Using PROMETHEE

Abstract: DevOps is a combination of collaborative and multidisciplinary efforts of an organization to control continuous delivery and updates of new software while guaranteeing their reliability and correctness. In the software industry, the implementation of DevOps (development and operations units) faces many challenges that are specifically associated with the security. This study aims to develop a prioritization based taxonomy of DevOps security challenges using PROMETHEE-II approach. The total of eighteen DevOps s… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
1
1
1

Citation Types

0
12
0

Year Published

2021
2021
2024
2024

Publication Types

Select...
5
3
1

Relationship

0
9

Authors

Journals

citations
Cited by 26 publications
(12 citation statements)
references
References 76 publications
(175 reference statements)
0
12
0
Order By: Relevance
“…Thus, cyber-attacks with physical significance will be better predicted as well as accordingly mitigated [207]. S. Rafi in [208] proposed that in case the basic differences between physical and cyber aspects are not taken into account, CP solutions are commonly disregarded, and the emphasis becomes cyber-only solutions. This urges the requisite for taking into account both physical-along with cyber-aspects.…”
Section: A Common Cps Security Challengesmentioning
confidence: 99%
“…Thus, cyber-attacks with physical significance will be better predicted as well as accordingly mitigated [207]. S. Rafi in [208] proposed that in case the basic differences between physical and cyber aspects are not taken into account, CP solutions are commonly disregarded, and the emphasis becomes cyber-only solutions. This urges the requisite for taking into account both physical-along with cyber-aspects.…”
Section: A Common Cps Security Challengesmentioning
confidence: 99%
“…DevOps is the process of continuously improving software products through rapid release cycles, global automation of integration and delivery pipelines, and close collaboration between teams [81]. Securing DevOps helps organizations operate securely and protect the data their customers entrust them with.…”
Section: Devsecopsmentioning
confidence: 99%
“…Rafi et al [27] report a study that extracted the security challenges in DevOps from the literature and evaluated them using a survey. One of their conclusions is that the lack of automated testing tools is the most critical challenge to secure DevOps implementations.…”
Section: Related Work 21 Security In Devopsmentioning
confidence: 99%
“…However, with the gains in speed, practitioners are reportedly facing several challenges in delivering secure software in the De-vOps paradigm [27,28]. In the traditional software development paradigms, security practices such as Static Application Security Testing (SAST) [39], Dynamic Application Security Testing (DAST) [25] are carried out at a later stage of the cycle.…”
Section: Introductionmentioning
confidence: 99%