#devopsdays
DevOps Finishes What Agile Started

Plan

Code

Build

Test

Release

Deploy

Operate

DevOps	
  
VALUE	
  
Agile	
  

#de...
The Component Revolution

8,000

7,000

Requests in Millions

6,000

5,000

4,000

3,000

2,000

8 Billion

1,000

Request...
Applying Supply Chain Concepts to Software Development

#devopsdays
Poorly Managed Components Puts Organizations At Risk

Security

Licensing

Business
Risk

Quality Issues

#devopsdays
Struts Widespread Compromise: CVE-2013-2251

Global	
  Bank	
  
So+ware	
  Provider	
  
So+ware	
  Provider’s	
  Customer	...
Organizations Can’t Keep Pace

Complexity

Diversity

Volume

Change

One component may
rely on 00s
of others

40,000 Proj...
What’s this
got to do with
DevOps?

Components are used to build applications.
Agile Development is factored into how
DevO...
Release Management is Key to DevOps Success

#devopsdays
Flaws That Filter Through to Production Can Cripple You

#devopsdays
Policies

#devopsdays
Automated Policies are Necessary to Keep Up

#devopsdays
Guide Developers With Component Intelligence in Their IDE

#devopsdays
Support the Build/CI/CD Process With Integrated Intelligence

#devopsdays
Shifting Activity Left Eliminates Downstream Impact

It’s More Than Shifting the Testing Effort
Prevent Problems from the ...
“Prevention is the
Ultimate Form
of Shifting Left”
Curtis Yanko
Architecture Manager – Application
Development & Delivery ...
DevOps : A Natural Way to Assimilate Other Disciplines

Respect & Trust

CULTURE
Shared Information

#devopsdays

Problem ...
Add “Sec” to DevOps

DEV

SECURITY

OPS

QUALITY

#devopsdays
Overwhelmed? Consider these Questions

Can we build an accurate inventory of our
open source application components?

What...
Let Me Know if You Need Help!

If you want advice on how to get started, please
talk to me during DevOpsDays, or contact m...
Upcoming SlideShare
Loading in...5
×

Dev ops finishes what agile started - Manfred Moser

602

Published on

Published in: Technology, Education
0 Comments
2 Likes
Statistics
Notes
  • Be the first to comment

No Downloads
Views
Total Views
602
On Slideshare
0
From Embeds
0
Number of Embeds
0
Actions
Shares
0
Downloads
7
Comments
0
Likes
2
Embeds 0
No embeds

No notes for slide

Dev ops finishes what agile started - Manfred Moser

  1. 1. #devopsdays
  2. 2. DevOps Finishes What Agile Started Plan Code Build Test Release Deploy Operate DevOps   VALUE   Agile   #devopsdays
  3. 3. The Component Revolution 8,000 7,000 Requests in Millions 6,000 5,000 4,000 3,000 2,000 8 Billion 1,000 Requests in 2012 2001 #devopsdays 2002 2003 2004 2005 2006 2007 2008 2009 2010 2011 2012
  4. 4. Applying Supply Chain Concepts to Software Development #devopsdays
  5. 5. Poorly Managed Components Puts Organizations At Risk Security Licensing Business Risk Quality Issues #devopsdays
  6. 6. Struts Widespread Compromise: CVE-2013-2251 Global  Bank   So+ware  Provider   So+ware  Provider’s  Customer   State  University   Three-­‐Le?er  Agency   Large  Financial  Exchange   Hundreds  of  Other  Sites   #devopsdays
  7. 7. Organizations Can’t Keep Pace Complexity Diversity Volume Change One component may rely on 00s of others 40,000 Projects 200MM Classes 400K Components Typical Enterprise Consumes 000s of Components Monthly Typical Component is Updated 4X per Year #devopsdays
  8. 8. What’s this got to do with DevOps? Components are used to build applications. Agile Development is factored into how DevOps works. DevOps Success is dependent on supporting how applications are built today. DevOps Must Support Component-based Development! #devopsdays
  9. 9. Release Management is Key to DevOps Success #devopsdays
  10. 10. Flaws That Filter Through to Production Can Cripple You #devopsdays
  11. 11. Policies #devopsdays
  12. 12. Automated Policies are Necessary to Keep Up #devopsdays
  13. 13. Guide Developers With Component Intelligence in Their IDE #devopsdays
  14. 14. Support the Build/CI/CD Process With Integrated Intelligence #devopsdays
  15. 15. Shifting Activity Left Eliminates Downstream Impact It’s More Than Shifting the Testing Effort Prevent Problems from the beginning to eliminates downstream effort. Identify Vulnerabilities early to speed development & decrease cost. Incorporate Security into the design process vs. security as an afterthought. Remediate Flaws vs. solely focusing on problem identification. #devopsdays
  16. 16. “Prevention is the Ultimate Form of Shifting Left” Curtis Yanko Architecture Manager – Application Development & Delivery Services #devopsdays
  17. 17. DevOps : A Natural Way to Assimilate Other Disciplines Respect & Trust CULTURE Shared Information #devopsdays Problem Solving
  18. 18. Add “Sec” to DevOps DEV SECURITY OPS QUALITY #devopsdays
  19. 19. Overwhelmed? Consider these Questions Can we build an accurate inventory of our open source application components? What applications are placing our business at risk? #devopsdays
  20. 20. Let Me Know if You Need Help! If you want advice on how to get started, please talk to me during DevOpsDays, or contact me anytime… Manfred Moser manfred@sonatype.com @simpligility #devopsdays
  1. A particular slide catching your eye?

    Clipping is a handy way to collect important slides you want to go back to later.

×