Data-Driven DevSecOps: Mining Vulnerability Trends from CI Logs to Improve Security Posture Over Time

Authors

  • Nagateja Alugunuri

Keywords:

DevSecOps, CI Log Mining, Vulnerability Trends, Software Security Metrics, Cumulative Risk Delta and Secure Build Automation.

Abstract

The evolution of DevSecOps marks a transformative shift in integrating security as acontinuous and proactive component within the CI/CD pipeline. However, manyorganizations lack a systematic, empirical method to measure whether their security postureimproves over time. This study proposes a data-driven 

References

Abiona, O. O., Oladapo, O. J., Modupe, O. T., Oyeniran, O. C., Adewusi, A. O., &

Komolafe, A. M. (2022). The emergence and importance of DevSecOps: Integrating and reviewing security practices within the DevOps pipeline. World Journal of Advanced Engineering Technology and Sciences, 11(2), 127–133.

Akbar, M. A., Smolander, K., Mahmood, S., & Alsanad, A. (2022). Toward successful DevSecOps in software development organizations: A decision-making framework. Information and Software Technology, 147, 106894. https://doi.org/10.1016/j.infsof.2022.106894

Downloads

Published

2024-03-15

How to Cite

Nagateja Alugunuri. (2024). Data-Driven DevSecOps: Mining Vulnerability Trends from CI Logs to Improve Security Posture Over Time. Journal of Computational Analysis and Applications (JoCAAA), 32(2), 505–519. Retrieved from https://www.eudoxuspress.com/index.php/pub/article/view/3373

Issue

Section

Articles