Data-Driven DevSecOps: Mining Vulnerability Trends from CI Logs to Improve Security Posture Over Time
Keywords:
DevSecOps, CI Log Mining, Vulnerability Trends, Software Security Metrics, Cumulative Risk Delta and Secure Build Automation.Abstract
The evolution of DevSecOps marks a transformative shift in integrating security as acontinuous and proactive component within the CI/CD pipeline. However, manyorganizations lack a systematic, empirical method to measure whether their security postureimproves over time. This study proposes a data-driven
References
Abiona, O. O., Oladapo, O. J., Modupe, O. T., Oyeniran, O. C., Adewusi, A. O., &
Komolafe, A. M. (2022). The emergence and importance of DevSecOps: Integrating and reviewing security practices within the DevOps pipeline. World Journal of Advanced Engineering Technology and Sciences, 11(2), 127–133.
Akbar, M. A., Smolander, K., Mahmood, S., & Alsanad, A. (2022). Toward successful DevSecOps in software development organizations: A decision-making framework. Information and Software Technology, 147, 106894. https://doi.org/10.1016/j.infsof.2022.106894


