Summary
While security and compliance can be overwhelming and considered to be constraining, this chapter drafted guidance for an organization to adopt a DevSecOps mindset with the support of standard and integrated tools.
It is important to acknowledge that the concept of security and compliance is not a finite state, with no single and simple recipe to protect your organization from digital threats. (Cyber)security will be welcomed by the entire organization when it’s tailored to the business using a risk assessment approach, removing the feeling of constraints linked to operating in a so-called secured environment. When designed well, all stakeholders will organically participate in the continuous efforts of assessing, analyzing, executing, and discovering new policies, vulnerabilities, and potential ongoing attacks.
In the next chapter, we will address the business continuity aspect by introducing and implementing the disaster recovery and backup strategies of Kubernetes...