Implementing L2 – intermediate
Teams that are able to accomplish the intermediate level or mature themselves from a foundation-level operating model will now start adding more detail-oriented tracking to their workstreams and CI/CD pipeline requirements. Additional testing is inserted and official enforcement of “shift left” practices is implemented at the local git commit level as opposed to utilizing compute time within the pipeline.
Engineering teams that meet the following profile can typically achieve an L2 pattern:
- 5-10 detection engineers
- Average load of 10-20 new detections per week
- Healthy budgeting for collaborative tooling and CI compute times
- Typically operating in more than one time zone or region
- Lacking instrumentation for full integration or end-to-end testing
The following is a set of practice components and their implementation levels for the L2 pattern:
... |