Questions
Answer the following questions to test your knowledge of this chapter:
- Which AWS services can be used to maintain continuous compliance, especially with frequent changes in CI/CD pipelines?
- How does Security Hub contribute to managing and improving the software supply chain’s security in a DevSecOps framework?
- How can Lambda be used to automate security tasks in the CI/CD pipeline?
- Can you explain the process of integrating SSM Parameter Store or Secrets Manager for secure management of credentials and secrets in a DevSecOps pipeline? How does this enhance the security of the software supply chain?