To main content

Automating Security in a Continuous Integration Pipeline

Abstract

Traditional approaches to software security are based on manual methods, which tend to stall development,
leading to inefficiency. To speed up a software development lifecycle, security needs to be integrated and
automated into the development process. This paper will identify solutions for automating the security phase
into a continuous software delivery process, integrating security tools into a Github repository by using Github
Actions to create automated vulnerability scanning workflows for a software project.
Read the publication

Category

Academic chapter

Language

English

Author(s)

Affiliation

  • SINTEF Digital / Software Engineering, Safety and Security
  • University of Stavanger

Year

2022

Publisher

SciTePress

Book

Proceedings of the 7th International Conference on Internet of Things, Big Data and Security

ISBN

9789897585647

Page(s)

231 - 238

View this publication at Norwegian Research Information Repository