Is a cATO Possible in Today’s Military?

In the last episode of the ContinuousX Podcast, hosts Rick Stewart and Michael Fitzurka of DLT were joined by Kaitlin Bulavinetz, the Chief of Staff to the Chief Software Officer of the United States Air Force, to talk about enabling…

Kaitlin Bulavinetz Discusses the Cultural Changes Needed to Embrace DevSecOps in the Air Force

The benefits of shifting from a traditional “waterfall” approach to application development to a DevSecOps approach to application development have been well documented – including in the GovDevSecOpsHub. Ultimately, by shifting security left in the development process, application development teams…

Government AppDev Leaders Explain the Benefits and Risks of APIs and IaC

On Thursday, May 20, the Institute for Critical Infrastructure Technology – a cybersecurity-focused think tank – brought together leaders from across the federal government and military to discuss an incredibly important topic – the benefits and risk factors that new…

Everyone Into the Platform One Pool!

The Air Force wants to open its Platform One services to private sector partnerships with the hope of tapping into a consortium of academic and industry organizations to enhance its coding environment. Platform One is an environment provisioned by the…

From “Trust but Verify” to “Never Trust” – the Importance of AST in application development

In our last article on the GovDevSecOpsHub, we sat down with Peter Archibald, the Regional Sales Manager for DoD and FSI sales at Checkmarx, and Jeff Ingram, a DoD Regional Sales Manager at Checkmarx, to discuss the inclusion of the…

Application Security Testing Makes its Way into the Iron Bank

In early December, software security solution provider, Checkmarx, announced that its application security testing (AST) solution had been accepted into the U.S. Department of Defense’s (DoD) “Iron Bank” repository, and was available through the U.S. Air Force Platform One application…

 

 

 

We launched GovDevSecOpsHub to focus on the next evolution of application development, DevSecOps, which brings cybersecurity teams and tools into the development process sooner so that applications are more secure and safeguarded against cyber threats.

In  GovDevSecOpsHub we’ll look at the evolution from traditional software and application development to the DevOps model. We’ll talk about the importance of moving from DevOps to DevSecOps. We’ll highlight the technologies and cultural changes necessary to make this shift happen. And we’ll profile government organizations and executives that are the “boots on the ground” as the government pivots towards the DevSecOps model.