Enable javascript in your browser for better experience. Need to know to enable it?

Ӱֱ

Blogs Banner

Securing the Pipeline

“Your build pipeline is a production system,” saysմdzDuckering, lead consultant fromӰֱLondon. Tom gave the talkSecuring the Pipelinetogether withPatrick DowneyݰDzԴᲹܰ.

Both Tom and Pat identify themselves as infrastructure automation guys and gave me a short insight into the dangers that could come out of your continuous delivery pipeline when not sufficiently secured.

In this half- hour interview, we first introduce the threats coming out of the pipeline. We establish the continuous delivery pipeline as a production system - because it will create what is in production. We also give an example of how easy it can beto get root access with an anonymous user,and of course we discuss strategies to make a pipeline secure enough for the attack trees a customer might face.

Links mentioned in the show:

More episodes of the ӰֱPodcast for technologists can be found at , , , or via .

Disclaimer: The statements and opinions expressed in this article are those of the author(s) and do not necessarily reflect the positions of Ӱֱ.

Keep up to date with our latest insights