⛏️ Get Splunky!
Lv.1Intern
0 XP
0
Home Map Stats Drill Board Log In
Back to Floor
Scale Lab • Room 2

DevSecOps Integration

DevSecOps integrates security into every phase of software development: Design (threat modeling), Code (SAST scanning), Build (dependency analysis), Test (DAST, penetration testing), Deploy (infrastructure security), and Monitor (SIEM/EDR). The architect designs the security tooling pipeline that feeds events from each phase into Splunk.

Container and Kubernetes security is a growing focus. The architect ensures Kubernetes audit logs, container runtime events (from Falco or similar), and image scan results flow into Splunk. Detections for container escape, privilege escalation in pods, and lateral movement via the Kubernetes API are essential in modern cloud-native environments.

Knowledge Check

Prove your understanding to clear the room (Rewards XP)
❤️❤️❤️
Question 1 of 1
In a DevSecOps pipeline, what does SAST stand for and when does it run?
ASecurity Audit & Scan Tool — runs monthly
BStatic Application Security Testing — runs during the Code phase, analyzing source code for vulnerabilities without execution
CSystem Administration Security Test — runs in production
DSplunk Automated Security Testing — runs as a Splunk search