CSA Research Publications
Whitepapers, Reports and Other Resources
Browse Publications
![]() | The Six Pillars of DevSecOps Bundle Release Date: 03/10/2025 DevOps enhances the management of information security, but its execution must be secured to avoid vulnerabilities like lax firewall rules or default cred... Request to download |
![]() | The Six Pillars of DevSecOps: Measure, Monitor, Report, and Action Release Date: 05/14/2024 The implementation and maintenance of DevSecOps initiatives can take anywhere from a few months to several years to implement. Therefore, continuous measu... Request to download |
![]() | The Six Pillars of DevSecOps - Collaboration and Integration Release Date: 02/20/2024 “Security can only be achieved through collaboration, not confrontation” is one of the defining principles of DevSecOps. Essentially, security is a team s... Request to download |
![]() | The Six Pillars of DevSecOps: Automation - Chinese Translation Release Date: 11/13/2023 This localized version of this publication was produced from the original source material through the efforts of chapters and volunteers but the translate... Request to download |
![]() | DevSecOps - Pillar 4 Bridging Compliance and Development - Chinese Translation Release Date: 11/13/2023 This localized version of this publication was produced from the original source material through the efforts of chapters and volunteers but the translate... Request to download |
![]() | The Six Pillars of DevSecOps: Automation - Japanese Translation Release Date: 04/05/2023 This localized version of this publication was produced from the original source material through the efforts of chapters and volunteers but the translate... Request to download |
![]() | The Six Pillars of DevSecOps - Pragmatic Implementation Release Date: 12/14/2022 Organizations have a wide array of tools and solutions to choose from when implementing security into the software development process. They often end up ... Request to download |
![]() | DevSecOps - Pillar 4 Bridging Compliance and Development Release Date: 02/08/2022 Given the rapid evolution of software development paradigms and practices, it has become a challenge to align monolithic security compliance activities wi... Request to download |
![]() | Secure DevOps and Misconfigurations Survey Report Release Date: 11/18/2021 Secure DevOps, DevSecOps, and “shifting left” have become increasingly popular terms in cybersecurity. With the rapid increase both in volume and speed to... Request to download |
![]() | The Six Pillars of DevSecOps: Automation Release Date: 07/06/2020 Automation is a critical component of DevSecOps because it enables process efficiency, allowing developers, infrastructure, and information security teams to... Request to download |
![]() | The Six Pillars of DevSecOps: Collective Responsibility Release Date: 02/21/2020 The DevSecOps Working Group identified and defined six focus areas critical to integrating DevSecOps into an organization, in accordance with the six pillars... Request to download |
![]() | Release Date: 08/07/2019 In our current state of cyber security, there has been a large growth of application flaws that bypass the continuing addition of security frameworks to ensu... Request to download |
![]() | Information Security Management through Reflexive Security Release Date: 08/01/2019 This document defines “Reflexive Security” as a new security management approach that is built upon the interrelationships between security, development and ... Request to download |