Book Image

The DevOps Career Handbook

By : John Knight, Nate Swenson
Book Image

The DevOps Career Handbook

By: John Knight, Nate Swenson

Overview of this book

DevOps is a set of practices that make up a culture, and practicing DevOps methods can make developers more productive and easier to work with. The DevOps Career Handbook is filled with hundreds of tips and tricks from experts regarding every step of the interview process, helping you save time and money by steering clear of avoidable mistakes. You’ll learn about the various career paths available in the field of DevOps, before acquiring the essential skills needed to begin working as a DevOps professional. If you are already a DevOps engineer, this book will help you to gain advanced skills to become a DevOps specialist. After getting to grips with the basics, you'll discover tips and tricks for preparing your resume and online profiles and find out how to build long-lasting relationships with the recruiters. Finally, you'll read through interviews which will give you an insight into a career in DevOps from the viewpoint of individuals at different career levels. By the end of this DevOps book, you’ll gain a solid understanding of what DevOps is, the various DevOps career paths, and how to prepare for your interview.
Table of Contents (17 chapters)
1
Section 1: A Career in DevOps
5
Section 2: The Application Process
10
Section 3: Interview Process
13
Section 4: Tips, Tricks, and Interviews

Security

A DevOps engineer who specializes in security is often referred to as a DevSecOps engineer. DevSecOps engineers have a deep understanding of the CI/CD process as well.

Security Is Everyone's Responsibility

Security is everyone's job. Anyone who has any stake in delivering the software has a role in ensuring the application's security.

The job of a DevOps security engineer is to ensure that security is built in and included from the onset of a project.

DevOps engineers specializing in security have responsibilities that are broken down into two areas: CI/CD processes and environment and data. We will first look at CI/CD process security and the skills required to implement it.

CI/CD process security

Let's revisit the pipeline discussed earlier; numbers have been added to the following diagram to correlate to the following security items:

  • Container scanning (1): Container scanning should be added to the process of bringing new containers...