Tag: Security and privacy
-
How to create a self-signed SSL certificate for Nginx in Ubuntu 20.04
Posted on September 24, 2021, Level intermediate Resource Length long
TLS, or transport layer security, and its predecessor SSL, which stands for secure sockets layer, are web protocols used to protect and encrypt traffic over a computer network. By Brian Boucheron and Jeanelle Horcasitas.
Tags devops-and-ci-cd cloud-and-infrastructure security-and-privacy product-and-design
-
Top 4 cloud native application architecture principles
Posted on September 12, 2021, Level beginner Resource Length short
Cloud Native Applications are independent services, collectively but loosely coupled. Cloud native development is an approach to build quality apps. It is efficient as Cloud native development focuses on architecture's modularity. We need DevOps, Microservices and Containers for cloud native. By AnAr Corporate.
Tags cloud-and-infrastructure security-and-privacy product-and-design architecture-and-apis
-
Top 10 common types of network security attacks explained
Posted on September 10, 2021, Level beginner Resource Length medium
Network security attacks have gained momentum over the past years, which highlights the need for network defenders. Learn more about network security attacks and their types. By CISOMAG.
Tags cloud-and-infrastructure security-and-privacy devops-and-ci-cd leadership-and-career product-and-design
-
Introduction to OWASP top 10 2021
Posted on September 9, 2021, Level beginner Resource Length medium
Welcome to the latest installment of the OWASP Top 10! The OWASP Top 10 2021 is all-new, with a new graphic design and an available one-page infographic you can print or obtain from our home page. By @owasp.
Tags cloud-and-infrastructure security-and-privacy devops-and-ci-cd leadership-and-career product-and-design
-
Administrator's guide: What makes passwordless, dare we say it, phish-proof?
Posted on August 31, 2021, Level beginner Resource Length medium
In some ways, the term "passwordless" is a misnomer. Yes, it's a password-less authentication method, greatly streamlining the login experience, and while that's a great incentive to use passwordless for logging in, it's not an improvement in authentication security in and of itself. By Jeremy Erickson.
Tags product-and-design cloud-and-infrastructure security-and-privacy devops-and-ci-cd frontend-and-mobile
-
Microsoft, Google to invest $30 billion in cybersecurity over next 5 years
Posted on August 26, 2021, Level beginner Resource Length short
Google and Microsoft said they are pledging to invest a total of $30 billion in cybersecurity advancements over the next five years, as the U.S. government partners with private sector companies to address threats facing the country in the wake of a string of sophisticated malicious cyber activity targeting critical infrastructure, laying bare the risks to data, organizations, and governments worldwide. Ravie Lakshmanan.
Tags miscellaneous security-and-privacy cloud-and-infrastructure leadership-and-career
-
Fortifying APIs with advanced security
Posted on August 25, 2021, Level intermediate Resource Length long
In F5's The State of Application Strategy in 2021 report, 58% of respondents said they are building a layer of APIs to modernize applications. Increasingly, though, breaches are taking the form of attacks on APIs. By Karthik Krishnaswamy.
Tags devops-and-ci-cd architecture-and-apis frontend-and-mobile product-and-design security-and-privacy
-
Data security in a multi-cloud world
Posted on August 17, 2021, Level beginner Resource Length intermediate
Securing and protecting enterprise data is at the center of the modern security plan. There are many considerations for organizations that aim to move critical workloads and data stores to the cloud, and understanding how business-critical data will be accessed, stored, and secured is a paramount concern. Written by Chris Steffen.
Tags cloud-and-infrastructure security-and-privacy leadership-and-career
-
Modern least privilege and DevSecOps
Posted on August 3, 2021, Level intermediate Resource Length medium
James Watters, CTO for Modern Apps at VMware, gave a compelling talk at Cloud Native Security Day on what he called "modern least privilege." The basic concept is to apply the principle of least privilege across the DevSecOps lifecycle to properly secure modern apps. By Kit Colbert @VMware, Cloud CTO.
Tags security-and-privacy leadership-and-career devops-and-ci-cd architecture-and-apis
-
How to fix cybersecurity skills gap? Competitive pay
Posted on August 2, 2021, Level intermediate Resource Length medium
How to close the cybersecurity skills gap? Here's a novel idea: pay security professionals better. By Jessica Lyons Hardcastle.
Tags leadership-and-career security-and-privacy miscellaneous
-
How to demonstrate ROI from your cyber security strategy
Posted on August 1, 2021, Level intermediate Resource Length medium
The best outcome from a well-executed cyber security strategy should be that a business experiences no change or disruption to their operations or systems in the case of an external threat. By Martin Riley.
Tags leadership-and-career security-and-privacy cloud-and-infrastructure devops-and-ci-cd
-
Safari isn't protecting the web, it's killing it
Posted on July 30, 2021, Level beginner Resource Length long
I have seen some interesting rebuttals, most commonly: Safari is actually protecting the web, by resisting adding unnecessary and experimental features that create security/privacy/bloat problems. That is worth further discussion, because it's widespread, and wrong. By Tim Perry.
Tags miscellaneous cloud-and-infrastructure frontend-and-mobile security-and-privacy