
<p>SAN FRANCISCO -- RSA CONFERENCE 2013 --Traditionally the world of IT app development and deployment has pitted developers and IT operations staff in two corners of the proverbial ring, making them what some experts call 'natural enemies' with little cooperation and a lot of bureaucratic processing in the march toward pushing production code live. It's an unproductive cycle that's spurred the countercultural DevOps movement.</p><p>The idea behind DevOps methodology is to eliminate clashes between the two groups and implement faster, more bite-size code deploys at more frequent intervals. The volume and speed of deploy rates, plus the shift in engineering culture precipitated by DevOps could scare some security pros. But a panel at RSA Conference last week showed how the paradigm shift could actually provide a huge step forward for security teams seeking to insert themselves into the development process for a more rugged enterprise application infrastructure.</p><p>"What I find so amazing about studying DevOps organizations is that they have a culture that embraces security," says Nick Galbreath, vice president of engineering for IPONWEB. He describes DevOps as a much more healthy way of developing code within an enterprise. "The great thing is that all of the tools that you use to enable security layers right on top of DevOps. Having these tools that developers in operations use together to make things to go faster is just a great way for you to get your (security) job done."</p><p>According to Gene Kim, founder and former CEO of Tripwire and author of The Phoenix Project: A Novel About IT, DevOps, and Helping Your Business Win, DevOps breaks the "core point of conflict" between developers and operations staff.</p><p><a href="http://www.darkreading.com/application-security/167901123/security/news/240149897/using-devops-to-upgrade-application-security">Keep reading...</a></p>