Consulting & DevSecOps
Pipeline Integration (SAST/DAST/SCA)
Configuration, tuning and integration of static, dynamic and composition analysis into CI/CD.
Implementing security gates in pipelines (GitHub Actions, GitLab CI, Azure DevOps, Jenkins) with policy-based build breaking and developer feedback. Scope: SAST, DAST and SCA.
Deliverables
- Configured workflows/pipeline
- Gate policies and severity thresholds
- Operations and maintenance documentation