Skip to content
EgyKode

DevSecOps

Security throughout delivery: put the gates in the pipeline, not in a document nobody reads.

What this path covers

8 phases18 chapterscovered

4 topics planned

These belong in this path but have no chapter yet. A phase is only created once there is material behind it — so the count above is what the platform actually teaches, not a target.

  • Threat modelling and the secure SDLC as an opening chapter
  • Dependency scanning (SCA), secret scanning and SBOM generation
  • Image signing and provenance (Sigstore / cosign)
  • Kubernetes admission control and Pod Security Standards
Write one of these

Your progress

0 of 18 · 0%

  1. Ends with

    A pipeline that can say no

    An enforced SonarQube quality gate, Trivy filesystem and image scans that block on high severity, immutable image tags, secrets outside source control, and default-deny network policies in the cluster.

Progress is stored in this browser only. Sign-in sync is coming with accounts.