starts in 10 seconds
Mark Peters – Agile Compliance and Risk Operations

Mark Peters – Agile Compliance and Risk Operations

24m

Many organizations attempt adopting DevOps and Agile practices only to crash against a compliance wall such as RMF, PCI-DSS, or even GDPR. Those who offer Agile management frequently want to sell you a brand. Even Gene Kim’s “The Unicorn Project”, shows a security officer experiencing a complete breakdown before becoming a DevOps enthusiast. It’s not that hard. After being a Product Owner on an Agile team, I transferred to a security lead, operating the Risk Management Frameworks with an org newly committed to Agile. My team worked through a mindset change without the breakdown, incorporating small compliance goals, integrating with developers, shifting security left, and building cooperative risk ownership. This session shares my experiences incorporating an Agile workplace with the U.S. Government’s compliance in the hope of helping others.

0
Share some ❤
Guest(s): Mark Peters
Date: October 22, 2020
Play
My List

2020 DevOps Experience

Alex & Mitch - SRE and SLOs - Bringing Resilience to Production Software

Alex & Mitch - SRE and SLOs - Bringing Resilience to Production Software

Tracy Walker - How to Use Security As Code to Protect Egress External Connections

Tracy Walker - How to Use Security As Code to Protect Egress External Connections

Using modern interactive document techniques to protect your asset

Using modern interactive document techniques to protect your asset

Michael Scott Winslow - Empowered SRE_ Driving the Operational Burden to Zero

Michael Scott Winslow - Empowered SRE_ Driving the Operational Burden to Zero

Jacob Plicque - Being On-Call doesn’t have to Suck. How can we do better_

Jacob Plicque - Being On-Call doesn’t have to Suck. How can we do better_

Loris Degioanni - Kubernetes Disrupts! Security Threats & Shifts You Can’t Ignore

Loris Degioanni - Kubernetes Disrupts! Security Threats & Shifts You Can’t Ignore

Bryan Feuling - Verified GitOps: Beyond Git Sync

Bryan Feuling - Verified GitOps: Beyond Git Sync

The Importance of a Diverse Workforce by Women in DevOps

The Importance of a Diverse Workforce by Women in DevOps

Akash Tayal & Bob Vuong - Scaling DevOps across the Enterprise

Akash Tayal & Bob Vuong - Scaling DevOps across the Enterprise

Garima Bajpai - Continuous Product Oriented Practice - Building Next-Generation Products, the DevOps Way!

Garima Bajpai - Continuous Product Oriented Practice - Building Next-Generation Products, the DevOps Way!

Charlene OHanlon & Donovan Brown & Abel Wang - Fireside Chat with The Black Shirt and The Rockstar: From Waterfall to DevOps

Charlene OHanlon & Donovan Brown & Abel Wang - Fireside Chat with The Black Shirt and The Rockstar: From Waterfall to DevOps

Guy Bar-Gil - How to Reach Open Source Security Nirvana

Guy Bar-Gil - How to Reach Open Source Security Nirvana

Helen Beal & Jayne Groll - Fireside Chat: Reflections on 2020, Outlook for 2021

Helen Beal & Jayne Groll - Fireside Chat: Reflections on 2020, Outlook for 2021

Josh Van Leeuwen - Kubernetes & Vault Made Easy

Josh Van Leeuwen - Kubernetes & Vault Made Easy

Martyn Coupland - Achieving your DevOps Goals

Martyn Coupland - Achieving your DevOps Goals

Kohsuke Kawaguchi - Data-driven DevOps: The Key to Improving Speed & Scale

Kohsuke Kawaguchi - Data-driven DevOps: The Key to Improving Speed & Scale

Orit Golowinski - The DevOps Journey

Orit Golowinski - The DevOps Journey

Siddharth Pareek - Domain Oriented Observability - Bringing the Business Relevant Observability

Siddharth Pareek - Domain Oriented Observability - Bringing the Business Relevant Observability

Tracy Ragan - Meet the Continuous Delivery Foundation

Tracy Ragan - Meet the Continuous Delivery Foundation

Steve Boone - Humanizing DevOps through Data

Steve Boone - Humanizing DevOps through Data

Tiffany Jachja - Delivering Reliably: Driving Continuous Delivery through SRE

Tiffany Jachja - Delivering Reliably: Driving Continuous Delivery through SRE

William Chia - GitOps Fundamentals: Why use GitOps and how to get started

William Chia - GitOps Fundamentals: Why use GitOps and how to get started

Corbin Pacheco - Kubernetes - What do the Poll Results Show?

Corbin Pacheco - Kubernetes - What do the Poll Results Show?

Jack Neely - Finding the Golden Signals with Prometheus

Jack Neely - Finding the Golden Signals with Prometheus

Leave Review

Your email address will not be published. Required fields are marked *

ARE YOU IN?

Get enhanced value from the site through the exclusive “members-only” content. 200,000+ subscribers already enjoy our premium stuff.