- 了解DevOps生命周期和CI/CD流水线
- 应用安全原则的基础知识
- 熟悉代码仓库和基础设施即代码工具
受众
- 以安全为中心的DevOps团队
- DevSecOps工程师和云安全专家
- 合规与风险管理专业人员
DevSecOps with AI 是将人工智能整合到DevOps管道中的实践,以主动检测漏洞、执行安全策略,并在整个软件交付生命周期中自动化响应操作。
本课程为讲师引导的培训(线上或线下),面向中级DevOps和安全专业人员,旨在应用基于AI的工具和实践,增强开发和部署管道中的安全自动化。
在本培训结束时,参与者将能够:
- 将AI驱动的安全工具嵌入CI/CD管道。
- 使用AI驱动的静态和动态分析,更早地发现问题。
- 自动化秘密检测、代码漏洞扫描和依赖风险分析。
- 启用主动威胁建模和策略执行,使用智能技术。
课程形式
- 互动讲座和讨论。
- 大量练习和实践。
- 在实时实验室环境中进行动手操作。
课程定制选项
- 如需为本课程定制培训,请联系我们安排。
DevSecOps与AI整合简介
- DevSecOps原则与目标
- AI与ML在DevSecOps中的角色
- 安全自动化趋势与工具类别
基于AI的静态与动态代码分析
- 使用SonarQube、Semgrep或Snyk Code进行静态分析
- 通过AI辅助生成测试案例进行动态测试
- 解释结果并与版本控制系统整合
密钥与凭证泄漏检测
- 通过AI增强检测硬编码的密钥(例如GitHub Advanced Security、Gitleaks)
- 防止密钥进入源代码控制
- 创建自动阻止与警报规则
基于AI的依赖与容器扫描
- 使用Trivy与AI插件扫描容器
- 监控第三方库与SBOMs
- 自动修复建议与补丁警报
智能威胁建模与风险评估
- 使用基于AI的工具进行自动威胁建模
- 使用机器学习模型进行风险优先排序
- 将业务影响与技术漏洞联系起来
CI/CD管道整合与自动化
- 在Jenkins、GitHub Actions或GitLab CI中嵌入安全检查
- 创建以代码形式定义的策略,以在环境中强制执行规则
- 生成AI辅助的审计与合规报告
案例研究与安全自动化模式
- AI在安全管道中的实际案例
- 为您的生态系统选择合适的工具
- 构建与维护安全管道的最佳实践
总结与下一步
United Arab Emirates - DevSecOps with AI: Automating Security in the Pipeline
Qatar - DevSecOps with AI: Automating Security in the Pipeline
Egypt - DevSecOps with AI: Automating Security in the Pipeline
Saudi Arabia - DevSecOps with AI: Automating Security in the Pipeline
South Africa - DevSecOps with AI: Automating Security in the Pipeline
Brasil - DevSecOps with AI: Automating Security in the Pipeline
Canada - DevSecOps with AI: Automating Security in the Pipeline
中国 - DevSecOps with AI: Automating Security in the Pipeline
香港 - DevSecOps with AI: Automating Security in the Pipeline
澳門 - DevSecOps with AI: Automating Security in the Pipeline
台灣 - DevSecOps with AI: Automating Security in the Pipeline
USA - DevSecOps with AI: Automating Security in the Pipeline
Österreich - DevSecOps with AI: Automating Security in the Pipeline
Schweiz - DevSecOps with AI: Automating Security in the Pipeline
Deutschland - DevSecOps with AI: Automating Security in the Pipeline
Czech Republic - DevSecOps with AI: Automating Security in the Pipeline
Denmark - DevSecOps with AI: Automating Security in the Pipeline
Estonia - DevSecOps with AI: Automating Security in the Pipeline
Finland - DevSecOps with AI: Automating Security in the Pipeline
Greece - DevSecOps with AI: Automating Security in the Pipeline
Magyarország - DevSecOps with AI: Automating Security in the Pipeline
Ireland - DevSecOps with AI: Automating Security in the Pipeline
Luxembourg - DevSecOps with AI: Automating Security in the Pipeline
Latvia - DevSecOps with AI: Automating Security in the Pipeline
España - DevSecOps with AI: Automating Security in the Pipeline
Italia - DevSecOps with AI: Automating Security in the Pipeline
Lithuania - DevSecOps with AI: Automating Security in the Pipeline
Nederland - DevSecOps with AI: Automating Security in the Pipeline
Norway - DevSecOps with AI: Automating Security in the Pipeline
Portugal - DevSecOps with AI: Automating Security in the Pipeline
România - DevSecOps with AI: Automating Security in the Pipeline
Sverige - DevSecOps with AI: Automating Security in the Pipeline
Türkiye - DevSecOps with AI: Automating Security in the Pipeline
Malta - DevSecOps with AI: Automating Security in the Pipeline
Belgique - DevSecOps with AI: Automating Security in the Pipeline
France - DevSecOps with AI: Automating Security in the Pipeline
日本 - DevSecOps with AI: Automating Security in the Pipeline
Australia - DevSecOps with AI: Automating Security in the Pipeline
Malaysia - DevSecOps with AI: Automating Security in the Pipeline
New Zealand - DevSecOps with AI: Automating Security in the Pipeline
Philippines - DevSecOps with AI: Automating Security in the Pipeline
Singapore - DevSecOps with AI: Automating Security in the Pipeline
Thailand - DevSecOps with AI: Automating Security in the Pipeline
Vietnam - DevSecOps with AI: Automating Security in the Pipeline
India - DevSecOps with AI: Automating Security in the Pipeline
Argentina - DevSecOps with AI: Automating Security in the Pipeline
Chile - DevSecOps with AI: Automating Security in the Pipeline
Costa Rica - DevSecOps with AI: Automating Security in the Pipeline
Ecuador - DevSecOps with AI: Automating Security in the Pipeline
Guatemala - DevSecOps with AI: Automating Security in the Pipeline
Colombia - DevSecOps with AI: Automating Security in the Pipeline
México - DevSecOps with AI: Automating Security in the Pipeline
Panama - DevSecOps with AI: Automating Security in the Pipeline
Peru - DevSecOps with AI: Automating Security in the Pipeline
Uruguay - DevSecOps with AI: Automating Security in the Pipeline
Venezuela - DevSecOps with AI: Automating Security in the Pipeline
Polska - DevSecOps with AI: Automating Security in the Pipeline
United Kingdom - DevSecOps with AI: Automating Security in the Pipeline
South Korea - DevSecOps with AI: Automating Security in the Pipeline
Pakistan - DevSecOps with AI: Automating Security in the Pipeline
Sri Lanka - DevSecOps with AI: Automating Security in the Pipeline
Bulgaria - DevSecOps with AI: Automating Security in the Pipeline
Bolivia - DevSecOps with AI: Automating Security in the Pipeline
Indonesia - DevSecOps with AI: Automating Security in the Pipeline
Kazakhstan - DevSecOps with AI: Automating Security in the Pipeline
Moldova - DevSecOps with AI: Automating Security in the Pipeline
Morocco - DevSecOps with AI: Automating Security in the Pipeline
Tunisia - DevSecOps with AI: Automating Security in the Pipeline
Kuwait - DevSecOps with AI: Automating Security in the Pipeline
Oman - DevSecOps with AI: Automating Security in the Pipeline
Slovakia - DevSecOps with AI: Automating Security in the Pipeline
Kenya - DevSecOps with AI: Automating Security in the Pipeline
Nigeria - DevSecOps with AI: Automating Security in the Pipeline
Botswana - DevSecOps with AI: Automating Security in the Pipeline
Slovenia - DevSecOps with AI: Automating Security in the Pipeline
Croatia - DevSecOps with AI: Automating Security in the Pipeline
Serbia - DevSecOps with AI: Automating Security in the Pipeline
Bhutan - DevSecOps with AI: Automating Security in the Pipeline
Nepal - DevSecOps with AI: Automating Security in the Pipeline
Uzbekistan - DevSecOps with AI: Automating Security in the Pipeline