Course Code: devsecopsai
Duration: 14 hours
Prerequisites:
  • 了解DevOps生命周期和CI/CD流水线
  • 应用安全原则的基础知识
  • 熟悉代码仓库和基础设施即代码工具

受众

  • 以安全为中心的DevOps团队
  • DevSecOps工程师和云安全专家
  • 合规与风险管理专业人员
Overview:

DevSecOps with AI 是将人工智能整合到DevOps管道中的实践,以主动检测漏洞、执行安全策略,并在整个软件交付生命周期中自动化响应操作。

本课程为讲师引导的培训(线上或线下),面向中级DevOps和安全专业人员,旨在应用基于AI的工具和实践,增强开发和部署管道中的安全自动化。

在本培训结束时,参与者将能够:

  • 将AI驱动的安全工具嵌入CI/CD管道。
  • 使用AI驱动的静态和动态分析,更早地发现问题。
  • 自动化秘密检测、代码漏洞扫描和依赖风险分析。
  • 启用主动威胁建模和策略执行,使用智能技术。

课程形式

  • 互动讲座和讨论。
  • 大量练习和实践。
  • 在实时实验室环境中进行动手操作。

课程定制选项

  • 如需为本课程定制培训,请联系我们安排。
Course Outline:

DevSecOps與AI整合簡介

  • DevSecOps原則與目標
  • AI與ML在DevSecOps中的角色
  • 安全自動化趨勢與工具類別

基於AI的靜態與動態代碼分析

  • 使用SonarQube、Semgrep或Snyk Code進行靜態分析
  • 通過AI輔助生成測試案例進行動態測試
  • 解釋結果並與版本控制系統整合

密鑰與憑證洩漏檢測

  • 通過AI增強檢測硬編碼的密鑰(例如GitHub Advanced Security、Gitleaks)
  • 防止密鑰進入源代碼控制
  • 創建自動阻止與警報規則

基於AI的依賴與容器掃描

  • 使用Trivy與AI插件掃描容器
  • 監控第三方庫與SBOMs
  • 自動修復建議與補丁警報

智能威脅建模與風險評估

  • 使用基於AI的工具進行自動威脅建模
  • 使用機器學習模型進行風險優先排序
  • 將業務影響與技術漏洞聯繫起來

CI/CD管道整合與自動化

  • 在Jenkins、GitHub Actions或GitLab CI中嵌入安全檢查
  • 創建以代碼形式定義的策略,以在環境中強制執行規則
  • 生成AI輔助的審計與合規報告

案例研究與安全自動化模式

  • AI在安全管道中的實際案例
  • 為您的生態系統選擇合適的工具
  • 構建與維護安全管道的最佳實踐

總結與下一步

Sites Published:

United Arab Emirates - DevSecOps with AI: Automating Security in the Pipeline

Qatar - DevSecOps with AI: Automating Security in the Pipeline

Egypt - DevSecOps with AI: Automating Security in the Pipeline

Saudi Arabia - DevSecOps with AI: Automating Security in the Pipeline

South Africa - DevSecOps with AI: Automating Security in the Pipeline

Brasil - DevSecOps with AI: Automating Security in the Pipeline

Canada - DevSecOps with AI: Automating Security in the Pipeline

中国 - DevSecOps with AI: Automating Security in the Pipeline

香港 - DevSecOps with AI: Automating Security in the Pipeline

澳門 - DevSecOps with AI: Automating Security in the Pipeline

台灣 - DevSecOps with AI: Automating Security in the Pipeline

USA - DevSecOps with AI: Automating Security in the Pipeline

Österreich - DevSecOps with AI: Automating Security in the Pipeline

Schweiz - DevSecOps with AI: Automating Security in the Pipeline

Deutschland - DevSecOps with AI: Automating Security in the Pipeline

Czech Republic - DevSecOps with AI: Automating Security in the Pipeline

Denmark - DevSecOps with AI: Automating Security in the Pipeline

Estonia - DevSecOps with AI: Automating Security in the Pipeline

Finland - DevSecOps with AI: Automating Security in the Pipeline

Greece - DevSecOps with AI: Automating Security in the Pipeline

Magyarország - DevSecOps with AI: Automating Security in the Pipeline

Ireland - DevSecOps with AI: Automating Security in the Pipeline

Luxembourg - DevSecOps with AI: Automating Security in the Pipeline

Latvia - DevSecOps with AI: Automating Security in the Pipeline

España - DevSecOps with AI: Automating Security in the Pipeline

Italia - DevSecOps with AI: Automating Security in the Pipeline

Lithuania - DevSecOps with AI: Automating Security in the Pipeline

Nederland - DevSecOps with AI: Automating Security in the Pipeline

Norway - DevSecOps with AI: Automating Security in the Pipeline

Portugal - DevSecOps with AI: Automating Security in the Pipeline

România - DevSecOps with AI: Automating Security in the Pipeline

Sverige - DevSecOps with AI: Automating Security in the Pipeline

Türkiye - DevSecOps with AI: Automating Security in the Pipeline

Malta - DevSecOps with AI: Automating Security in the Pipeline

Belgique - DevSecOps with AI: Automating Security in the Pipeline

France - DevSecOps with AI: Automating Security in the Pipeline

日本 - DevSecOps with AI: Automating Security in the Pipeline

Australia - DevSecOps with AI: Automating Security in the Pipeline

Malaysia - DevSecOps with AI: Automating Security in the Pipeline

New Zealand - DevSecOps with AI: Automating Security in the Pipeline

Philippines - DevSecOps with AI: Automating Security in the Pipeline

Singapore - DevSecOps with AI: Automating Security in the Pipeline

Thailand - DevSecOps with AI: Automating Security in the Pipeline

Vietnam - DevSecOps with AI: Automating Security in the Pipeline

India - DevSecOps with AI: Automating Security in the Pipeline

Argentina - DevSecOps with AI: Automating Security in the Pipeline

Chile - DevSecOps with AI: Automating Security in the Pipeline

Costa Rica - DevSecOps with AI: Automating Security in the Pipeline

Ecuador - DevSecOps with AI: Automating Security in the Pipeline

Guatemala - DevSecOps with AI: Automating Security in the Pipeline

Colombia - DevSecOps with AI: Automating Security in the Pipeline

México - DevSecOps with AI: Automating Security in the Pipeline

Panama - DevSecOps with AI: Automating Security in the Pipeline

Peru - DevSecOps with AI: Automating Security in the Pipeline

Uruguay - DevSecOps with AI: Automating Security in the Pipeline

Venezuela - DevSecOps with AI: Automating Security in the Pipeline

Polska - DevSecOps with AI: Automating Security in the Pipeline

United Kingdom - DevSecOps with AI: Automating Security in the Pipeline

South Korea - DevSecOps with AI: Automating Security in the Pipeline

Pakistan - DevSecOps with AI: Automating Security in the Pipeline

Sri Lanka - DevSecOps with AI: Automating Security in the Pipeline

Bulgaria - DevSecOps with AI: Automating Security in the Pipeline

Bolivia - DevSecOps with AI: Automating Security in the Pipeline

Indonesia - DevSecOps with AI: Automating Security in the Pipeline

Kazakhstan - DevSecOps with AI: Automating Security in the Pipeline

Moldova - DevSecOps with AI: Automating Security in the Pipeline

Morocco - DevSecOps with AI: Automating Security in the Pipeline

Tunisia - DevSecOps with AI: Automating Security in the Pipeline

Kuwait - DevSecOps with AI: Automating Security in the Pipeline

Oman - DevSecOps with AI: Automating Security in the Pipeline

Slovakia - DevSecOps with AI: Automating Security in the Pipeline

Kenya - DevSecOps with AI: Automating Security in the Pipeline

Nigeria - DevSecOps with AI: Automating Security in the Pipeline

Botswana - DevSecOps with AI: Automating Security in the Pipeline

Slovenia - DevSecOps with AI: Automating Security in the Pipeline

Croatia - DevSecOps with AI: Automating Security in the Pipeline

Serbia - DevSecOps with AI: Automating Security in the Pipeline

Bhutan - DevSecOps with AI: Automating Security in the Pipeline

Nepal - DevSecOps with AI: Automating Security in the Pipeline

Uzbekistan - DevSecOps with AI: Automating Security in the Pipeline