The Role of DevOps in Financial Network Security

Year : 2024 | Volume :11 | Issue : 01 | Page : 21-28
By

    Yamini Kannan

  1. Dharika Kapil

  1. Network Engineer, Department of Computer Science, New York University, New York, USA
  2. Software Developer, Department of Computer Science, Market Axess, Hudson Yards, United States

Abstract

This study provides a comprehensive analysis of the significance of Development and Operations (DevOps) in ensuring the security of financial networks. With an ever-increasing need for speed, efficiency, and quality in the Fintech sector, integrating DevOps methodologies into operational workflow has become critical. Adopting DevOps practices not only expedites the software delivery cycle, but also ensures comprehensive security. The study explores the adoption of Secure DevOps strategies, the importance of such practices in the financial sector, and the tools and methods involved in enhancing network security. Additionally, it presents two successful case studies: Etsy and Netflix, providing a clearer understanding of real-world applications of DevOps in enhancing security. Potential challenges in implementing DevOps for network security, ranging from the requisite cultural shift to tool integration, are also discussed. Given the paramount importance of regulatory compliance in the finance sector, future trends in DevOps will see increased automation to ensure continuous compliance and instant reporting. As threats evolve and technologies advance, DevOps continues to provide a critical pathway for firms to remain agile, secure, and robust in a rapidly shifting digital landscape.

Keywords: DevOps, financial network security, secure DevOps strategies, Devsecops, shift-left strategy, continuous integration and continuous delivery (ci/cd), infrastructure as code (IAC), automated security testing

[This article belongs to Recent Trends in Programming languages(rtpl)]

How to cite this article: Yamini Kannan, Dharika Kapil.The Role of DevOps in Financial Network Security.Recent Trends in Programming languages.2024; 11(01):21-28.
How to cite this URL: Yamini Kannan, Dharika Kapil , The Role of DevOps in Financial Network Security rtpl 2024 {cited 2024 Apr 04};11:21-28. Available from: https://journals.stmjournals.com/rtpl/article=2024/view=138939


References

  1. Wiedemann A, Wiesche M, Gewald H, Krcmar H. Integrating development and operations teams: A control approach for DevOps. Inf Organ. 2023; 33(3): 100474.
  2. Sánchez-Gordón M, Colomo-Palacios R. Security as culture: a systematic literature review of DevSecOps. In Proceedings of the IEEE/ACM 42nd International Conference on Software Engineering Workshops. 2020 Jun; 266–269.
  3. Abiola OB, Olufemi OG. An Enhanced CICD Pipeline: A DevSecOps Approach. Int J Comput Appl. 2023 Feb; 184(48): 8–13. pg (0975–8887)
  4. Rayanagoudar SF, Hampannavar PS, Pujari JD, Parvati VK. Enhancement of CICD Pipelines with Jenkins BlueOcean. Int J Comput Sci Eng. 2018;6:1048–1053. doi: 10.26438/ijcse/v6i6.10481053.
  5. Marini-Wear N. Qualitative Case Study Software Security in DevOps. Doctoral dissertation. Laurel, MD: Capitol Technology University; 2019.
  6. Rajapakse RN, Zahedi M, Babar MA, Shen H. Challenges and solutions when adopting DevSecOps: A systematic review. arXiv preprint arXiv:2103.08266. 2021.
  7. Wotawa F. On the automation of security testing. In 2016 IEEE International Conference on Software Security and Assurance (ICSSA). 2016 Aug; 11–16.
  8. Vadhera K, Deshwal A, Tripathi A. Optimization of Systems-Development Life Cycle Through Automation Using Ansible. In Latest Trends in Renewable Energy Technologies: Select Proceedings of NCRESE 2020. Singapore: Springer; 2021; 229–240.
  9. Fahl S, Harbach M, Perl H, Koetter M, Smith M. Rethinking SSL development in an appified world. In Proceedings of the 2013 ACM SIGSAC conference on Computer & communications security. 2013 Nov; 49–60.
  10. Sanyal A, Sun N. A simple and efficient dithering method for vector quantizer based mismatch-shaped ΔΣ DACs. In 2012 IEEE International Symposium on Circuits and Systems (ISCAS). 2012 May 20; 528–531.

Regular Issue Subscription Review Article
Volume 11
Issue 01
Received February 8, 2024
Accepted March 5, 2024
Published April 4, 2024