DevOps integration
You can take advantage of Risk Policies to create security gates in a DevOps or CI/CD pipeline. For example,
-
Fail a build if a project does not implement certain controls.
-
Prevent applications from deploying when a project has incomplete high priority tasks.
-
Perform a custom action if a project has incomplete development tasks.
-
This feature relies on the capabilities of the automation tool.
-
Supported automation tools
SDE supports the automation tools below. Please reach out to your solutions engineer if you want to experiment with this type of integration.
Tool |
Support |
|
---|---|---|
Jenkins |
||
Microsoft Azure DevOps (Team Foundation Server) |
||
XebiaLabs XL Release |
||
Various |
Custom script using API |