Skip to content
#

DevSecOps

DevSecOps is the practice of seamlessly integrating security practices into every phase of the software development lifecycle, from initial design through integration, testing, deployment, and delivery. It emphasizes building robust security checks directly into continuous integration and continuous delivery (CI/CD) pipelines, utilizing automated security scanning, and ensuring rigorous dependency management to mitigate vulnerabilities early.

Here are 530 public repositories matching this topic...

MixewayHub

Mixeway is security orchestrator for vulnerability scanners which enable easy plug in integration with CICD pipelines. MixewayHub project contain one click docker-compose file which configure and run images from docker hub.

  • Updated Mar 15, 2024
  • Shell

🚀 DevSecOps intro elective — 10 hands-on labs + 2 bonus hardening OWASP Juice Shop: threat modeling (STRIDE/Threagile), signed commits & secret scanning, SBOM/SCA, SAST + DAST, IaC security (Checkov/KICS), container & supply-chain hardening (Trivy, Cosign), runtime detection with Falco, and DefectDojo vuln management.

  • Updated Sep 6, 2026
  • Shell

An ongoing & curated collection of awesome software best practices and techniques, libraries and frameworks, E-books and videos, websites, blog posts, links to github Repositories, technical guidelines and important resources about DevSecOps in Cybersecurity.

  • Updated Jul 25, 2025
  • Shell

A hands-on lab toolkit for container security, from CIS-benchmark fundamentals to architectural trust governance. 12 production-grade labs covering image hardening, signing, supply chain attestation, admission control, and runtime debugging. Designed around reproducible, production-oriented container security scenarios.

  • Updated Aug 1, 2026
  • Shell
Followers
207 followers
Website
github.com/topics/devsecops
Wikipedia
Wikipedia