Waiting for a single annual pentest to secure your application is like locking your front door only once a year and hoping for the best. In an era where 133 new vulnerabilities are reported […]
Forget the Vibe-Coders, We Need to Support Responsible AI-Assisted Development
While AI tools are increasingly used in development, they should enhance rather than replace human input. Developers must shift from merely writing code to orchestrating and validating AI-generated code. This ‘spec coding’ emphasizes creating specifications that guide both AI and human efforts. Infrastructure must support this transition, with safeguards like reliable build pipelines and automated security scans. Ultimately, AI is a tool to aid developers, but the nuanced responsibilities of design, security, and performance remain firmly in human hands, ensuring responsible and effective use.
Scaling DevOps at Pearson
Pearson might be one of the more influential companies you have never heard of. Its footprint in the educational publishing marketplace is expansive, and its scope was just one challenge […]
Characterizing and Contrasting Container Orchestrators
Admiral Calcote, also known as Lee Calcote (@lcalcote) or the Ginger Geek to his friends, gave a presentation titled, “Characterizing and Contrasting Container Orchestrators,” at the 2016 All Day DevOps conference. Okay, he isn’t really […]
Securing Immutable Servers in a Serverless World
Snowflakes are beautiful, unique creations. But, let’s keep them in nature. They don’t belong in our server infrastructure. Snowflake servers, where every configuration is just a little different, can introduce […]
All Day DevOps: Taking Lambda to the Max
Lambda is the 11th letter of the Greek alphabet, and it is also the name of the Amazon Web Services (AWS) service that lets you run code without actually configuring […]
How To Fully Automate CI/CD – Even Secrets
Imagine a world where your continuous integration/continuous deployment environment is 100 percent automated, including the passing of credentials. Capital One, a leading U.S. bank, has achieved this, and Andrey Utis, […]
Automated Testing: Remember Security
Between continuous integration (CI) and release automation (RA), we’ve come a long way in making testing both integral and automated. This testing has allowed QA staff and developers to spend […]
IoT Forcing the Coming DevOps Deluge
We can look back over the last few years and easily pick out the organizations that picked up DevOps and ran with it, forwarding the science of DevOps while benefitting […]
All Day DevOps: System Hardening with Ansible
The DevOps pipeline is constantly changing. Therefore, relevant security controls must be applied contextually. We want to be secure, but I think all of us would rather spend our time […]











