PLAY PODCASTS
Episode 187: DevSecOps for US Federal agencies (FIPs, STIGs, auditors, AOs, and all that)
Episode 187

Episode 187: DevSecOps for US Federal agencies (FIPs, STIGs, auditors, AOs, and all that)

Tanzu Talk

January 27, 202130m 12s

Audio is streamed directly from the publisher (mcdn.podbean.com) as published in their RSS feed. Play Podcasts does not host this file. Rights-holders can request removal through the copyright & takedown page.

Show Notes

When Federal people ask to secure a DevOps app creation and delivery process, what do they mean? Chris Willis joins Coté in this episode to answer that question with a #vmwaretanzu customer example: the Tanzu Build Service, buildpacks, Tanzu Application Service (Pivotal Cloud Foundry), and other components. He covers FIPS encryption requirements, STIGs, working with the authorizing official, and the overall practices and culture-think for securing build pipelines.