Resources

Resources: DevOps, SDLC and software governance

Guides that explain the concepts behind delivering software under control — DevOps, DevSecOps, the software development lifecycle, metrics and governance.

What is DevOps? Definition, benefits and how it works DevOps explained: what it is, where it came from, its principles and benefits, how it relates to Agile and ITIL, and how to start. Read more What is DevSecOps? Security built into DevOps DevSecOps explained: what shifting security left means, the practices in each stage, the roles involved and how to measure it. Read more What is the SDLC? The software development lifecycle explained The software development lifecycle (SDLC) explained: its phases, the main models from waterfall to DevOps, and the controls each phase should have. Read more What is software governance? Software governance explained: decision rights, policies, controls and evidence, how it differs from management, and how to keep it lightweight. Read more How to implement DevOps: a step-by-step guide A practical path to implement DevOps: map your value stream, automate builds and tests, deliver continuously, measure, and keep changes governed. Read more DevOps metrics: what to measure and how The DevOps metrics that matter: DORA's delivery and stability metrics, flow metrics and quality signals, with tips to measure them without gaming them. Read more Security in the software development lifecycle How to add security to every phase of the software development lifecycle, with practices from NIST SSDF and OWASP, and the evidence auditors expect. Read more What is a change advisory board (CAB)? The change advisory board explained: what it reviews, who takes part, how it treats normal, standard and emergency changes, and how to keep it lightweight. Read more

More to read

DevOps with governance, on one record

DevGob plans the work and governs every change on its way to production: backlog, sprints, committee authorizations, install evidence and an audit trail.