logo

Researcher warns DevOps Security is Back to the Future

ID: 8fef1ed3-29a8-55d6-aae9-fe849edaaede

STIX ID: report--8fef1ed3-29a8-55d6-aae9-fe849edaaede

Feed Name: Security Ledger

Date Published: 2019-07-22

Date Updated: 2026-05-05

Author: Paul Roberts

...
...

The report warns that many DevOps tools (notably Jenkins) are deployed with weak security — misconfigurations, overly broad or anonymous permissions, poor isolation between masters and workers, and insufficient monitoring — creating significant operational risk. CyberArk researchers advise that security teams, not just developers, must prioritize securing CI/CD environments, gain visibility into privileged access and credentials, and treat automation trust relationships carefully to prevent breaches.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.