Authentic Learning on DevOps Security with Labware: Git Hooks To Facilitate Automated Security Static Analysis


연구 분야: Software Development



학회: 2024 IEEE 48th Annual Computers, Software, and Applications Conference (COMPSAC)


초록

This paper presents an innovative approach to DevOps security education, addressing the dynamic landscape of cybersecurity threats. We propose a student-centered learning methodology by developing comprehensive hands-on learning modules. Specifically, we introduce labware modules designed to automate static security analysis, empowering learners to identify known vulnerabilities efficiently. These modules offer a structured learning experience with pre-lab, hands-on, and post-lab sections, guiding students through DevOps concepts and security challenges. In this paper, we introduce hands-on learning modules that familiarize students with recognizing known security flaws through the application of Git Hooks. Through prac-tical exercises with real-world code examples containing security flaws, students gain proficiency in detecting vulnerabilities using relevant tools. Initial evaluations conducted across educational institutions indicate that these hands-on modules foster student interest in software security and cybersecurity and equip them with practical skills to address DevOps security vulnerabilities.


Author Profile
Fan Wu

Tuskegee University Alabama USA

United States
Author Profile
Md Mostafizur Rahman

Department of Information Technology University of West Florida Florida USA

United States
Author Profile
MD Abdul Barek

Department of Intelligent Systems and Robotics University of West Florida Florida USA

Andorra

📄 논문 정보

발행 연도 2024년
인용수 2
출판 국가 Andorra, United States
사이트 IEEE
좋아요 수 0

연관 논문 목록 (102건)