I've spent some time pondering on the implications of augmenting the Infosec industry with some devops automation. The theory is starting to take shape the more I think about how it would be pieced together.
I attempt to explain some of how the workflow would look and the basic principal breakdown in this blog post. I'm very interested in feedback on this subject - so a share would go a long way in continuing the conversation.
Happy hacking!
I attempt to explain some of how the workflow would look and the basic principal breakdown in this blog post. I'm very interested in feedback on this subject - so a share would go a long way in continuing the conversation.
Happy hacking!
View 4 previous comments
I'm looking at puppet because it seems to be the preferred system by red hat6 Jan 2015
I don't know yet man to be honest. I'm just getting started with playing with devops6 Jan 2015
Maybe a better question would be - as an infosec professional, what tools would be valuable to you outside of metasploit.
I'm on the opposite camp - specialty in devops with little experience in infosec :)6 Jan 2015
Good question. I'm still learning on ethical hacking so I am not the best person probably to answer. Maybe automating seccubus but that is already designed as a semi automated system6 Jan 2015
+Matthew Williams Brilliant. Thanks for the feedback mate! cheers.7 Jan 2015
Heck the deploying of seccubus is something work automating because it has a lot of parts to it7 Jan 2015