LIBRISTO
LIBROAMANTO
obrigatório
Faça parte de uma comunidade de amantes de livros de todo o mundo e tenha acesso a uma série de benefícios. Crie uma conta gratuitamente
0
Correio DHL 7.99 Correio DPD 4.49 Ponto DPD 3.99 Correio GLS 5.49 Correio MRW 5.49 Ponto GLS 4.49

Trivy for Kubernetes & DevSecOps

Build Secure Container Pipelines with SBOM, Supply Chain Scanning & CI/CD Automation Using GitHub Actions, Jenkins, ArgoCD, Terraform & Helm

Língua InglêsInglês
Livro Capa mole
Livro Trivy for Kubernetes & DevSecOps Alira Vexel
Código Libristo: 51440510
Editoras Independently published, março 2026
Trivy for Kubernetes & DevSecOpsBuild Secure Container Pipelines with SBOM, Supply Chain Scanning &... Descrição completa
? points 69 b
28.32
Armazenamento externo Envio em 14-21 dias

Até 30 dias para devoluções


Os clientes também compraram


Las parteras de Egipto Isaías Hernando Chicote / Livro Capa mole
common.buy 17.90
Arkusz kalkulacyjny Excel od podstaw Bożena Borowska / Livro Capa mole
common.buy 13.04
Em breve Novo
Umgang mit Low Performern Alfons Labisch / Livro Capa mole
common.buy 90.34
Ulmowie wyd. II. Sprawiedliwi i błogosławieni Agnieszka Bugała / Livro Capa mole
common.buy 11.73
Trojanische Pferde Peter Dunsch / Livro Capa mole
common.buy 32.16

Trivy for Kubernetes & DevSecOps

Build Secure Container Pipelines with SBOM, Supply Chain Scanning & CI/CD Automation Using GitHub Actions, Jenkins, ArgoCD, Terraform & Helm

Modern software delivery is fast.
Attack surfaces are faster.

Container images, Helm charts, Terraform modules, CI pipelines, and GitOps promotions form a complex supply chain - and every stage is a potential entry point for risk.

This book does not teach isolated Trivy commands.
It teaches you how to design and operate a production-grade DevSecOps control system.

What This Book Delivers

You will build a complete, real-world security architecture:

Repository
→ Container Build (Immutable Digest)
→ Vulnerability Scan
→ SBOM Generation (CycloneDX & SPDX)
→ Helm Render Validation
→ Misconfiguration & Secret Detection
→ Policy-Based Gating
→ GitOps Promotion with ArgoCD
→ Audit-Ready Evidence Pack
→ Continuous Validation & Security Debt Reduction

Every chapter connects to this system spine.
Nothing is fragmented. Nothing is theoretical.

What Makes This Book Different

Most DevSecOps guides:

  • Explain what SBOM is
  • Show a few Trivy examples
  • Provide disconnected CI snippets
  • Avoid real governance design

This book goes further.

You will implement:

  • Deterministic PR gates with SARIF integration
  • Enterprise-grade Jenkins release pipelines
  • Terraform misconfiguration scanning with real guardrails
  • Helm pre-deploy security validation
  • Expiry-based exception governance
  • Break-glass workflows with audit traceability
  • Digest-only production deployments
  • Evidence bundles with policy snapshots and checksums
  • Zero-to-production rollback validation
  • Multi-environment promotion discipline using ArgoCD

This is not "scan and hope."
It is structured enforcement.

Built for Real Operators

This book is written for:

  • DevOps Engineers
  • Platform Engineers
  • SREs
  • Security Engineers (AppSec / CloudSec)
  • Cloud Architects
  • Technical Leaders building internal DevSecOps standards

It assumes you want depth - not surface-level summaries.

There are no "What is Kubernetes?" chapters.
There are no toy examples.
Every workflow is production-aligned.

Fully Modern & 2026-Ready

You will work with current, real-world tooling:

  • Trivy for image, filesystem, repo, and Kubernetes scanning
  • GitHub Actions for PR security gates
  • Jenkins for enterprise release orchestration
  • Terraform for infrastructure-as-code validation
  • Helm for controlled application delivery
  • ArgoCD for GitOps promotion enforcement
  • SBOM-first supply chain governance

The final capstone builds a complete, audit-ready DevSecOps platform from scratch.

What You Will Walk Away With

After completing this book, you will have:

  • A repeatable security architecture you can deploy immediately
  • Copy-paste CI/CD templates ready for production
  • Governance patterns with expiry-based exceptions
  • A measurable security debt reduction model
  • A roadmap for enterprise scaling (policy-as-code, attestations, multi-cluster governance)
  • A standalone DevSecOps blueprint suitable for serious environments

Security is not a scanner.
It is a workflow.
It is a promotion discipline.
It is a contract between build, release, and runtime.

This book gives you the architecture to enforce that contract.

If you build Kubernetes platforms, operate CI/CD systems, or are responsible for container supply chain integrity, this manual will become your operational reference.

Atriz & Poliglota
EWA KASP para
Reproduzir vídeo
Ewa Kasp
A Libristo tem a maior seleção de literatura estrangeira. É por isso que compro os meus livros aqui.

Sobre o livro

Nome completo Trivy for Kubernetes & DevSecOps
Autor Alira Vexel
Língua Inglês
Encadernação Livro - Capa mole
Data de emissão 2026
Número de páginas 408
EAN 9798251053159
Código Libristo 51440510
Peso 943
Dimensões 216 x 280 x 21
Ofereça este livro hoje
É fácil
1 Adicione ao carrinho e escolha Entregar como presente ao finalizar a compra 2 Receberá um vale 3 O livro chegará ao endereço do destinatário

Também pode estar interessado em


Hypnosis Without Trance JAMES TRIPP / Livro Capa mole
common.buy 26.50
Lonely Planet Pocket Valencia Lonely planet eng / Livro Capa mole
common.buy 18.51
Liturgies of the Wild Martin Shaw / Livro Livro de capa dura
common.buy 24.88
Em breve Novo
Tropical Living LAUDER AERIN / Livro Livro de capa dura
common.buy 45.22

Iniciar sessão

Inicie sessão na sua conta. Não tem uma conta Libristo? Crie uma agora!

 
obrigatório
obrigatório

Não tem uma conta? Descubra os benefícios de ter uma conta Libristo!

Com uma conta Libristo, terá tudo sob controlo.

Crie uma conta Libristo
Conselheiro de livros Libroamiko
Olá, sou o Libroamiko, posso ajudar?