Skip to main content
Leidos
Search
  • Suppliers
  • Employees
  • Newsroom
  • Investors
  • Global
  • Contact
  • Company
    • Our Business

      We embrace and solve some of the world's toughest challenges.

      • Civil
      • Defense
      • Health
      • Intelligence
      • Dynetics
      • Leidos Innovations Center (LInC)
      Gibbs & Cox-designed DDG-51 Arleigh Burke-class destroyer at sea

      Leidos completes Gibbs & Cox acquisition, expanding maritime undersea, autonomous and cybersecurity capabilities.

      Read Press Release

    • Mission, Vision, & Values

      Everything we do is built on a commitment to do the right thing for our customers, our people, and our community.

      • Mission
      • Vision
      • Values
      man sitting on bleachers holding soccer ball

      Let’s come together and talk about the changes that are needed.

      The Opioid Epidemic: A Call to Action

    • Leadership

      Meet the executive team responsible for leading our forward-thinking employees toward a shared success.

      • Roger Krone
      • Chris Cage
      • Maureen Waterston
      • Vicki Schmanske
      • Jerry Howe
      • Jim Carlini
      • Debbie Opiekun
      • Thomas Sanglier
      • Jim Moos
      • Gerry Fasano
      • Roy Stevens
      • Liz Porter
      • Steve Cook
      • Paul Engola
      • Board of Directors
      Roger Krone

      Meeting the challenges of an uncertain world.

      An Interview with CEO Roger Krone

    • History

      Leidos has a long history of innovative problem-solving and customer service, dating all the way back to 1969 when Dr. J. Robert Beyster founded his "crazy little company".

      • Explore our History
      • Dr. J. Robert Beyster
      • A Kaleidoscope of Innovation: The Story of Leidos
      Dr. Beyster

      Almost 50 years ago, visionary scientist J. Robert Beyster, Ph.D. founded the company that evolved into Leidos.

      Read More

    • Diversity, Equity, & Inclusion

      Our commitment to diversity, equity, and inclusion is reflected in the way we engage our people, our customers, and our external partnerships through our innovative programs, sponsorships, and engagement.

      • Our Vision, Philosophy, and Approach
      • Strategic Diversity Outreach
      • Employee Resource Groups
      • Inclusion & Diversity in the UK
      Top Supporters HBCU badge for 2022

      Leidos was recently named to the 2022 Top Supporters of HBCU Engineering list published by Career Communications Group, Inc.

      Partnering with HBCUs

    • Responsibility & Sustainability

      We're equally committed to using our time and resources to support people, enrich communities, and protect the environment.

      • ESG Goals
      • CEO Message
      • Executive Summary
      • ESG Governance & Strategy
      • Environment
      • Community
      • People
      • Suppliers & Small Business Relationships
      • Political Activities
      • About our Reporting
      • GRI™ Standards
      NASA ground station

      Discover how we helped NASA develop a climate action plan

      Read Article

    • Ethics & Compliance

      We have a strong history of performance that rests on our foundation of integrity.

      • File a Report
      • History of Ethics
      • Ethics Program Structure
      • Code of Conduct
      World's most ethical companies logo

      Leidos named one of the World’s Most Ethical Companies for sixth consecutive year.

      Read More

    • Rankings & Awards

      Our innovative approach and the services and solutions we deliver frequently earn Leidos recognition from our industry and the media.

      • Enterprise Awards
      • Defense Awards
      • Civil Awards
      • Health Awards
      A gold trophy on a light green background

      A frequent honoree on the corporate awards circuit, Leidos is proud of its many industry-specific and corporate-level achievements.

      Cue the Applause

    • Partners

      The Leidos Alliance Partner Network emphasizes connections through partnership and collaboration that drive innovation, advance technology, and build efficiency.

      • Corporate Strategic Partners
      • Technology Integration Partners
      • Emerging Technology Partners
      Bubba Wallace image

      We're teaming up with Bubba Wallace and 23XI Racing in 2023 advancing a culture of inclusion and diversity.

      Fueling a Better Tomorrow

    • Subsidiaries

      Our wholly owned and majority-owned subsidiaries attract and retain top talent motivated to deliver results for clients.

      • 1901 Group
      • Dynetics
      • Gibbs & Cox
      • Leidos Biomedical Research
      • Leidos Digital Solutions
      • BEONTRA
      • QTC
      • Leidos Engineering
      • Systems Made Simple
      • Varec
      Gibbs & Cox-designed DDG-51 Arleigh Burke-class destroyer at sea

      Leidos completes Gibbs & Cox acquisition, expanding maritime undersea, autonomous and cybersecurity capabilities.

      Read Press Release

    • Contract Vehicles

      Whether you’re a potential government customer or a prospective supplier, through this listing you can find our technical and professional services under pre-negotiated terms and conditions.

      • Governmentwide MACs & IDIQs
      • GSA Schedules
      • Agency Specific IDIQs
    • Global

      With more than 400 locations in 30 countries, we continue to expand our presence and strengthen our international relationships.

      • United Kingdom & Europe
      • Australia
      • Israel
      • Middle East
      • Canada
      plane flying over water

      Leidos has announced the completed acquisition of Cobham Aviation Services Australia’s Special Mission business.

      Hop Onboard to Learn More

    • Trust

      Cybersecurity and data privacy is central to what we do; protecting data, systems, and infrastructure that are critical to our employees, customers, communities, and stakeholders.

      • Commitment to Privacy & Cybersecurity
      • Cybersecurity
      • Data Privacy
      • Privacy Statement
      Citizens walking with data flowing around them

      Today, tomorrow, and every day is Data Privacy Day.

      Read the Article

  • Markets
    • Aviation

      From sidewalk to sky, we've got you covered.

      • Air Traffic Management
      • ANSP Professional Services
      • Security Solutions
      • Intelligent Approach
      • Scenario Planning & Forecasting
      • Passenger Flow Measurement
      • FODD & Fuels Management
      • Flight Management & Briefing
      Leidos Smartlane in use at an airport

      Safeguarding travel and trade at a global scale with fully-integrated security detection solutions.

      Learn About Our Portfolio

    • Defense

      From airborne work alerting warfighters to autonomous platforms protecting sea lanes and shores, we're enabling mission success across every domain.

      • Advanced Manufacturing
      • Airborne
      • Autonomy & Autonomous Solutions
      • Command & Control
      • Cyber
      • Digital Modernization
      • Force Protection
      • Hypersonics & Strike Systems
      • JADC2
      • Operations & Logistics
      • Training
      Gibbs & Cox-designed DDG-51 Arleigh Burke-class destroyer at sea

      Leidos completes Gibbs & Cox acquisition, expanding maritime undersea, autonomous and cybersecurity capabilities.

      Read Press Release

    • Energy & Industry

      Leidos is uniquely equipped to support your important work in critical industries such as energy, transportation, and manufacturing.

      • Power Delivery
      • Integrated Energy Management
      • Electrification & Clean Energy Services
      • Project Finance & Development
      • Advanced Communications Solutions
      • Manufacturing Systems
      • Site Management & Operations
      • Transportation
      Electricity pylons in sunny field

      Leidos delivers a complex modeling project resulting in a clear view of bulk electric and sub-transmission systems for FirstEnergy.

      Read the Case Study

    • Government

      We support important programs that expedite identity theft recovery, protect electronic health records, streamline paper tax filings, enhance consumer fraud investigations, support census data collection, and enable scientific research.

      • Cybersecurity
      • Digital Modernization
      • Health IT
      • Forms Processing
      • Operations & Logistics
      • Mission Software Systems
      IT analysts in discussion over monitors

      Leidos completes acquisition of 1901 Group, expanding digital modernization capabilities.

      Read Press Release

    • Healthcare

      We draw on decades of success to deliver a range of solutions and services to meet the healthcare challenges of today.

      • Hospital Systems
      • Federal Health
      • Military & Veterans Health
      Healthcare professional using tablet

      Taking a strategic approach to experience true digital transformation in healthcare.

      Read White Paper

    • Homeland

      Integrating, applying, and advancing IT to tackle the ever-advancing challenges of protecting our borders.

      • Biometrics
      • Mission Cyber & Network Defense
      • Integrated Systems
      • Digital Modernization
      • Data Analytics
      • Intelligence & Linguistic Services
      • CBRN Defense
      • Human Capital Services
      • Complex Logistics
      • Ports & Borders
      • Critical Infrastructure
      Leidos Smartlane in use at an airport

      Safeguarding travel and trade at a global scale with fully-integrated security detection solutions.

      Learn About Our Portfolio

    • Intelligence

      With expertise in cloud-enabled automation and augmentation and a team adept at harnessing machine learning, we’re applying powerful analytic tools for superior performance and protection despite a staggering breadth of data.

      • Intelligence Community Engineering
      • Collection, Analysis, & Reporting
      • Operational Support & Training
      Woman looking at computer screen reflection in glasses

      Our DevOps Lab is an advanced, unclassified, state-of-the-art center dedicated to software and hardware development and engineering.

      Learn more about the Lab

    • Science

      Providing groundbreaking scientific research and environmental management best practices that make headways in the defense, civilian, and health markets.

      • Life Sciences
      • Autonomous Systems
      • Airborne & Ground ISR
      • Command & Control
      • Environmental Science
      • Modeling, Simulation, & Training
      • Sensors
      • Specialty Sciences
      Illustration representing health-focused scientific research

      NCI's Frederick National Laboratory has launched three initiatives focused on SARS-CoV-2.

      Read the Article

    • Space

      Speed, security, and scale for your most critical space missions

      • Mission Operations
      • Human Exploration
      • ISR
      • Payloads
      • Domain Awareness
      • Propulsion
      Female behind a transparent screen with text and graphs visible

      IT systems disappear into the background by providing an enhanced user experience

      Learn how IT Enables the Mission

  • Capabilities
    • Cyber Operations

      We use intelligent automation and AI/ML-driven analytics, combined with detection and mitigation, to protect and defend networks.

      • Quantum
      • Zero Trust
      • Security Operations Center
      • Cyber Resiliency
      • Risk Management Framework
      • Cyber Analytics
      • Information Assurance
      • Insider Threat
      • Accredited Testing & Evaluation
      • EXCITE
      • Electronic Warfare
      binary code

      Outpacing adversaries through the application of IT, engineering, and science.

      From Castles to Cities with Zero Trust

    • Digital Modernization

      We deliver resilient IT solutions and managed services that leverage trusted AI and full-spectrum cyber to decrease vulnerabilities in complex IT operations.

      • Application Modernization
      • Cloud
      • Data Center Modernization
      • Digital Workplace
      • Mobility
      • SecDevOps
      • User Engagement
      IT analysts in discussion over monitors

      Leidos completes acquisition of 1901 Group, expanding digital modernization capabilities.

      Read Press Release

    • Integrated Systems

      We deliver high-performing hardware and software systems to solve challenges in an array of specializations.

      • Assured-Position Navigation & Timing
      • Autonomous & Unmanned Systems
      • Biometrics
      • Security Detection & Automation
      • Sensors, Signal Processing, & Analysis
      • Space
      • Strike Systems & Hypersonics
      • TRAPS
      Gibbs & Cox-designed DDG-51 Arleigh Burke-class destroyer at sea

      Leidos completes Gibbs & Cox acquisition, expanding maritime undersea, autonomous and cybersecurity capabilities.

      Read Press Release

    • Mission Operations

      In-depth domain knowledge and mission understanding to provide cost-effective tools and enhanced processes that are secure, resilient, and support our customer's critical missions.

      • Antarctic Support Contract
      • EngineeringEdge® NextGen
      • ISS Cargo Mission Contract
      • Leidos Performance Management
      • UK Logistics & Operations
      • StarTT®
      • Strategic National Stockpile
      Ice sheet in Antarctica

      Each year, Leidos moves more than six million pounds of cargo and coordinates 100 flight missions to and from Antarctica.

      About Our Role

    • Mission Software Systems

      Through disciplined processes, common tools, reusable frameworks, automation, collaboration, and domain expertise, our mission software systems are designed to deliver secure, mission quality software.

      • Command & Control
      • LEAF
      • SE Core
      • Tactical Data Links
      • AI/ML
      Software on a mission text on blue background

      Mission quality software. Silicon Valley speed.

      More on Building Better Software

    • Enabling Technologies

      Our enabling technologies are the backbone of our core capabilities, supporting our customer's important work from the front lines.

      • Secure, Rapid Software
      • Trusted AI/ML
      • Full-Spectrum Cyber
      • Rapid Prototyping & Manufacturing
      Military radar simulation with green display, showing a glowing grid with coordinates and positioning numbers

      How we are deploying AI to solve the world’s toughest problems.

      Artificial Intelligence in Action

    • Technology Certifications

      We partner with world-class technology providers to develop innovative solutions for our customer’s toughest challenges.

      • AWS
      • Cisco
      • Microsoft
      • Scaled Agile
      • ServiceNow
      group of coworkers looking at computer monitor

      We help our partners save money and improve performance.

      How the Cloud Saved Some Coin

  • Insights
    • Insights

      Expertise, industry leadership, unique perspectives, and more — directly from our employees and stakeholders.

      • Latest Insights
      • MindSET Podcast
      • Press Releases
      • Heroes of Leidos
      • Our Experts
      • Careers
      • Military & Veterans
      • Diversity, Equity, & Inclusion
      • Fact Sheets
      • Articles
      • Case Studies
      • Infographics
      • Q&As
      podcast microphone

      Listen to the stories behind the world's most important work in the MindSET podcast.

      Explore the MindSET Podcast

  • Careers
    • Latest Opportunities

      Keep up to date on the latest career opportunities at Leidos.

      • Military Veteran Program
      • External Referral Program
      • Intern & New Graduate Jobs
      • Careers with Leidos in the UK
      • Careers with Leidos in Australia
      • Opportunities for Leidos Employees
      People icons with gradient over

      At Leidos, we have a strong focus on our employees’ career, flexibility, and well-being.

      Learn more about Leidos Life

    • Life at Leidos

      A career at Leidos offers meaningful and engaging work, a collaborative culture, support for your career goals, while nurturing a healthy work-life balance.

      • Our Values
      • Our Culture
      • An Inclusive Workforce
      • Build a Career
      • Leidos Alumni Network
      People icons with gradient over

      At Leidos, we have a strong focus on our employees’ career, flexibility, and well-being.

      Learn more about Leidos Life

    • Pay & Benefits

      Pay and benefits are fundamental to any career decision, which is why our compensation packages reflect the importance of the work we do for our customers.

      • Compensation
      • Health & Wellness
      • Income Protection
      • Leave
      • Retirement
      • Family Benefits
      People icons with gradient over

      At Leidos, we have a strong focus on our employees’ career, flexibility, and well-being.

      Learn more about Leidos Life

    • Frequently Asked Questions

      Find answers to the most commonly asked questions related to securing a role at Leidos.

      • Searching for a Role
      • Applying for a Job
      • Determining Application Status
      • System Access
      • Job Eligibility Requirements
      • Receiving Job Notifications
      • Our Talent Community
      • Career Insights
      People icons with gradient over

      At Leidos, we have a strong focus on our employees’ career, flexibility, and well-being.

      Learn more about Leidos Life

  • Search Search
  • Company
  • Markets
  • Capabilities
  • Insights
  • Careers
Back to top

Breadcrumb

  1. Home
  2. Insights

SecDevOps: A People-Centric Approach to Secure Software

Agile software development team

The world of enterprise and government software is changing. DevOps is supercharging the software design, development and deployment process, leading to faster releases, and more consistent, reliable implementations.

Now, Leidos is ensuring that security stays top-of-mind in the software development process by putting it first in this equation. To demonstrate that, instead of calling our development lifecycle DevSecOps we call it Secure DevOps (SecDevOps).

As originally conceived, DevOps emerged as a way to unite two opposing mindsets in software development. Developers were traditionally the 'go-go' group, advocating for new features and benefits in software. Systems administrators were the 'no-no' group on the other side of the equation, cautious of changes that might disrupt system reliability. Security professionals felt the same caution over the introduction of new vulnerabilities.

SecDevOps unites security, development and operations so that they work together towards a common goal by making enhancements in three areas:

  • People. It combines developers and operations staff into teams with shared skills and common goals.
  • Process. It formalizes the development and deployment process into a standard pipeline with clearly defined responsibilities. Developers configure infrastructure directly in code, and are often responsible for sustaining the virtual infrastructure in which their applications run. Operators provide the underlying hardware and storage services to support developers' goals.
  • Tooling. SecDevOps pipelines rely on common tools that automate these underlying processes for consistency, accountability and efficiency. For the first time, all stakeholders can view and contribute to the same development and deployment records. There is a single source of truth for the SecDevOps team. Along with the enhanced processes, this creates a platform for continuous integration, in which developers quickly merge changes into a single branch that is then automatically tested. This leads to faster software releases with lower error rates.

Shining a light on security

Successful SecDevOps teams have perfected this transition to a well-oiled development and deployment pipeline that automatically checks software and virtual infrastructure for reliability, quality, compliance and security before allowing for final deployment. This has created room for another participant to sit in the middle of that process: security.

Developers releasing features at breakneck speed can introduce new attack vectors, so security professionals traditionally staked their ground in the 'no-no' camp. Security staff wanted to protect systems from harm and would be cautious about new changes.

SecDevOps teams use their unified approach to integrate security personnel, processes , cultures, and a common set of tools seamlessly into the software deployment pipeline. Security skills, processes, and tools become an explicitly defined part of the mix.

In a SecDevOps team, security processes and tools are a resource for developers and operations staff. For example, developers configuring infrastructure for their applications would have access to a set of standard, security-scanned and approved templates from which to generate new virtual server images. These hardened server builds would reduce the possibility of developers accidentally introducing security vulnerabilities.

Other security measures that SecDevOps teams can introduce into development pipelines include test automation. The team can implement tools and processes to support security unit testing and even threat modeling, where the software build is automatically tested for different threat vectors ranging from spoofing through to privilege elevation.

Putting people first

Processes and tools can empower a team to produce more secure code and deployments, but managers must not underestimate the human side of SecDevOps. They must consider how teams relate to each other, and how members collaborate.

Overcoming cultural divisions will be a big factor here. All stakeholders in a team will be used to working in a certain way, and with a degree of autonomy. Empowering them to work harmoniously together will involve a mixture of training and incentives. Managers must make each team jointly responsible for the full lifecycle of the product and must incentivize them using the appropriate metrics.

These metrics could range from technical ones such as release cadence and the number and severity of reported bugs, through to key performance indicators that reflect business goals. Agile managers may change how these metrics relate to service level agreements over time as the organization's needs change.

SecDevOps teams that align and incentivize their team members correctly can empower them to leave past agendas behind and walk in lockstep as they pursue a new, common goal. They will be able to deploy reliable software along consistent security rails that help rather than hinder development teams in their journey to design feature-rich software.

For more information about how Leidos is empowering SecDevOps teams, download our SecDevOps fact sheet.

Download the SecDevOps Fact sheet

Author
Garland Garcia
Garland Garcia Chief Cloud Solution Architect

Garland M. Garcia is the Chief Cloud Solution Architect for the Enterprise & Cyber Solutions within Leidos Defense and Intelligence group.  In his role, Garland leads cloud solutions for large-scale programs across the Leidos portfolio which includes major customers such as DISA, Air Force, Army, IDF, NATO, agencies with more than 200 active cloud customer accounts.

Share
  • Share on Facebook
  • Share on Twitter
  • Share on LinkedIn
  • Share via Mail
  • Print Insight

Posted

December 21, 2018

Estimated Read Time

Author
Garland Garcia

Tags

Digital Modernization
Government
Defense
Article
NGEN
Intelligence
I/ITSEC

Sign up for our newsletters

Stay up to date on our expertise, industry leadership, unique perspectives, and more by subscribing to our newsletters.

  • Company
    • Our Business
    • Mission, Vision, & Values
    • Leadership
    • History
    • Diversity, Equity, & Inclusion
    • Responsibility & Sustainability
    • Ethics & Compliance
    • Rankings & Awards
    • Partners
    • Subsidiaries
    • Contract Vehicles
    • Global
    • Trust
  • Markets
    • Aviation
    • Defense
    • Energy & Industry
    • Government
    • Healthcare
    • Homeland
    • Intelligence
    • Science
    • Space
  • Capabilities
    • Cyber Operations
    • Digital Modernization
    • Integrated Systems
    • Mission Operations
    • Mission Software Systems
    • Enabling Technologies
    • Technology Certifications
  • Insights
    • Newsroom
  • Careers
    • Life at Leidos
    • Pay & Benefits
    • Alumni
    • FAQs

Want to know more?

Contact us about product information and pricing, customer feedback, stockholder services, or just to voice a concern.

Get started

  • © 2023 Leidos

  • Trust
  • Ad Choices

  • Privacy Statement
  • Email Preferences
  • Do Not Sell My Personal Information
  • © 2021 Leidos
  • Australian Privacy Statement
  • Australian Whistleblower Policy
  • Ad Choices
  • Email Preferences
  • Do Not Sell My Personal Information

Utility Footer Navigation

  • Products
  • Customers
  • Suppliers
  • Investors
  • Employees
  • Accessibility
  • Twitter
  • Facebook
  • Instagram
  • Linkedin
  • YouTube