Overview – taxonomy of assessment and audits
In this chapter, we will discuss the assessment and auditing of CI/CD design patterns. Assessments and audits can be beneficial to improve the operational performance of CI/CD. There are other outcomes of audits and assessments, such as ensuring compliance and maintaining the right security posture for the pipeline. Before we go into the details, let’s first get familiar with the key terms:
- Taxonomy: This is a science that deals with naming, describing, and classification. In the context of auditing and assessments, we will attempt to characterize different kinds of audits and assessments. We will also discuss the different methods, tools, and techniques for performing these activities for CI/CD.
- Assessments: Using surveys, questionnaires, and so on to come up with recommendations and actionable guidance to improve the state of a particular system. Assessments can range from a broad scope to a specific scope depending...