Home / Companies / HashiCorp / Blog / Post Details
Content Deep Dive

Fix the developers vs. security conflict by shifting further left

Blog post from HashiCorp

Post Details
Company
Date Published
Author
Thomas O'Connell
Word Count
2,031
Company Posts That Month
10
Language
English
Hacker News Points
-
Post removed?
No
Summary

The prolonged tension between developers and security teams can undermine the efficacy of cloud security, with both sides having different priorities and using mismatched tools. To resolve this conflict, platform-led workflows that make cloud security seamless and scalable are recommended. This involves shifting further left by establishing a secure, golden developer path, reducing friction between teams, and satisfying their objectives. The shift-left movement emphasizes the importance of testing and other aspects of security and QA review in the early and middle stages of development rather than just at the end. By leveraging APIs, automated checks, self-service tooling, and guardrails like secure modules and policy as code, organizations can avoid bottlenecks created by development teams submitting changes for manual review by security or compliance teams. The right tools and platforms are crucial in improving collaboration between dev and sec teams, with a focus on Infrastructure Lifecycle Management (ILM) and Security Lifecycle Management (SLM). HashiCorp's Infrastructure Cloud, which includes Terraform and Vault, is one such solution that supports secure provisioning and centralized secrets management.

Trends Found in this Post
Trend Post Mentions Total Month Mentions Posts Companies MoM
Secrets Management 35 423 92 54 -59%
Developer Experience 2 212 122 71 -37%
Observability 1 1,473 288 90 -20%
Platform Engineering 1 178 48 25 -40%
Vector Search 1 2,600 253 90 -44%
Use This Data

Use this post, company, and trend context to find content marketing opportunities, perform competitive analysis, or address product feature gaps via the Plushcap MCP server or the Plushcap API.