Skip to content

Commit f61f19c

Browse files
Update 2-design-solutions-best-practices-capabilities-controls.md
1 parent a24196e commit f61f19c

1 file changed

Lines changed: 1 addition & 1 deletion

File tree

learn-pr/wwl-sci/design-solutions-microsoft-cybersecurity-cloud-security-benchmark/includes/2-design-solutions-best-practices-capabilities-controls.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -61,7 +61,7 @@ Network controls remain essential for defense-in-depth and breach containment. K
6161

6262
### Application security and DevOps
6363

64-
Applications and DevOps pipelines must be secured to prevent vulnerabilities. Key practices include:
64+
Applications and Azure pipelines must be secured to prevent vulnerabilities. Key practices include:
6565

6666
- **Secure configuration of cloud services**: Apply security benchmark baseline settings to all cloud services. Use managed identities with least privilege, secure vaults for secrets, and policy enforcement for compliance. *MCSB Controls: PV-2 (secure configurations), AM-2 (managed identities).*
6767
- **Integrate DevSecOps**: Embed static application security testing (SAST), dependency scanning, and secret scanning in CI/CD (Continuous Integration/Continuous Delivery) pipelines. Enforce code quality gates before deployment. *MCSB Controls: DS-6 (secure DevOps), DS-7 (code scanning).*

0 commit comments

Comments
 (0)