Evolution of Secure Code Review Practices in Agile and DevOps Methodologies
Keywords:
Secure code review, Agile methodologies, DevOps, secure development lifecycle, continuous integration, static analysis, automated security tools, Author Name, Scopus, Springer, Journal Name, Wissira, Journal Short Form, Wissira Press, Wissir Research Lab, Research Gate, SSRN, ISSN, Academia, UGC Care, PubMed, WOSAbstract
Secure code review has evolved significantly in response to the adoption of Agile and DevOps methodologies. These methodologies, characterized by rapid development cycles and continuous integration and deployment, demand equally agile security practices. This study examines how secure code review practices have transitioned from traditional, isolated approaches to integrated, continuous workflows. It analyzes the impact of automation tools, collaborative strategies, and cultural shifts on secure code reviews. Findings reveal that modern secure code review practices enhance security and productivity while addressing the unique challenges of fast-paced development environments. The paper concludes by highlighting the scope for further research in enhancing automation and developer engagement.




