Тёмный
Damien Burks | The DevSec Blueprint (DSB)
Damien Burks | The DevSec Blueprint (DSB)
Damien Burks | The DevSec Blueprint (DSB)
Подписаться
Hello everyone! My name is Damien, and welcome to The DevSec Blueprint, the ultimate blueprint for coding fun and securing runs! 👋 😉

This channel is a hub of in-depth discussions, comprehensive tutorials, and industry insights tailored to tech enthusiasts, developers, cybersecurity professionals, and businesses seeking to fortify their digital infrastructure. Topics of discussion that are included (but not limited to) are DevSecOps, Cloud Security, DevOps methodologies, and security development best practices. 🔐💻

I promise that the content created here will be far from dry and entertaining! 😊🎉

Feel free to like, subscribe, comment, and share with your friends! 🤗🤝👍
Комментарии
@aaronshunter
@aaronshunter 3 дня назад
Awesome recap! It was great seeing you there so many times 🤩
@damienjburks
@damienjburks 3 дня назад
Thank you so much for watching Aaron! Definitely enjoyed meeting you in person and seeing you several times! Can't wait to see you again 😃
@manojkumar-jt3fw
@manojkumar-jt3fw 9 дней назад
U did AWS SAA , AWS Developer Associate & AWS Security Specialist first. And then u did AWS Devoleper Professional ???? is that the right order
@damienjburks
@damienjburks 9 дней назад
Thanks for supporting the channel! Here is the correct order: DVA (Developer), SAA (Solutions), SCS (Security), and then DOP (DevOps).
@manojkumar-jt3fw
@manojkumar-jt3fw 9 дней назад
@@damienjburks Tanx for the reply. I have a doubt. I just completed AWS SAA of stephenes course. And also checking out Serverless part of his developer associate course. I find that, it wil not b adequate for AWS Developer- DevOps job roles. Can u suggest any specific AWS Serverless course for me to get a grip on?
@damienjburks
@damienjburks 9 дней назад
@@manojkumar-jt3fw You'll actually want to do some labs and build a portfolio. I recommend you use Whizlabs for this; more courses won't prepare you for a job. You'll need to get hands-on experience by practicing.
@manojkumar-jt3fw
@manojkumar-jt3fw 10 дней назад
Van u suggest me resources for CompTIA Security+ ?
@damienjburks
@damienjburks 10 дней назад
Absolutely! This is the author I used to pass my CompTIA Security+: a.co/d/0iLkdIh0
@kusehsimonwewoliamo2043
@kusehsimonwewoliamo2043 14 дней назад
I'm targeting to write the exams in September.
@damienjburks
@damienjburks 14 дней назад
Wishing you the best of luck! Thanks for your support 😄
@CAJohnson14
@CAJohnson14 16 дней назад
I'm an SAP Security Architect. I've been looking to obtain certifications in solutions that we often integrate with (like AWS). Just last Thursday, I passed my Solutions Architect - Associate exam. I'm now working towards obtaining this certification. I leveraged both Stephan Maarek on Udemy and Tutorials Dojo for that cert, as well.
@GengoSenmon
@GengoSenmon 21 день назад
Thanks fam. Taking this one before AWS Security Specialty.
@damienjburks
@damienjburks 20 дней назад
No worries! Good luck ☺️
@GengoSenmon
@GengoSenmon 21 день назад
Thanks a lot for this. Company is flipping the bill for several different certs. This is the one I want but will start with your prerequisite recommendation since they will pay for that too💰
@damienjburks
@damienjburks 20 дней назад
No problem! Glad you found it useful 😊 Life is good when the company is flippin the bill 😁💸 Better use em while you can 😉
@ShammahUna
@ShammahUna 27 дней назад
Perfect timing Damien! I’m also preparing for the SA exam and luckily I got Stephane Maarek course on sale! Time to prepare and ace 💃 it was great meeting you at the AWS reinforce conference last week 😊
@damienjburks
@damienjburks 27 дней назад
Awesome! Glad you caught that sale! His course is the BEST! ☺️ With this information, I am most certain you’ll pass! It was nice to meet you as well. Let’s stay connected and happy studying! 📚 💜
@LearnwithAvinashDalvi
@LearnwithAvinashDalvi 28 дней назад
Thanks for sharing insights.
@damienjburks
@damienjburks 27 дней назад
No problem! Glad you enjoyed the video!
@ThoughtfulTechyCloud
@ThoughtfulTechyCloud 29 дней назад
AWS Solutions Architect Associate is definitely a great cert and set of skills to pick up 🙌
@damienjburks
@damienjburks 29 дней назад
I absolutely agree with you! One of the best certs to get imo.
@antoniotavera7316
@antoniotavera7316 29 дней назад
I've been looking into getting this cert in AWS! Thank you for the valuable information 🙌🏽
@damienjburks
@damienjburks 29 дней назад
You're welcome! Thank you for supporting me Antonio! When you bag the cert, report back 😉
@babyboie20
@babyboie20 Месяц назад
Appreciate this one. I need to get one of these certs either the AWS one or Azure one. My biggest issue is I feel I would use up all my free resources trying to train on this and have to pay the moment I try to use these services on a fareal personal project.
@damienjburks
@damienjburks 29 дней назад
No problem bro! Appreciate the support! 😄 Cost is always the problem in a lot of cases. The good thing about AWS is that their free tier accounts do cover a wide range of services to help eliminate the cost of PoCs and personal projects; I'd recommend starting with them first. I definitely believe it's very hard to pay for usage IF you terminate your resources after you use them. Don't leave your EC2 instances running for a month lol - you'll quickly pass the free tier limit. I haven't dived deeply into other CSPs much so I can't provide much advice.
@patrickkabongo1317
@patrickkabongo1317 Месяц назад
Happy to have met you @Damien! Great video. Keep it up. Patrick
@damienjburks
@damienjburks 29 дней назад
It was great to meet you as well Patrick! Thank you for the support 😄
@ammaralim1931
@ammaralim1931 Месяц назад
Keep it up! Great video!
@damienjburks
@damienjburks 29 дней назад
Thank you so much for the support Ammar! 😄
@ammaralim1931
@ammaralim1931 29 дней назад
@@damienjburks , Good timing. I have someone who is looking to get this certifications and was looking for something recent.
@LoriCollier1
@LoriCollier1 Месяц назад
Great information! I heard some of it before but you gave me it to me in the best way.
@damienjburks
@damienjburks Месяц назад
Thank you so much! This means a lot to me 💜💜
@hetsonii
@hetsonii Месяц назад
How does it import/export context from the docker cli version?
@damienjburks
@damienjburks Месяц назад
Hey! Try these commands: Importing Context: 1 . docker run -u zap -p 8080:8080 -i owasp/zap2docker-stable zap.sh -daemon -port 8080 2. docker cp <LOCAL_PATH>/<CONTEXT_NAME>.context <CONTAINER_ID>:/zap/ 3. curl "localhost:8080/JSON/context/action/importContext/?contextFile=/zap/<CONTEXT_NAME>.context&apikey=<API_KEY>" Exporting Context: 1. docker run -u zap -p 8080:8080 -i owasp/zap2docker-stable zap.sh -daemon -port 8080 2. curl "localhost:8080/JSON/context/action/exportContext/?contextName=exampleContext&apikey=12345" 3. docker cp <CONTAINER_ID>:/zap/exampleContext.context ./exampleContext.context Let me know if you run into any issues.
@hetsonii
@hetsonii Месяц назад
@@damienjburks Thanks! That worked! The only thing I did differently was that I mounted my local directory that contained the context file with the container instead of copying it into the container.
@damienjburks
@damienjburks Месяц назад
@@hetsonii glad it worked! If you can, please respond with the commands you used so others can reference if they have the same question ☺️
@sebas.astigarraga
@sebas.astigarraga Месяц назад
Hello, Sebas here, I am also for DevOps. I had some questions, why not recommend the SysOps Admin certification? I was listening carefully to the services you recommended to study a little more, and I dealt with most of them in SysOps, to face DevOps, wouldn't SysOps or Dev be more appropriate?🤔
@damienjburks
@damienjburks Месяц назад
Hello Sebas! First off, thanks for watching the video and your support! 😄🤗 To answer the first part of your question: So I've heard some folks recommend that you take the SysOps Administrator before you sit for this exam since some of the services you encounter would be featured on the exam. Also, I haven't taken the SysOps Administrator, which is part of the reason why I did not mention that in my video. I have taken both the Solutions Architect and Developer Associate exams, and I did see a bit of overlap in featured services! To answer the second part of your question: I personally believe the Developer Associate is more appropriate due to my testing experience. Most of the services from the Developer Associate were featured on this exam and that foundational knowledge will come in handy.
@scifithoughts3611
@scifithoughts3611 Месяц назад
I think this is one of those situations where it depends on the person taking the exam. For me, I have a large developer background and some AWS experience. But my system administration experience is far less. So I’m thinking I need to spend more time on the systems certification courses to do better on the exam. How I would diagnose this is take the sample test and based on the sample tests look at the items that you’re getting wrong and research what domain they are from: developer, systems ops, architecture. then yeah you should take those courses, read articles, dojo, etc.
@scifithoughts3611
@scifithoughts3611 Месяц назад
Thanks, Damien for sharing your knowledge!
@damienjburks
@damienjburks Месяц назад
@@scifithoughts3611 I love the perspective you’ve shared. Thank you so much for supporting the video and commenting below with your thoughts. 😁
@erockyoulikea
@erockyoulikea 26 дней назад
Thanks for your honesty about how much time you spent to prepare. So many people pass and then say they didn’t study or put as many hours in to preparation as they actually did. I think it’s important to let people know how much time they need to commit as well as the study materials used so that they are prepared and have the best chance of passing the exam.
@user-ko9id9hn9u
@user-ko9id9hn9u 2 месяца назад
Good info Damien. Considering that I have taken this exam, and passed, every bit of information is spot on. Having either version of the Solutions Architect will definitely be an asset, foundational as well as advanced knowledge will help you with this exam. One bit about Stephane’s course, my recommendation would be to supplement some of the services listed at the end with the official white papers. There are a few rabbit holes you will need to go down (KMS, Config, GuardDuty and Network Security(surprisingly, my exam was HEAVY on VPC security.)) Good stuff!
@damienjburks
@damienjburks 2 месяца назад
Thank you so much for watching! 🙌🏽🙌🏽 I definitely agree with everything you said - especially the need to know and understand VPC security. 🔐
@gilmaslima
@gilmaslima 2 месяца назад
Thanks for sharing your experiences with taking this certification. I have three AWS associate-level certifications and plan to take this new one next month. Hello from Brazil.
@damienjburks
@damienjburks 2 месяца назад
Thank you for your support! Good luck with your exam - I know you’ll ace it! ☺️
@Cello624
@Cello624 2 месяца назад
Thanks for sharing very informative.
@damienjburks
@damienjburks 2 месяца назад
Glad you found this video helpful! ☺️
@JohnMitchellCalif
@JohnMitchellCalif 2 месяца назад
great advice! Very clear. I appreciate you list specific resources and *why* they help complete the Security Specialty exam. I'm working with an enterprise right now and will check if this will help my client. Thanks! Subscribed.
@damienjburks
@damienjburks 2 месяца назад
Glad you liked the video John! Thank you so much for the support! 💜☺️
@BrunoAlves-jn2tj
@BrunoAlves-jn2tj 2 месяца назад
Hey Damien. Thanks for sharing these useful tips for this exam! I am starting this journey to get this hard exam. Greeting from down here in Brazil. ✌
@damienjburks
@damienjburks 2 месяца назад
Glad you found this video helpful Bruno! You’ll for sure ace this exam 😄
@Marloni_Boloni
@Marloni_Boloni 3 месяца назад
Great Video! Very informative
@damienjburks
@damienjburks 3 месяца назад
Thank you for the support! Glad you enjoyed the video!
@kryptik8884
@kryptik8884 3 месяца назад
Great tips! I'm planning to pass this exam in the near future. Although I really like stephane, his DOP course didn't dive deep enough into the level of detail required by this exam...
@damienjburks
@damienjburks 3 месяца назад
Thank you! You will definitely pass this exam… in fact, you will ace it! 🙌🏽🙌🏽 If Stephane’s course didn’t help, I’d recommend Adrian or ACG as an alternative. Also, it would be wise to leverage TutorialsDojo as much as possible to help fill those gaps in knowledge. ☺️ You got this! 💪🏾🔥
@TheBeach5563
@TheBeach5563 3 месяца назад
Hey Congrats man and Yes Stephanne is an awesome instructor. Im working on Azure now but when I get ready for AWS again gonna use his material. Good luck, love hearing good news like this. Inspiring.
@damienjburks
@damienjburks 3 месяца назад
Thank you so much! I appreciate the support! ☺️ Stephane is the BEST!!! Azure is on my list; feel free to let me know what study material you use! ☺️
@ibmuser13
@ibmuser13 3 месяца назад
very useful tips!! I will definitely go to the test center to take the exam, that was something I was always thinking too, maybe I had to hear it from you!!
@damienjburks
@damienjburks 3 месяца назад
So glad you found it useful! Testing centers, I believe, are much better testing environments - especially if you have too many distractions at home in the office 😉
@JohnMitchellCalif
@JohnMitchellCalif 4 месяца назад
very useful! Subscribed
@damienjburks
@damienjburks 4 месяца назад
Thank you so much!!! Means a lot 💛☺️
@aaronshunter
@aaronshunter 4 месяца назад
Nice breakdown and highlight of your experience! Great tips to avoid a headache after the exam. Keep it up, Damien! 🙌
@damienjburks
@damienjburks 4 месяца назад
Thank you so much for the support! Really appreciate it 💛😁
@saboorali8920
@saboorali8920 4 месяца назад
Just a quick tip bro ... Appreciate the content and efforts... Best if you skip the intro music and logo, etc. ... Everyone these days just wants to get to the point and bounce... Thanks again.
@damienjburks
@damienjburks 4 месяца назад
Thanks for watching, and I appreciate your input! 💛
@JohnJohnson-ch6xq
@JohnJohnson-ch6xq 4 месяца назад
I'm 56,can I still do devsecops?
@damienjburks
@damienjburks 4 месяца назад
You sure can! DevSecOps is something that can be learned at any age, and people are always hiring for devsecops engineers!
@willabeez3106
@willabeez3106 4 месяца назад
👏🏾👏🏾👏🏾👏🏾
@willabeez3106
@willabeez3106 4 месяца назад
Hey Damien I know you get this all the time but what do you feel is the best place to learn python in your opinion?
@damienjburks
@damienjburks 4 месяца назад
It’s all good! Here is the course that I’d recommend you purchase to learn Python! www.udemy.com/course/complete-python-bootcamp/ Udemy is good for having sales, so I’d recommend you wait until a sale comes up and then purchase it for a cheap price! If you want an alternative, SoloLearn and Codecademy are also good places as well.
@willabeez3106
@willabeez3106 4 месяца назад
@@damienjburks kool thanks
@willabeez3106
@willabeez3106 4 месяца назад
Yess !!!
@damienjburks
@damienjburks 4 месяца назад
Thanks for your support! Glad you agree also!
@MedenEshete
@MedenEshete 4 месяца назад
Thank you for providing valuable information for individuals interested in pursuing cloud security but unsure about which certifications to focus on.
@damienjburks
@damienjburks 4 месяца назад
You're welcome! I'm happy that you found this video helpful 😄
@thek8sstackwithsuresh
@thek8sstackwithsuresh 4 месяца назад
Consider we are using an ansible configuration management tool. which are the tools for compliance and security best practices and regulations..
@damienjburks
@damienjburks 4 месяца назад
There are two tools that I’d recommend you get started with: 1. OpenSCAP - auditing and compliance based on SCAP (Security Control Automation Protocol) standards 2. SCAT (Security Compliance Automation Tool) - another compliance tool with a broader scope Both of these can be integrated easily with Ansible. Also, make sure you’re leveraging the Ansible Hardening role to harden all of your resources when you’re creating or updating your playbooks.
@JohnMitchellCalif
@JohnMitchellCalif 4 месяца назад
great info! Working on them. Subscribed.
@damienjburks
@damienjburks 4 месяца назад
Thank you so much for watching and your support! 🙌🏽💛 Definitely let me know how it goes with the certifications you chose to work on getting 😄
@oguzhanaras2897
@oguzhanaras2897 4 месяца назад
Nice information, really helpful going forward.. Thanks
@damienjburks
@damienjburks 4 месяца назад
No worries! Glad you found this video helpful ☺️
@aaronshunter
@aaronshunter 4 месяца назад
Great video list, breakdown of each exam (Security+, Linux+, DVA, CKA), and value that each will hold. Well done! 👏
@damienjburks
@damienjburks 4 месяца назад
Thank you so much Aaron! Really means a lot! I put quite a bit of effort into making this video ☺️
@ianwalker-smith4617
@ianwalker-smith4617 5 месяцев назад
What about threat modeling as part of shift left.
@damienjburks
@damienjburks 5 месяцев назад
I believe that TM is pivotal when we are shifting left, ideally in the real of cybersecurity as a whole. When the design requirements are drafted prior to implementation, TM’ers need to be in included in that discussion prior to implementation. This is all a part of the SSDLC.
@babyboie20
@babyboie20 5 месяцев назад
Informative like always. congratz on the channel bro
@damienjburks
@damienjburks 5 месяцев назад
Appreciate the support bro! 🙌🏽💛
@Moltak04
@Moltak04 5 месяцев назад
Is Python better then Java
@damienjburks
@damienjburks 5 месяцев назад
Yes! I believe Python is better than Java in a lot of ways with the EXCEPTION, and I do mean exception, of dependency management. Java's dependency management is LIGHT-YEARS ahead of Python's, and it's so much easier and better to use. Especially when it comes to tracking those dependencies and updating them without the need for virtual environments. (speaking from experience with both languages)
@shareefgondal
@shareefgondal 5 месяцев назад
You worked well but I think you need a good video editor.
@damienjburks
@damienjburks 5 месяцев назад
Thank you for your feedback! It is greatly appreciated ☺️
@shareefgondal
@shareefgondal 5 месяцев назад
@@damienjburks You're welcome by the way I'm saying because I'm a video editor and daily consumer of videos of RU-vid. I can help you with editing if you want...
@damienjburks
@damienjburks 5 месяцев назад
@@shareefgondal Maybe sometime in the future I'll hire an editor, but I think I'll handle it from here in the meantime.
@shareefgondal
@shareefgondal 5 месяцев назад
@@damienjburks Oh, that'll be more great if you can handle it yourself.
@aaronshunter
@aaronshunter 5 месяцев назад
Nice list!! 5⃣
@damienjburks
@damienjburks 5 месяцев назад
Thank you so much, Aaron! Hope you enjoyed this video!
@jarredstone9660
@jarredstone9660 5 месяцев назад
Yessir!
@damienjburks
@damienjburks 5 месяцев назад
🙌🙌
@ajeetchaudhary2578
@ajeetchaudhary2578 5 месяцев назад
Good man
@damienjburks
@damienjburks 5 месяцев назад
Thank you for watching! Really appreciate the support!
@aaronshunter
@aaronshunter 6 месяцев назад
Can’t wait to see your plans and videos. #DevSecBlueprint FTW!
@damienjburks
@damienjburks 6 месяцев назад
I really appreciate your support 🥹💛 There are plenty of videos in the works 😉 stay tuned!
@brandoncarroll
@brandoncarroll 6 месяцев назад
Great video Damien! 🎉🎉👍🏻👍🏻
@damienjburks
@damienjburks 6 месяцев назад
Thank you so much Brandon! Your support is very much appreciated 😄
@aaronshunter
@aaronshunter 6 месяцев назад
Great video. Keep it up! 🎉
@damienjburks
@damienjburks 6 месяцев назад
Thank you so much Aaron! Glad you liked it!