H2K Infosys Forum

AI Assistant
What is secret mana...
 
Notifications
Clear all

What is secret management and how is it implemented in DevSecOps?

 
vinay
Member Moderator
Translate
English
Spanish
French
German
Italian
Portuguese
Russian
Chinese
Japanese
Korean
Arabic
Hindi
Dutch
Polish
Turkish
Vietnamese
Thai
Swedish
Danish
Finnish
Norwegian
Czech
Hungarian
Romanian
Greek
Hebrew
Indonesian
Malay
Ukrainian
Bulgarian
Croatian
Slovak
Slovenian
Serbian
Lithuanian
Latvian
Estonian

Secret management is the practice of securely storing, accessing, rotating, and auditing sensitive information such as passwords, API keys, tokens, and certificates used by applications and pipelines. In DevSecOps, secret management is implemented by removing hardcoded credentials from source code and managing them centrally using tools like HashiCorp Vault, AWS Secrets Manager, Azure Key Vault, or Kubernetes Secrets. These tools integrate with CI/CD pipelines to inject secrets securely at runtime, enforce least-privilege access, and enable automatic rotation. Proper secret management reduces security risks, supports compliance, and is a core skill covered in AWS DevSecOps Certification training for real-world cloud security implementations.


Quote
Topic starter Posted : 05/01/2026 6:12 am
Share: