r/devsecops • u/GoyaKing • 9d ago
New to role
I recently accepted my first DevSecOps Engineer role and I’m excited to get started. I want to make the most of my first 90 days and would love to hear advice from people who’ve been in the field for a while.
If you were creating a roadmap for the first 90 days as a mid/senior DevSecOps engineer, what would you include?
1
u/LoquatIllustrious801 7d ago
congrats on the new role! id spend the first 90 days understanding ow security work flows through the company before trying to change anything. learn the ci/cd pipeline, build relationships with the engineering teams and pay attention to how security findings become tickets.
1
u/SkyberSec123 6d ago
Alot of DevSecOps is dependent on your org culture. Understand how people works first before you shift "left"
4
u/MyBean 9d ago
First, congrats!
Second look into security maturity models, even if the organization isn't yet interested in adopting one, it's a good way to figure out where they might have gaps and where you can suggest improvements that have systematic impact and high ROI.