diff --git a/content/en/security_chaos_engineering.md b/content/en/security_chaos_engineering.md new file mode 100644 index 0000000000..2ae37e76fc --- /dev/null +++ b/content/en/security_chaos_engineering.md @@ -0,0 +1,16 @@ +--- +title: Security Chaos Engineering +status: Completed +category: concept +--- + +## What it is +Security Chaos Engineering or SCE is a discipline based on [Chaos Engineering](https://glossary.cncf.io/chaos_engineering/). SCE performs proactive security experimentation on a distributed system to build confidence in the system's capability to withstand turbulent and malicious conditions. Security chaos engineers use scientific method loops to achieve this, including steady-state, hypothesis, continuous verification, lesson learned, and mitigation implementation. + +## Problem it addresses +The main priority for [site reliability engineers](https://glossary.cncf.io/site_reliability_engineering/) (SREs) and cyber security engineers is to restore service as fast as possible with the goal of achieving zero downtime and minimizing business impact. SREs and cyber security engineers deal both with pre-failure and post-failure incidents situations. Most security issues are challenging to discover and patch quickly, impacting application or system functionality. Additionally, security incidents are usually tricky to uncover during the development phase. + +## How it helps +Security Chaos Engineering is built around [observability](https://glossary.cncf.io/observability/) and cyber resiliency practices. It aims to uncover the "unknown unknowns" and build confidence in the system, increasing cyber resiliency and improving observability. + +Engineering teams will progressively improve the understanding for security concerns within complex infrastructure, platforms, and distributed systems. SCE improves the cyber resiliency of the entire product, uncovers hidden security issues, exposes the classical blind spots, and prepares teams for critical edge cases. This approach helps SREs, [DevOps](https://glossary.cncf.io/devops/) and [DevSecOps](https://glossary.cncf.io/devsecops/) engineers create confidence in the system, increase cyber resiliency and improve observability. diff --git a/wordlist.txt b/wordlist.txt index 0252c874c9..1ecf94cb7a 100644 --- a/wordlist.txt +++ b/wordlist.txt @@ -43,6 +43,7 @@ cri critic crm customizable +cyber daniel datacenter datadog @@ -153,6 +154,7 @@ saneheaders sbates scalability scalable +sce seokho serverless sexualized @@ -161,6 +163,7 @@ smartsymbols snippets socio sre +sres stateful striphtml subnets