Security Incident Response Approaches in DevSecOps and CI/CD: A Systematic Mapping
收藏资源简介:
This repository provides the replication package for the systematic mapping study “Security Incident Response Approaches in DevSecOps and CI/CD: A Systematic Mapping.” The study investigates how security incident response is addressed in DevSecOps and continuous integration and continuous delivery/deployment (CI/CD) environments, with particular attention to high-level response approaches, response orientation, execution authority, and the empirical and research strategies used to evaluate them. The review process started from 3,195 records collected from seven academic sources. After deduplication, approach-sensitive screening, manual reassessment, and citation tracing, 19 primary studies were included in the final synthesis. The resulting mapping identifies eight non-exclusive security incident response approach families, with AI-driven/adaptive response and automated remediation being the most frequently reported. The materials deposited in this repository support transparency, inspection, and reproducibility of the study. They document the screening and extraction process underlying the reported classifications and provide the basis for reproducing or extending the mapping as research on security automation, self-healing, remediation, and adaptive response in DevSecOps and CI/CD continues to evolve.



