Advanced scripting for DevSecOps
For engineers who have finished Bash for ops and Python for security automation and now write automation that runs unattended in production. The Bash half covers processes and file descriptors, error propagation that errexit cannot see, signals and shutdown under systemd and Kubernetes, trust boundaries and privilege, testing, and when a script has outgrown Bash. The Python half covers tool structure and typed configuration, failure design with deadlines and idempotent retries, concurrency on Python 3.14 including the free-threaded build, fleet automation over subprocess, SSH and HTTP, and hostile input. It ends with observability, shipping artifacts, release gates with SBOMs and signatures, and a certificate-rotation runner that ties both languages together. Every example ran on the lab machine.
Progress is saved in this browser only — no account required.