1.waht is devsecops
2.how did u implement security scans in pipeline
3. When do u scan docker image befire ir after deployment
4.stages in cicd pipeline
5.what will u do after scans
6.what does container image scanning will do
7.trivy scan
8.checkmarx scans
9.what is code coverage
10.quality gates
11.if code coverage percentage is not met, what suggestions would u give to developer
12.DAST and SCA
13.supply chain attack
14 how do you validate infra as code
15.gir fetch,pull and rebase
16.check something in logs
Grep command
Grep -i
17.service token vs personal access token
18.alpine images uses
19.vault secrets