youtube image
From YouTube: For CNCF: OWASP ZAP & Observability—Made For Each Other!

Description

Observability has typically been used in the context of performance-related tracing and troubleshooting. Using observability for security and compliance, however, is a much more powerful, comprehensive, and modern way to think about your DevSecOps pipeline. This is done by observing the millions of events in every thread of every process of every container of an application and detecting security & compliance risks by identifying needles in this haystack. Observability and OWASP ZAP, by themselves, are highly valuable. However, together, 1 plus 1 is greater than 2.