From Commit to Runtime: Secure Software Delivery and Automated Response with Datadog
About this Session
Modern software teams face a fragmented toolchain: code lives in one place, security scanning in another, and runtime monitoring somewhere else entirely. Developers context-switch between tools; the result is slower delivery, higher risk, and friction that hurts both developer experience and security outcomes. This workshop demonstrates how Datadog unifies the full software delivery life cycle—from the first line of code to production runtime—in a single platform.
In this hands-on workshop, you’ll work through the full delivery life cycle. You'll put shift-left security into practice with SAST to find vulnerabilities in code, set up PR Gates to block vulnerable code before it ever merges, then let Bits AI Dev Agent auto-remediate findings — and watch the gate pass when the fixes land.
When something is already running in production, you'll see how to identify attacks and suspicious activity on APIs and workloads. You'll also learn how to connect those signals to Workflow Automation for SOAR-style responses, enriching security events with additional context and automatically triggering notifications or remediation.
By the end of the workshop, you will leave with a practical, end-to-end blueprint for building secure, observable, and automated DevSecOps workflows using Datadog.
A GitHub account is required for the hands-on lab.