Securing financial transactions: DevSecOps best practices for banking applications

Adebayo, Ayobami Oluwadamilola (2025) Securing financial transactions: DevSecOps best practices for banking applications. International Journal of Science and Research Archive, 15 (2). pp. 733-738. ISSN 2582-8185

[thumbnail of IJSRA-2025-1458.pdf] Article PDF
IJSRA-2025-1458.pdf - Published Version
Available under License Creative Commons Attribution Non-commercial Share Alike.

Download ( 521kB)

Abstract

The growing reliance on digital banking platforms has heightened the need for robust and integrated security mechanisms in financial applications. DevSecOps—a practice that integrates security into every phase of the software development lifecycle—has emerged as a leading strategy for mitigating risks and enhancing secure transaction processing. This study investigates the awareness, implementation, benefits, and challenges of DevSecOps in Nigerian banking and fintech organizations. Using a quantitative research approach, data were collected via structured questionnaires administered to 42 IT professionals including DevOps engineers, cybersecurity analysts, and compliance officers. Findings revealed high levels of awareness and partial implementation of key DevSecOps practices, such as secure coding and CI/CD pipeline integration. However, challenges including toolchain complexity, inadequate training, and poor cross-team collaboration were identified as significant barriers. The study concludes that while DevSecOps has the potential to transform the security landscape of financial transactions, its effectiveness is contingent upon skilled personnel, automated tools, and organizational alignment. Recommendations include targeted training, tool standardization, and enhanced collaboration models to ensure sustained security and operational efficiency in the banking sector.

Item Type: Article
Official URL: https://doi.org/10.30574/ijsra.2025.15.2.1458
Uncontrolled Keywords: DevSecOps; Banking Applications; Financial Transactions; Cybersecurity; CI/CD Pipeline; Secure Coding; Automation; Nigeria; Fintech; Information Security
Depositing User: Editor IJSRA
Date Deposited: 25 Jul 2025 15:28
Related URLs:
URI: https://eprint.scholarsrepository.com/id/eprint/1897