Why Building Your Ship (Application) with Raw Materials is a Bad Idea! by Jamie L Coleman
Автор: DevOpsDays Singapore
Загружено: 2024-04-18
Просмотров: 167
Описание:
More and more organizations are creating a software bill of materials (SBOMs) to find out what is in their applications. With new legislation surrounding SBOMs surfacing, we are having to comply with regulations such as certifying that the open source parts of our applications are not full of vulnerabilities and following good programming practices. But what happens if we cannot verify the source of this code? Can we simply put it down as raw materials to bypass said certification?
► Check out DevOpsDays Singapore Program: https://devopsdays.org/events/2024-si...
Key Moments:
0:00 | Jamie L Coleman Intro
0:55 | Agenda: What will I talk about today?
1:40 | HMS Victory
2:52 | Open Source is amazing!
3:16 | Benefits of FOSS
3:55 | Supply Chain Problems
4:35 | The three points of supply chain attacks
5:25 | Software Composition Analysis
6:17 | Why Security in Open-source matters!
8:25 | Legislation!
9:52 | Security Bill of Material (SBOM)
10:53 | Security Posture
12:05 | What are raw materials?
14:53 | Static Analysis Tools
15:44 | Summary
17:44 | Who wants some free Swag?
19:41 | Slides and Recordings
https://speakerdeck.com/devopsdayssg/...
Повторяем попытку...
Доступные форматы для скачивания:
Скачать видео
-
Информация по загрузке: