Главная
Study mode:
on
1
intro
2
preamble
3
agenda
4
marek and aleksander
5
risk model
6
fundamentals
7
whys and whats of software composition analysis
8
risks - what if we don't?
9
software composition analysis - risk management scarm
10
contributor profile
11
project activity = project dynamics
12
code quality
13
vulnerabilities cve dynamics
14
how to plug it into the software deployment pipeline?
15
production pipeline
16
devsecops by linux polska
17
how to make it happen? just start...
18
new web service platform...
19
streamline your security assessments
20
sourcemotion
21
thank you, contact us!
Description:
Explore a comprehensive conference talk on securing the software supply chain, delivered at Conf42 DevSecOps 2023. Dive into the fundamentals of software composition analysis and risk management, examining contributor profiles, project dynamics, code quality, and vulnerability assessments. Learn how to integrate security measures into deployment pipelines, implement DevSecOps practices, and streamline security assessments. Gain insights on initiating and maintaining a robust security strategy for your software development process, including the introduction of new web service platforms and tools like SourceMotion.

Securing the Software Supply Chain - Beyond SBOM Risk Assessment

Conf42
Add to list
00:00
-01:42