YoVDO

Achieving End-to-End Software Supply Chain Security with in-toto

Offered By: CNCF [Cloud Native Computing Foundation] via YouTube

Tags

Software Supply Chain Security Courses Jenkins Courses Sigstore Courses SPIFFE Courses in-toto Courses SLSA Courses

Course Description

Overview

Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
Explore the latest advancements in software supply chain security with this informative conference talk from KubeCon + CloudNativeCon Europe 2023. Delve into the world of in-toto, a CNCF Incubated project designed to enhance the security of software supply chains. Learn about recent community-driven developments, including improved artifact tracking for Git, GitBOM, SBOMs, and OCI images, as well as expanded attestation types for SLSA provenance and measured execution. Discover how in-toto integrates with cloud-native identity projects like SPIFFE and Sigstore. Gain insights into existing integrations with Tekton Chains, Jenkins, Gitlab Runners, and rebuiderd from the reproducible builds project. Explore opportunities to participate, collaborate, and implement in-toto to safeguard your own software supply chains. Get a glimpse of ongoing work involving Sigstore, SPDX, GitBOM, and other exciting features in this comprehensive 35-minute presentation by experts Santiago Torres-Arias and Aditya Sirish A Yelgundhalli.

Syllabus

Achieving End-To-End Software Supply Chain S... Santiago Torres-Arias & Aditya Sirish A Yelgundhalli


Taught by

CNCF [Cloud Native Computing Foundation]

Related Courses

Ketchup, Mustard, and Relish of Software Supply Chain Security - Panel Discussion
Linux Foundation via YouTube
SLSA in Action: Securing the Software Supply Chain
Linux Foundation via YouTube
Securing Your Supply Chain by Building with FRSCA
Linux Foundation via YouTube
Open Tools for Secure Supply Chains in Kubernetes - From Release Engineering
Linux Foundation via YouTube
Google SLSA and NIST SSDF - Emerging Software Supply Chain Security Best Practices
Linux Foundation via YouTube