Software Bill of Materials (S-BoM) - Reducing Risk in Third-Party Components
Offered By: OWASP Foundation via YouTube
Course Description
Overview
Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
Explore the critical importance of Software Bill of Materials (S-BoM) in managing third-party and open source component risks in this 36-minute conference talk from AppSecCali 2019. Delve into best practices for systematic risk reduction while maintaining the benefits of external components. Learn how to create S-BoM documents in polyglot build environments and leverage OWASP Dependency-Track for automated identification of outdated and vulnerable components. Discover strategies for automating responses to specific security events and gain insights into emerging standards and government initiatives shaping the future of component risk management. Presented by Steve Springett, Senior Security Architect at ServiceNow, this talk offers practical examples and demonstrations for implementing effective risk identification and remediation strategies with minimal effort.
Syllabus
AppSecCali 2019 - BoMs Away - Why Everyone Should Have a BoM - Steve Springett
Taught by
OWASP Foundation
Related Courses
GitHub Supply Chain Security Using GitGatLinux Foundation via edX Introduction to Security Principles in Cloud Computing
Google via Google Cloud Skills Boost DevOps with GitHub and Azure: Implementing Software Supply Chain Security with GitHub
Pluralsight Hardening Your Soft Software Supply Chain
Pluralsight Secure Software Supply Chain: Using Cloud Build & Cloud Deploy to Deploy Containerized Applications
Google via Google Cloud Skills Boost