YoVDO

Building the Software Supply Chain on Docker Official Images

Offered By: Docker via YouTube

Tags

Docker Courses Software Supply Chain Security Courses Software Bill of Materials Courses The Update Framework Courses

Course Description

Overview

Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
Explore Docker's approach to securing the software supply chain in this 33-minute DockerCon 2023 talk. Discover how Docker is modernizing its toolchain to provide security by default, including software bill of materials (SBOMs), provenance, cryptographic signing, and verification. Learn about the application of these principles to Docker Official Images (DOI), a significant component in most teams' software supply chains. Gain insights into how Docker and BastionZero leverage open standards like The Update Framework (TUF) and Supply-Chain Levels for Software Artifacts (SLSA), along with a novel decentralized signing approach using modern cryptographic methods. Understand how these innovations are being incorporated into open-source projects like BuildKit and the Docker CLI to enhance software supply chain metadata and verification.

Syllabus

Building the Software Supply Chain on Docker Official Images (DockerCon 2023)


Taught by

Docker

Related Courses

GitHub Supply Chain Security Using GitGat
Linux Foundation via edX
Introduction to Security Principles in Cloud Computing
Google via Google Cloud Skills Boost
DevOps with GitHub and Azure: Implementing Software Supply Chain Security with GitHub
Pluralsight
Hardening Your Soft Software Supply Chain
Pluralsight
Secure Software Supply Chain: Using Cloud Build & Cloud Deploy to Deploy Containerized Applications
Google via Google Cloud Skills Boost