Eating the Open Source Security Sandwich with Skootrs
Offered By: OpenSSF via YouTube
Course Description
Overview
Explore the complexities of securing open source software in this 19-minute conference talk by Michael Lieberman from Kusari. Delve into the growing list of security considerations for software developers, including SLSA for secure builds, SPDX for creating SBOMs, Sigstore for software signing, and OpenVEX for vulnerability exchange. Learn about the "sandwich" of tools, practices, and data that developers must now produce and consume. Discover how Skootrs, a new open source tool, simplifies the adoption of these security practices through automation and guardrails, making it easier to implement cybersecurity measures from the start of a software project rather than retrofitting them later.
Syllabus
Eating the Open Source Security Sandwich with Skootrs - Michael Lieberman, Kusari
Taught by
OpenSSF
Related Courses
SPDX 3.0 Overview - Introduction to Software Package Data ExchangeLinux Foundation via YouTube Software Part Catalog Management for Successful SBOM Creation
Linux Foundation via YouTube Our Journey to Open Source - From a Conservative Japanese Company
Linux Foundation via YouTube SW360 SBOM - Managing Vulnerability Information, SPDX Documents and Dependency Networks
Linux Foundation via YouTube OpenDataology: Fixing Dataset Licensing for AI - A Call to Arms
Linux Foundation via YouTube