Eating the Open Source Security Sandwich with Skootrs
Offered By: OpenSSF via YouTube
Course Description
Overview
Explore the complexities of securing open source software in this 19-minute conference talk by Michael Lieberman from Kusari. Delve into the growing list of security considerations for software developers, including SLSA for secure builds, SPDX for creating SBOMs, Sigstore for software signing, and OpenVEX for vulnerability exchange. Learn about the "sandwich" of tools, practices, and data that developers must now produce and consume. Discover how Skootrs, a new open source tool, simplifies the adoption of these security practices through automation and guardrails, making it easier to implement cybersecurity measures from the start of a software project rather than retrofitting them later.
Syllabus
Eating the Open Source Security Sandwich with Skootrs - Michael Lieberman, Kusari
Taught by
OpenSSF
Related Courses
Ketchup, Mustard, and Relish of Software Supply Chain Security - Panel DiscussionLinux Foundation via YouTube SLSA in Action: Securing the Software Supply Chain
Linux Foundation via YouTube Securing Your Supply Chain by Building with FRSCA
Linux Foundation via YouTube Open Tools for Secure Supply Chains in Kubernetes - From Release Engineering
Linux Foundation via YouTube Google SLSA and NIST SSDF - Emerging Software Supply Chain Security Best Practices
Linux Foundation via YouTube