Building Systems on Shaky Grounds - 10 Tactics to Manage the Modern Supply Chain
Offered By: Hack in Paris via YouTube
Course Description
Overview
Explore a comprehensive conference talk that delves into 10 essential tactics for managing the modern software supply chain. Learn how to navigate the complexities of today's software engineering landscape, which heavily relies on open source and cloud ecosystems. Discover strategies to balance rapid development with security concerns as dependency trees expand and more vendors enter the picture. Gain insights into critical infrastructure considerations, red teaming exercises, vendor risk assessments, and threat modeling. Understand the importance of involving various teams, including marketing and sales, in the security process. Acquire practical knowledge on implementing software composition analysis tools, conducting code analysis, and establishing effective incident response protocols. This talk equips you with valuable techniques to enhance your organization's approach to supply chain management without sacrificing agility or introducing excessive friction.
Syllabus
Intro
Supply Chain
Value
Twitter
Open Source Libraries
Software Composition Analysis Tool
Code Analysis
Considerations
The Problem
Critical Infrastructure
Workers
Checking what youre building
Red teaming exercises
Red teaming tips
Marketing teams
Sales teams
Vendor risk assessments
Incident response
Priorities
Threat Modeling
Taught by
Hack in Paris
Related Courses
NetflOSINT- Taking an Often-Overlooked Data Source and Operationalizing It - Joe Gray - Hack in ParisHack in Paris via YouTube All Roads Lead to OpenVPN Pwning Industrial Remote Access Clients - Sharon Brizinov - Hack in Paris - 2021
Hack in Paris via YouTube Exploits in Wetware - R. Sell - Hack in Paris - 2019
Hack in Paris via YouTube All Your GPS Trackers Belong to Us - C. Kasmi, P. Barre - Hack in Paris - 2019
Hack in Paris via YouTube In NTDLL I Trust - Process Reimaging and Endpoint Security Solution Bypass - E. Carroll - Hack in Paris - 2019
Hack in Paris via YouTube