Let Devs Be Devs Without Sacrificing Security
Offered By: OpenSSF via YouTube
Course Description
Overview
Explore how to balance developer freedom with security requirements in this 18-minute conference talk by Andrew McNamara from Red Hat. Learn about creating flexible and adaptive pipelines that accommodate both proof-of-concept and production-quality code without compromising security. Discover how combining Tekton, Tekton Chains, and Enterprise Contract within a production CI environment can build a secure, flexible framework for software development. Understand the benefits of using SLSA provenance and policy enforcement to create risk-based policies that prevent unacceptable software from entering systems while allowing developers to innovate. Find out how to use the same pipeline for both development and production environments by implementing appropriate policies for each scenario.
Syllabus
Let Devs Be Devs Without Sacrificing Security - Andrew McNamara, Red Hat
Taught by
OpenSSF
Related Courses
Pattern-Oriented Software Architectures: Programming Mobile Services for Android Handheld SystemsVanderbilt University via Coursera Engineering Maintainable Android Apps
Vanderbilt University via Coursera Software Design as an Element of the Software Development Lifecycle
University of Colorado System via Coursera Secure Software Development
Pluralsight Secure Software Concepts for CSSLPĀ®
Pluralsight