Let Devs Be Devs Without Sacrificing Security
Offered By: OpenSSF via YouTube
Course Description
Overview
Explore how to balance developer freedom with security requirements in this 18-minute conference talk by Andrew McNamara from Red Hat. Learn about creating flexible and adaptive pipelines that accommodate both proof-of-concept and production-quality code without compromising security. Discover how combining Tekton, Tekton Chains, and Enterprise Contract within a production CI environment can build a secure, flexible framework for software development. Understand the benefits of using SLSA provenance and policy enforcement to create risk-based policies that prevent unacceptable software from entering systems while allowing developers to innovate. Find out how to use the same pipeline for both development and production environments by implementing appropriate policies for each scenario.
Syllabus
Let Devs Be Devs Without Sacrificing Security - Andrew McNamara, Red Hat
Taught by
OpenSSF
Related Courses
Introduction to FinanceUniversity of Michigan via Coursera Information Security and Risk Management in Context
University of Washington via Coursera Financial Engineering and Risk Management
Columbia University via Coursera Building an Information Risk Management Toolkit
University of Washington via Coursera Caries Management by Risk Assessment (CAMBRA)
University of California, San Francisco via Coursera