Open Source Security and OpenSSF's Best Practices Working Group
Offered By: OpenSSF via YouTube
Course Description
Overview
Explore open source software security principles and the OpenSSF's Best Practices Working Group initiatives in this 21-minute talk by David Wheeler from the Linux Foundation. Gain insights into supply chain security, general software security principles, and specific steps taken to address challenges in open source software. Learn about key resources developed by the working group, including guides for secure software development and evaluation, npm best practices, the OpenSSF Best Practices Badge, and educational materials like the Secure Software Development Fundamentals course. Discover the collaboration with OWASP on the Security Knowledge Framework and the role of the Education SIG in promoting secure software practices.
Syllabus
Intro
OpenSSF Best Practices Working Group (WG)
Concise Guide for Developing More Secure Software
Concise Guide for Evaluating Open Source Software
npm Best Practices Guide
OpenSSF Best Practices Badge
Course: Secure Software Development Fundamentals
Security Knowledge Framework (SKF) (with OWASP)
Education SIG
Miscellaneous notes
Taught by
OpenSSF
Related Courses
Security Is an Ecosystem - We Can't Be Secure in IsolationLinux Foundation via YouTube Improving the Security of a Large Open Source Project One Step at a Time
Linux Foundation via YouTube Simplifying Coordinating Vulnerabilities and Disclosures in Open Source Projects
Linux Foundation via YouTube SLSA in Action: Securing the Software Supply Chain
Linux Foundation via YouTube Implementing OpenSSF Best Practices Badges and Scorecards for Project Security
Linux Foundation via YouTube