Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

YouTube

SBOMs, VEX, and Kubernetes - Software Supply Chain Security in Cloud Native Environments

CNCF [Cloud Native Computing Foundation] via YouTube

Overview

Explore the critical aspects of software supply chain security in this 36-minute panel discussion from the Cloud Native Computing Foundation (CNCF). Dive into the world of Software Bill of Materials (SBOMs), Vulnerability Exploitability Exchange (VEX), and their applications in Kubernetes environments. Learn from industry experts as they discuss standardization efforts around CycloneDX and SPDX formats, and examine the emerging role of VEX in determining vulnerability exploitability. Gain practical insights into gathering, using, and handling SBOMs for containers running on Kubernetes and the underlying images. Discover use cases spanning open source projects, vendors, cloud providers, and highly regulated environments such as financial services and critical national infrastructure. Benefit from the deep expertise of panelists in SBOMs, VEX, supply chain security, and cloud native application security to enhance your understanding of these crucial topics in modern software development and deployment.

Syllabus

SBOMs, VEX, and Kubernetes

Taught by

CNCF [Cloud Native Computing Foundation]

Reviews

Start your review of SBOMs, VEX, and Kubernetes - Software Supply Chain Security in Cloud Native Environments

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.