Secure by Design CI/CD: Practical Insights for Pipeline Security
CNCF [Cloud Native Computing Foundation] via YouTube
Overview
Learn about secure CI/CD pipeline design through a conference talk featuring experts from Adobe and Autodesk who share practical insights and real-world implementations. Discover a comprehensive reference architecture for secure-by-default CI/CD pipelines and understand essential security controls at each stage of development. Explore how major technology companies implement software supply chain security while maintaining development velocity and innovation. Gain clarity on security concepts including SBOMs, provenance, attestation, SLSA, and OpenSSF. Understand the CNOE (Cloud Native Operational Excellence) group's approach to creating adaptable "CNOE stacks" that provide clear pathways through security implementation challenges. Master the fundamentals of building and maintaining secure development workflows based on proven industry practices.
Syllabus
Secure by Design CI/CD: Practical Insights from Adobe and Autodesk - Vikram Sethi & Jesse Sanford
Taught by
CNCF [Cloud Native Computing Foundation]