Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

YouTube

Open Source Dependencies and Maintainers - Risks and Solutions

DevSecCon via YouTube

Overview

Explore the risks and benefits of open source software in this 28-minute DevSecCon talk by Shilpi Bhattacharjee, co-founder of the Cloud Security Podcast. Learn about the Open Source Software Security Mobilization Plan and discover strategies to address security concerns in open source dependencies. Gain insights into implementing effective open source policies, understanding the impact of open source on innovation and potential breaches, and explore key initiatives such as digital signatures, third-party code reviews, and establishing an Open Source Program Office. Delve into the importance of protecting open source projects while leveraging their benefits for organizational growth and innovation.

Syllabus

Intro
What is open source
How to protect open source
Why use open source
Dangers of open source
Blog
Impact
What can you do
OpenSSF
Digital signature of software
Thirdparty code reviews
Sbomb
Open Source Program Office
Wrap Up

Taught by

DevSecCon

Reviews

Start your review of Open Source Dependencies and Maintainers - Risks and Solutions

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.