Open Source Secure Software Supply Chain in action
Natale Vinto - 4 months ago
More than 2/3 of application code is inherited from open source dependencies. It’s important to provide verified and attested code with provenance checks in the whole software development life cycle. Join talk where developers can learn and understand how to use software bill of materials (SBOM) and Vulnerability Exploitability eXchange (VEX) as part of the software supply chain for cloud-native applications. Sign commits, images, and pipelines to create a chain of trust for your open source components and transitive dependencies with open source projects.
Jobs with related skills
Devops Engineer Supply Solutions (m/w/d)
msg
·
23 days ago
Frankfurt am Main, Germany
+8
Hybrid
Senior Developer – DevOps (x|f|m) - Hybrid
Sartorius
·
2 months ago
Municipality of Madrid, Spain
Hybrid
Fullstack TypeScript Developer (w/d/m)
Haufe Group
·
1 month ago
Freiburg im Breisgau, Germany
Hybrid
Software Engineer DevOps m/w/d
SPIE GmbH
·
1 month ago
Dortmund, Germany
+1
Hybrid
Related Videos