Reality of software supply chain security
Red Hat’s Vincent Danen, VP of Product Security, and Luke Hinds, Security Lead from the Office of the CTO discuss the security of the software supply chain. They weigh in on what we need to know about our supply chains, who creates open source software, inherent flaws, how to verify code has not been tampered with, and tools and processes that you need to know to secure your software supply chain.
Dive into software supply chain technologies & practices
Kirsten Newcomer, Director, Hybrid Platforms Security Product Management, Red Hat, will dig into the technologies and practices. They cover vulnerability scanners to helpful open source projects and DevSecOps to chains of provenance.
Changing environment of regulations and the future
Red Hat’s Andrea Hall, Specialist Solution Architect, and Andrew Block, Distinguished Architect, will cover the changing environment including regulations and other factors. This will span from regulations globally, how they are evolving, and where we go from here.
Signing software with sigstore
Luke Hinds will discuss a software signing tool and how it can improve the security of supply chains.
While the supply chain of physical goods has become an important issue, the software supply chain is a rising matter of interest. Both beneficial and malicious changes can ripple through the software supply chain at incredible speed.
Six experts will examine the digital risk and security concerns of managing a software supply chain, and discuss what defines a software supply chain, existing regulations, how to manage risk, and what the future holds. Looking through the lens of both executives and security practitioners, they will cover the technologies, practices, regulations, and business considerations of successfully managing the software supply chain.
Continue the conversation on Twitter at #Software Supply Chain and #DigitalRisk.