Fire
Dev Track
FR

Protect your project against software supply chain security threats

After SolarWinds, securing your builds, sources and dependencies is no longer optional.

Presented by

After the SolarWinds hack and attacks via GitHub Actions, controlling the software supply chain is a priority for any security-minded development team.

We know that integrating open source libraries into our applications carries significant security risks. Yet no major software artefact can be built without OSS components today.

In this session, we'll use the recommendations of the most popular supply chain frameworks to explore a series of best practices in software development and system architecture you can follow to secure your builds, your sources and your dependencies.

We'll see how to protect your application against two types of risk: internal and external. The first focuses on insider threats and compromised accounts, the second on the open source libraries built into your developments.

Dans le même parcours

See also