When is a Vulnerability Not a Vulnerability? Overcoming the Inundation of Noisy Supply Chain Security Alerts
Security BSides San Francisco via YouTube
AI Engineer - Learn how to integrate AI into software applications
2,000+ Free Courses with Certificates: Coding, AI, SQL, and More
Overview
Google, IBM & Meta Certificates — All 10,000+ Courses at 40% Off
One annual plan covers every course and certificate on Coursera. 40% off for a limited time.
Get Full Access
Explore a counterintuitive approach to strengthening security in this 22-minute conference talk from Security BSides San Francisco. Discover how organizations can confidently ignore over 90% of security vulnerability alerts, using specific examples to illustrate this strategy. Learn how this approach enables a significant shift in security workflows and behavior, ultimately leading to more effective security practices. Gain insights into distinguishing between genuine vulnerabilities and noise in supply chain security alerts, allowing for more focused and efficient security management.
Syllabus
BSidesSF 2023 - When is a vulnerability not a vulnerability? Overcoming the... (Adam Berman)
Taught by
Security BSides San Francisco