Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

YouTube

Eclipse Foundation Security Training 2025 - Managing Dependency Risks

Eclipse Foundation via YouTube

Overview

Coursera Flash Sale
40% Off Coursera Plus for 3 Months!
Grab it
Learn to assess and manage security risks in project dependencies through this 13-minute training video from the Eclipse Foundation Security Training 2025 series. Explore real-world supply chain security threats including the XZ and Log4j incidents, and discover how these vulnerabilities impact software projects. Master the evaluation process for new dependencies using tools like the Best Practices Badge to make informed decisions about third-party code integration. Understand how to implement proactive security measures using Dependabot for automated dependency monitoring and updates. Examine security alert systems and develop skills for triaging alerts to make informed decisions about vulnerability responses. Practice automating dependency updates while maintaining project stability through version management strategies. Access practical guidance for ongoing maintenance of dependency security and utilize getting started resources and handbook links for continued learning in supply chain security management.

Syllabus

00:00 Introduction to Dependency Risks
00:26 Real-World Examples: XZ & Log4j Incidents
01:45 How to Evaluate New Dependencies
03:36 Dependency Evaluation Tools e.g., Best Practices Badge
06:00 Introduction to Dependabot
07:01 Security Alerts: How They Work
08:47 Triaging Alerts & Making Informed Decisions
10:00 Automating Updates with Dependabot
11:03 Version Updates & Ongoing Maintenance
11:58 Getting Started Resources & Handbook Links

Taught by

Eclipse Foundation

Reviews

Start your review of Eclipse Foundation Security Training 2025 - Managing Dependency Risks

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.