Manufacturer Due Diligence and Open Source Attestation - Cornerstones for Cybersecure Open Source
Eclipse Foundation via YouTube
Overview
Coursera Flash Sale
40% Off Coursera Plus for 3 Months!
Grab it
Explore the critical intersection of cybersecurity regulations and open source software through an examination of the EU Cyber Resilience Act's requirements for manufacturer due diligence and open source attestations. Learn how the CRA mandates manufacturers to conduct thorough due diligence on open source components integrated into products sold in the European Union market, and discover how open source project attestations serve as essential community services enabling industry compliance with regulatory obligations. Understand the interconnected relationship between due diligence processes and attestation frameworks, while examining the Open Source Risk Coalition Working Group's active role in developing guidance and definitions for both areas. Gain insights into strategies for the open source community to optimize attestation outcomes, explore opportunities for manufacturer engagement in attestation development, and understand why providing attestations has become crucial for open source projects navigating the evolving regulatory landscape of cybersecurity compliance.
Syllabus
Manufacturer due diligence and open source attestation: cornerstones for cybersecure open source
Taught by
Eclipse Foundation